Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3551 9.1 緊急
Network
Dolibarr ERP & CRM dolibarr erp/crm Dolibarr ERP & CRMのdolibarr erp/crmにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-23500 2026-05-7 12:06 2026-04-17 Show GitHub Exploit DB Packet Storm
3552 5.3 警告
Local
FreeType Project FreeType FreeType ProjectのFreeTypeにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-23865 2026-05-7 12:06 2026-03-2 Show GitHub Exploit DB Packet Storm
3553 6.5 警告
Network
Linux Foundation tekton pipelines Linux Foundationのtekton pipelinesにおける不正な正規表現に関する脆弱性 CWE-185
不正な正規表現
CVE-2026-25542 2026-05-7 12:06 2026-04-21 Show GitHub Exploit DB Packet Storm
3554 6.5 警告
Adjacent
FRRouting Project FRRouting FRRouting ProjectのFRRoutingにおける複数の脆弱性 CWE-125
CWE-190
CVE-2026-28532 2026-05-7 12:06 2026-04-30 Show GitHub Exploit DB Packet Storm
3555 8.8 重要
Network
CloudARK KubePlus CloudARKのKubePlusにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-29955 2026-05-7 12:06 2026-04-13 Show GitHub Exploit DB Packet Storm
3556 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける領域間での誤ったリソース移動に関する脆弱性 CWE-669
領域間での誤ったリソース移動
CVE-2026-31431 2026-05-7 12:06 2026-04-22 Show GitHub Exploit DB Packet Storm
3557 5.3 警告
Network
レッドハット
kernel.org
util-linux
Red Hat Hardened Images
kernel.org等の複数ベンダの製品における代替名による認証回避に関する脆弱性 CWE-289
代替名による認証回避
CVE-2026-3184 2026-05-7 12:06 2026-04-3 Show GitHub Exploit DB Packet Storm
3558 5.5 警告
Local
Electron electron Electronのelectronにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-34764 2026-05-7 12:06 2026-04-6 Show GitHub Exploit DB Packet Storm
3559 10 緊急
Network
traefik traefik traefikにおけるデータの信頼性についての不十分な検証に関する脆弱性 CWE-345
データの信頼性についての不十分な検証
CVE-2026-35051 2026-05-7 12:06 2026-04-30 Show GitHub Exploit DB Packet Storm
3560 7.1 重要
Network
デル iDRAC10 Firmware デルのiDRAC10 Firmwareにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2026-35155 2026-05-7 12:06 2026-04-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346551 - wilsonncareabusinesses php_newsfeed Multiple SQL injection vulnerabilities in PHP Newsfeed 20040723 allow remote attackers to execute arbitrary SQL commands via the (1) name parameter to (a) deltables.php, (2) select, (3) header, (4) u… NVD-CWE-Other
CVE-2006-2139 2017-07-20 10:31 2006-05-2 Show GitHub Exploit DB Packet Storm
346552 - orbitscripts orbithyip Multiple cross-site scripting (XSS) vulnerabilities in OrbitHYIP 2.0 and earlier allow remote attackers to inject arbitrary web script via the (1) referral parameter to signup.php or (2) id parameter… NVD-CWE-Other
CVE-2006-2140 2017-07-20 10:31 2006-05-2 Show GitHub Exploit DB Packet Storm
346553 - collaborative_portal_server_project collaborative_portal_server Cross-site scripting (XSS) vulnerability in popup_image in Collaborative Portal Server (CPS) 3.4.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the pos argument. NVD-CWE-Other
CVE-2006-2141 2017-07-20 10:31 2006-05-2 Show GitHub Exploit DB Packet Storm
346554 - harold_bakker hb-ns Multiple SQL injection vulnerabilities in index.php in HB-NS 1.1.6 allow remote attackers to execute arbitrary SQL commands via the (1) topic or (2) id parameter. NVD-CWE-Other
CVE-2006-2145 2017-07-20 10:31 2006-05-2 Show GitHub Exploit DB Packet Storm
346555 - harold_bakker hb-ns Multiple cross-site scripting (XSS) vulnerabilities in index.php in HB-NS 1.1.6 allow remote attackers to inject arbitrary web script or HTML via the (1) poster_name, (2) poster_email, (3) poster_hom… NVD-CWE-Other
CVE-2006-2146 2017-07-20 10:31 2006-05-2 Show GitHub Exploit DB Packet Storm
346556 - resmgr resmgrd resmgrd in resmgr for SUSE Linux and other distributions does not properly handle when access to a USB device is granted by using "usb:<bus>,<dev>" notation, which grants access to all USB devices an… NVD-CWE-Other
CVE-2006-2147 2017-07-20 10:31 2006-05-3 Show GitHub Exploit DB Packet Storm
346557 - cgiirc cgiirc Multiple buffer overflows in client.c in CGI:IRC (CGIIRC) before 0.5.8 might allow remote attackers to execute arbitrary code via (1) cookies or (2) the query string. NVD-CWE-Other
CVE-2006-2148 2017-07-20 10:31 2006-05-3 Show GitHub Exploit DB Packet Storm
346558 - emc retrospect EMC Retrospect for Windows 6.5 before 6.5.382, 7.0 before 7.0.344, and 7.5 before 7.5.1.105 does not drop privileges before opening files, which allows local users to execute arbitrary code via the F… NVD-CWE-Other
CVE-2006-2154 2017-07-20 10:31 2006-05-3 Show GitHub Exploit DB Packet Storm
346559 - emc retrospect Apply Retrospect Driver Update 7.5.1.105. Apply Application Security Update 7.0.344 (requires Retrospect 7.0.326 or Retrospect Express 7.0.301). Apply Application Security Update 6.5.382 (requires … NVD-CWE-Other
CVE-2006-2154 2017-07-20 10:31 2006-05-3 Show GitHub Exploit DB Packet Storm
346560 - emc retrospect EMC Retrospect for Windows 6.5 before 6.5.382, 7.0 before 7.0.344, and 7.5 before 7.5.1.105 allows local users to execute arbitrary code by replacing the Retrospect.exe file, possibly due to improper… NVD-CWE-Other
CVE-2006-2155 2017-07-20 10:31 2006-05-3 Show GitHub Exploit DB Packet Storm