Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3971 8.1 重要
Network
Cesanta Mongoose CesantaのMongooseにおける複数の脆弱性 CWE-285
CWE-639
CVE-2026-5246 2026-05-1 10:45 2026-04-2 Show GitHub Exploit DB Packet Storm
3972 6.5 警告
Network
wolfSSL Inc. wolfSSL wolfSSL Inc.のwolfSSLにおける証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2026-5263 2026-05-1 10:45 2026-04-9 Show GitHub Exploit DB Packet Storm
3973 9.8 緊急
Network
wolfSSL Inc. wolfSSL wolfSSL Inc.のwolfSSLにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-5264 2026-05-1 10:45 2026-04-9 Show GitHub Exploit DB Packet Storm
3974 4.3 警告
Network
LibRaw LibRaw LibRawにおける複数の脆弱性 CWE-119
CWE-787
CVE-2026-5318 2026-05-1 10:45 2026-04-2 Show GitHub Exploit DB Packet Storm
3975 5.3 警告
Network
LibRaw LibRaw LibRawにおける複数の脆弱性 CWE-119
CWE-125
CVE-2026-5342 2026-05-1 10:45 2026-04-2 Show GitHub Exploit DB Packet Storm
3976 3.7
Network
free5gc free5gc free5GCにおける型の取り違えに関する脆弱性 CWE-843
型の取り違え
CVE-2026-5360 2026-05-1 10:44 2026-04-2 Show GitHub Exploit DB Packet Storm
3977 6.5 警告
Network
Canonical Juju CanonicalのJujuにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-5412 2026-05-1 10:44 2026-04-10 Show GitHub Exploit DB Packet Storm
3978 7.1 重要
Network
wolfSSL Inc. wolfSSL wolfSSL Inc.のwolfSSLにおける暗号化処理のナンスおよび鍵ペアの再利用に関する脆弱性 CWE-323
暗号化処理のナンスおよび鍵ペアの再利用
CVE-2026-5446 2026-05-1 10:44 2026-04-9 Show GitHub Exploit DB Packet Storm
3979 7.5 重要
Network
wolfSSL Inc. wolfSSL wolfSSL Inc.のwolfSSLにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-5447 2026-05-1 10:44 2026-04-9 Show GitHub Exploit DB Packet Storm
3980 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. AC10 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のAC10 ファームウェアにおける複数の脆弱性 CWE-77
CWE-78
CVE-2026-5547 2026-05-1 10:44 2026-04-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314401 7.5 HIGH
Network
google android Android before 2024-10-05 on Google Pixel devices allows information disclosure in the ACPM component, A-331255656. NVD-CWE-noinfo
CVE-2024-47022 2024-10-28 22:47 2024-10-25 Show GitHub Exploit DB Packet Storm
314402 8.1 HIGH
Network
google android there is a possible man-in-the-middle attack due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is no… NVD-CWE-noinfo
CVE-2024-47023 2024-10-28 22:33 2024-10-25 Show GitHub Exploit DB Packet Storm
314403 - - - Spring WebFlux applications that have Spring Security authorization rules on static resources can be bypassed under certain circumstances. For this to impact an application, all of the following mus… - CVE-2024-38821 2024-10-28 16:15 2024-10-28 Show GitHub Exploit DB Packet Storm
314404 7.2 HIGH
Network
- - The All-in-One WP Migration and Backup plugin for WordPress is vulnerable to arbitrary PHP Code Injection due to missing file type validation during the export in all versions up to, and including, 7… CWE-94
Code Injection
CVE-2024-9162 2024-10-28 15:15 2024-10-28 Show GitHub Exploit DB Packet Storm
314405 - - - Use of potentially dangerous function issue exists in Chatwork Desktop Application (Windows) versions prior to 2.9.2. If a user clicks a specially crafted link in the application, an arbitrary file m… - CVE-2024-50307 2024-10-28 14:15 2024-10-28 Show GitHub Exploit DB Packet Storm
314406 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Genians Genian NAC V5.0, Genians Genian NAC LTS V5.0.This issue affects Genian NAC V5.0: from V5.… - CVE-2024-23843 2024-10-28 11:15 2024-10-28 Show GitHub Exploit DB Packet Storm
314407 - - - A vulnerability was found in didi Super-Jacoco 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /cov/triggerEnvCov. The manipulation of the argument uuid lea… CWE-77
Command Injection
CVE-2024-10435 2024-10-28 10:15 2024-10-28 Show GitHub Exploit DB Packet Storm
314408 - - - The Easy Table of Contents WordPress plugin before 2.0.68 does not sanitise and escape some parameters, which could allow users with a role as low as Editor to perform Cross-Site Scripting attacks. - CVE-2024-7082 2024-10-28 02:35 2024-08-6 Show GitHub Exploit DB Packet Storm
314409 6.1 MEDIUM
Network
elecom wab-s1167-ps_firmware
wab-i1750-ps_firmware
Cross-site scripting vulnerability exists in WAB-I1750-PS and WAB-S1167-PS due to improper processing of input values in menu.cgi. If a user views a malicious web page while logged in to the product,… CWE-79
Cross-site Scripting
CVE-2024-42412 2024-10-28 01:35 2024-08-30 Show GitHub Exploit DB Packet Storm
314410 5.4 MEDIUM
Network
veeam one A Cross-site-scripting (XSS) vulnerability exists in the Reporter Widgets that allows HTML injection. CWE-79
Cross-site Scripting
CVE-2024-42020 2024-10-28 00:35 2024-09-8 Show GitHub Exploit DB Packet Storm