Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3651 7.5 重要
Network
Delta Electronics, INC. AS320T Firmware Delta Electronics, INC.のAS320T Firmwareにおける非公開の機能に関する脆弱性 CWE-912
非公開の機能
CVE-2026-1952 2026-05-13 10:27 2026-04-24 Show GitHub Exploit DB Packet Storm
3652 9.1 緊急
Network
DDEV DDEV DDEVにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-32885 2026-05-13 10:27 2026-04-22 Show GitHub Exploit DB Packet Storm
3653 6.5 警告
Network
langflow Langflow Desktop langflowのLangflow Desktopにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-3340 2026-05-13 10:27 2026-04-30 Show GitHub Exploit DB Packet Storm
3654 6.5 警告
Network
langflow Langflow Desktop langflowのLangflow Desktopにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-3345 2026-05-13 10:27 2026-04-30 Show GitHub Exploit DB Packet Storm
3655 6.4 警告
Network
langflow Langflow Desktop langflowのLangflow DesktopにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-3346 2026-05-13 10:27 2026-04-30 Show GitHub Exploit DB Packet Storm
3656 4.8 警告
Network
V2Board V2Board V2Boardにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-37503 2026-05-13 10:26 2026-05-1 Show GitHub Exploit DB Packet Storm
3657 7.5 重要
Network
V2Board V2Board V2BoardにおけるGET リクエストにおけるクエリ文字列からの情報漏えいに関する脆弱性 CWE-598
GET リクエストにおけるクエリ文字列からの情報漏えい
CVE-2026-37504 2026-05-13 10:26 2026-05-1 Show GitHub Exploit DB Packet Storm
3658 4.9 警告
Network
V2Board V2Board V2BoardにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-37505 2026-05-13 10:26 2026-05-1 Show GitHub Exploit DB Packet Storm
3659 5.4 警告
Network
Apache Software Foundation Apache-airflow-providers-keycloak Apache Software FoundationのApache-airflow-providers-keycloakにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-40948 2026-05-13 10:26 2026-04-18 Show GitHub Exploit DB Packet Storm
3660 6.5 警告
Adjacent
ウォッチガード・テクノロジー WatchGuard Agent ウォッチガード・テクノロジーのWatchGuard Agentにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-41286 2026-05-13 10:26 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
741 8.6 HIGH
Network
- - The Xstore WordPress theme before 9.7.3 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL in… New CWE-89
SQL Injection
CVE-2026-3326 2026-06-10 20:16 2026-06-10 Show GitHub Exploit DB Packet Storm
742 4.3 MEDIUM
Network
7-zip 7-zip 7-Zip is a file archiver with a high compression ratio. Versions 9.11 through 26.00 contain a heap out-of-bounds read of up to 3 bytes in the UDF disc image handler's File Identifier Descriptor parse… Update CWE-125
Out-of-bounds Read
CVE-2026-48102 2026-06-10 19:45 2026-06-6 Show GitHub Exploit DB Packet Storm
743 - - - Debusine is an integrated solution to build, distribute and maintain a Debian-based distribution. Debian source packages (.dsc) and upload artifacts (.changes) are manifest files that name the files … New - CVE-2026-11853 2026-06-10 19:16 2026-06-10 Show GitHub Exploit DB Packet Storm
744 - - - Debusine is an integrated solution to build, distribute and maintain a Debian-based distribution. Files managed by debusine are organized into artifacts. The endpoints that create and delete relation… New - CVE-2026-11852 2026-06-10 19:16 2026-06-10 Show GitHub Exploit DB Packet Storm
745 7.5 HIGH
Network
- - Issue summary: When CMS password-based decryption (RFC 3211 / PWRI key unwrap) processes attacker-supplied CMS data, an attacker-chosen stream-mode KEK cipher can trigger a heap out-of-bounds read in… New CWE-125
Out-of-bounds Read
CVE-2026-9076 2026-06-10 17:16 2026-06-10 Show GitHub Exploit DB Packet Storm
746 8.1 HIGH
Network
- - Issue summary: A signed integer overflow when sizing the destination buffer for Unicode output in ASN1_mbstring_ncopy() can lead to a heap buffer overflow. Impact summary: A heap buffer overflow may… New CWE-787
 Out-of-bounds Write
CVE-2026-7383 2026-06-10 17:16 2026-06-10 Show GitHub Exploit DB Packet Storm
747 4.8 MEDIUM
Network
- - Issue summary: The implementations of AES-SIV (RFC 5297) and AES-GCM-SIV (RFC 8452) mishandle the authentication of AAD (Additional Authenticated Data) with an empty ciphertext allowing a forgery of … New CWE-325
 Missing Required Cryptographic Step
CVE-2026-45446 2026-06-10 17:16 2026-06-10 Show GitHub Exploit DB Packet Storm
748 7.5 HIGH
Network
- - Issue summary: When an application drives an AES-OCB context through the public EVP_Cipher() one-shot interface, the application-supplied initialisation vector (IV) is silently discarded. Impact sum… New CWE-325
 Missing Required Cryptographic Step
CVE-2026-45445 2026-06-10 17:16 2026-06-10 Show GitHub Exploit DB Packet Storm
749 6.2 MEDIUM
Local
- - Issue summary: When the X509_VERIFY_PARAM_set1_email is called by an application to validate a crafted e-mail address, such as during S/MIME message validation, an out of bounds read can happen. Imp… New CWE-125
Out-of-bounds Read
CVE-2026-42771 2026-06-10 17:16 2026-06-10 Show GitHub Exploit DB Packet Storm
750 3.7 LOW
Network
- - Issue summary: When EVP_PKEY_derive_set_peer() is called with a DHX (X9.42) peer key, the peer key is not properly checked for the subgroup membership. Impact summary: A malicious peer which present… New CWE-325
 Missing Required Cryptographic Step
CVE-2026-42770 2026-06-10 17:16 2026-06-10 Show GitHub Exploit DB Packet Storm