Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3571 7.5 重要
Network
- 4D SASの4D ServerにおけるXML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2024-39847 2026-05-7 11:29 2026-04-30 Show GitHub Exploit DB Packet Storm
3572 9.1 緊急
Network
rti RTI Connext Professional rtiのRTI Connext ProfessionalにおけるXML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2025-14543 2026-05-7 11:29 2026-04-30 Show GitHub Exploit DB Packet Storm
3573 7.5 重要
Network
XWiki CryptPad XWikiのCryptPadにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-51846 2026-05-7 11:29 2026-04-30 Show GitHub Exploit DB Packet Storm
3574 6.4 警告
Local
レッドハット process automation manager レッドハットのprocess automation managerにおける不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2025-58713 2026-05-7 11:29 2026-04-8 Show GitHub Exploit DB Packet Storm
3575 4.8 警告
Network
GNU Project GNU Wget2 GNU ProjectのGNU Wget2における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-1858 2026-05-7 11:28 2026-04-29 Show GitHub Exploit DB Packet Storm
3576 6.5 警告
Adjacent
シスコシステムズ Cisco Firepower Threat Defense ソフトウェア
Adaptive Security Appliance (ASA) Software
シスコシステムズのAdaptive Security Appliance (ASA) Software等の複数製品における範囲外のポインタオフセットの使用に関する脆弱性 CWE-823
範囲外のポインタオフセットの使用
CVE-2026-20022 2026-05-7 11:28 2026-03-4 Show GitHub Exploit DB Packet Storm
3577 6.5 警告
Adjacent
シスコシステムズ Cisco Firepower Threat Defense ソフトウェア
Adaptive Security Appliance (ASA) Software
シスコシステムズのAdaptive Security Appliance (ASA) Software等の複数製品における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-20023 2026-05-7 11:28 2026-03-4 Show GitHub Exploit DB Packet Storm
3578 5.7 警告
Adjacent
シスコシステムズ Cisco Firepower Threat Defense ソフトウェア
Adaptive Security Appliance (ASA) Software
シスコシステムズのAdaptive Security Appliance (ASA) Software等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-20024 2026-05-7 11:28 2026-03-4 Show GitHub Exploit DB Packet Storm
3579 8.6 重要
Network
シスコシステムズ Adaptive Security Appliance (ASA) Software シスコシステムズのAdaptive Security Appliance (ASA) Softwareにおける有効なライフタイム後のリソースの解放の欠如に関する脆弱性 CWE-772
有効なライフタイム後のリソースの解放の欠如
CVE-2026-20082 2026-05-7 11:28 2026-03-4 Show GitHub Exploit DB Packet Storm
3580 5 警告
Network
Cloud Foundry, Inc. routing release
cf-deployment
Cloud Foundry, Inc.のCf-deployment等の複数製品における意図するエンドポイントとの通信チャネルの制限に関する脆弱性 CWE-923
意図するエンドポイントとの通信チャネルの不適切な制限
CVE-2026-22726 2026-05-7 11:28 2026-05-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313571 - - - In onForegroundServiceButtonClicked of FooterActionsViewModel.kt, there is a possible way to disable the active VPN app from the lockscreen due to an insecure default value. This could lead to local … - CVE-2024-34734 2024-10-25 05:35 2024-08-16 Show GitHub Exploit DB Packet Storm
313572 7.5 HIGH
Network
tenda fh1206_firmware Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the PPPOEPassword parameter in the fromAdvSetWan function. This vulnerability allows attackers to cause a Denial of Service (D… CWE-787
 Out-of-bounds Write
CVE-2024-42986 2024-10-25 05:35 2024-08-16 Show GitHub Exploit DB Packet Storm
313573 7.5 HIGH
Network
tenda fh1206_firmware Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the qos parameter in the fromqossetting function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a… CWE-787
 Out-of-bounds Write
CVE-2024-42977 2024-10-25 05:35 2024-08-16 Show GitHub Exploit DB Packet Storm
313574 9.8 CRITICAL
Network
totolink n350rt_firmware Incorrect access control in TOTOLINK N350RT V9.3.5u.6139_B20201216 allows attackers to obtain the apmib configuration file, which contains the username and the password, via a crafted request to /cgi… NVD-CWE-noinfo
CVE-2024-42966 2024-10-25 05:35 2024-08-16 Show GitHub Exploit DB Packet Storm
313575 - - - Micro-Star International Z-series motherboards (Z590, Z490, and Z790) and B-series motherboards (B760, B560, B660, and B460) with firmware 7D25v14, 7D25v17 to 7D25v19, and 7D25v1A to 7D25v1H was disc… - CVE-2024-36877 2024-10-25 05:35 2024-08-13 Show GitHub Exploit DB Packet Storm
313576 - - - In certain Sonos products before S1 Release 11.12 and S2 release 15.9, the mt_7615.ko wireless driver does not properly validate an information element during negotiation of a WPA2 four-way handshake… - CVE-2023-50809 2024-10-25 05:35 2024-08-12 Show GitHub Exploit DB Packet Storm
313577 5.3 MEDIUM
Network
lopalopa responsive_school_management_system An Incorrect Access Control vulnerability was found in /smsa/view_students.php in Kashipara Responsive School Management System v3.2.0, which allows remote unauthenticated attackers to view STUDENT d… NVD-CWE-Other
CVE-2024-41250 2024-10-25 05:35 2024-08-8 Show GitHub Exploit DB Packet Storm
313578 6.5 MEDIUM
Network
lopalopa responsive_school_management_system An Incorrect Access Control vulnerability was found in /smsa/admin_teacher_register_approval.php and /smsa/admin_teacher_register_approval_submit.php in Kashipara Responsive School Management System … NVD-CWE-Other
CVE-2024-41251 2024-10-25 05:35 2024-08-8 Show GitHub Exploit DB Packet Storm
313579 9.8 CRITICAL
Network
ivanti endpoint_manager_mobile An insufficient authorization vulnerability in web component of EPMM prior to 12.1.0.1 allows an unauthorized attacker within the network to execute arbitrary commands on the underlying operating sys… CWE-287
Improper Authentication
CVE-2024-36130 2024-10-25 05:35 2024-08-7 Show GitHub Exploit DB Packet Storm
313580 8.8 HIGH
Network
google chrome Inappropriate implementation in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) CWE-787
 Out-of-bounds Write
CVE-2024-7535 2024-10-25 05:35 2024-08-7 Show GitHub Exploit DB Packet Storm