Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3901 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-31606 2026-05-1 10:48 2026-04-24 Show GitHub Exploit DB Packet Storm
3902 9.8 緊急
Network
Linux Linux Kernel LinuxのLinux Kernelにおける二重解放に関する脆弱性 CWE-415
二重解放
CVE-2026-31608 2026-05-1 10:48 2026-04-24 Show GitHub Exploit DB Packet Storm
3903 7.1 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-31614 2026-05-1 10:48 2026-04-24 Show GitHub Exploit DB Packet Storm
3904 7.5 重要
Network
Tinyproxy project Tinyproxy Tinyproxy projectのTinyproxyにおけるHTTP リクエストスマグリングに関する脆弱性 CWE-444
HTTP リクエストスマグリング
CVE-2026-31842 2026-05-1 10:48 2026-04-7 Show GitHub Exploit DB Packet Storm
3905 8 重要
Network
マイクロソフト Microsoft Power Apps Microsoft Power Apps のリモートでコードが実行される脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-32172 2026-05-1 10:48 2026-04-23 Show GitHub Exploit DB Packet Storm
3906 7.1 重要
Local
マイクロソフト Microsoft Office
Microsoft Excel
Office Long Term Servicing Channel (LTSC)
Microsoft 365 Apps
Microsoft Office Online Server
Microsoft Excel の情報漏えいの脆弱性 CWE-125
境界外読み取り
CVE-2026-32188 2026-05-1 10:48 2026-04-14 Show GitHub Exploit DB Packet Storm
3907 7.8 重要
Local
マイクロソフト Microsoft Office
Microsoft Excel
Office Long Term Servicing Channel (LTSC)
Microsoft 365 Apps
Microsoft Office Online Server
Microsoft Excel のリモートでコードが実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-32189 2026-05-1 10:48 2026-04-14 Show GitHub Exploit DB Packet Storm
3908 8.4 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Office Long Term Servicing Channel (LTSC)
Microsoft Office のリモート コードが実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-32190 2026-05-1 10:48 2026-04-14 Show GitHub Exploit DB Packet Storm
3909 7.8 重要
Local
マイクロソフト Microsoft 365 Apps
Office Long Term Servicing Channel (LTSC)
Microsoft Word のリモートでコードが実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-33095 2026-05-1 10:48 2026-04-14 Show GitHub Exploit DB Packet Storm
3910 9.3 緊急
Network
マイクロソフト Microsoft 365 Copilot Microsoft 365 Copilot の特権昇格の脆弱性 CWE-601
オープンリダイレクト
CVE-2026-33102 2026-05-1 10:48 2026-04-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313801 4.3 MEDIUM
Network
hitachienergy tro610_firmware
tro620_firmware
tro670_firmware
Profile files from TRO600 series radios are extracted in plain-text and encrypted file formats. Profile files provide potential attackers valuable configuration information about the Tropos network. … CWE-212
 Improper Removal of Sensitive Information Before Storage or Transfer
CVE-2024-41156 2024-10-31 23:49 2024-10-29 Show GitHub Exploit DB Packet Storm
313802 7.1 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ipv4: Handle attempt to delete multipath route when fib_info contains an nh reference Gwangun Jung reported a slab-out-of-bounds … CWE-125
Out-of-bounds Read
CVE-2022-48999 2024-10-31 23:44 2024-10-22 Show GitHub Exploit DB Packet Storm
313803 7.2 HIGH
Network
hitachienergy tro610_firmware
tro620_firmware
tro670_firmware
Command injection vulnerability in the Edge Computing UI for the TRO600 series radios that allows for the execution of arbitrary system commands. If exploited, an attacker with write access to the we… CWE-77
Command Injection
CVE-2024-41153 2024-10-31 23:37 2024-10-29 Show GitHub Exploit DB Packet Storm
313804 5.5 MEDIUM
Local
cisco ata_191_firmware
ata_192_firmware
A vulnerability in the web-based management interface of Cisco ATA 190 Series Multiplatform Analog Telephone Adapter firmware could allow an authenticated, local attacker with low privileges to view … CWE-522
 Insufficiently Protected Credentials
CVE-2024-20462 2024-10-31 23:35 2024-10-17 Show GitHub Exploit DB Packet Storm
313805 8.8 HIGH
Network
cisco ata_191_firmware
ata_192_firmware
A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an authenticated, remote attacker with low privileges to run commands as an… NVD-CWE-Other
CVE-2024-20420 2024-10-31 23:35 2024-10-17 Show GitHub Exploit DB Packet Storm
313806 6.1 MEDIUM
Network
cisco ata_191_firmware
ata_192_firmware
A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an unauthenticated, remote attacker to conduct a reflected cross-site scrip… NVD-CWE-Other
CVE-2024-20460 2024-10-31 23:35 2024-10-17 Show GitHub Exploit DB Packet Storm
313807 6.5 MEDIUM
Network
cisco ata_191_firmware
ata_192_firmware
A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an unauthenticated, remote attacker to conduct a cross-site request forgery… CWE-352
 Origin Validation Error
CVE-2024-20421 2024-10-31 23:35 2024-10-17 Show GitHub Exploit DB Packet Storm
313808 - - - A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain sensitive information from an affected device. … - CVE-2024-20466 2024-10-31 23:35 2024-08-22 Show GitHub Exploit DB Packet Storm
313809 - - - Lack of stack protection exploit mechanisms in ASP Secure OS Trusted Execution Environment (TEE) may allow a privileged attacker with access to AMD signing keys to c006Frrupt the return address, caus… - CVE-2021-46746 2024-10-31 23:35 2024-08-14 Show GitHub Exploit DB Packet Storm
313810 5.3 MEDIUM
Network
mozilla thunderbird
firefox
The origin of an external protocol handler prompt could have been obscured using a data: URL within an `iframe`. This vulnerability affects Firefox < 132, Firefox ESR < 128.4, Thunderbird < 128.4, an… NVD-CWE-noinfo
CVE-2024-10460 2024-10-31 23:32 2024-10-29 Show GitHub Exploit DB Packet Storm