Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4191 6.5 警告
Network
Mozilla Foundation Mozilla Firefox Mozilla FoundationのMozilla Firefoxにおけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-8388 2026-05-14 10:13 2026-05-12 Show GitHub Exploit DB Packet Storm
4192 8.5 重要
Network
Guardsix ODBC
Logpoint
GuardsixのLogpoint等の複数製品におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-35548 2026-05-14 10:13 2026-04-22 Show GitHub Exploit DB Packet Storm
4193 6.5 警告
Network
Raindrop Raindrop Raindropにおける複数の脆弱性 CWE-20
CWE-284
CVE-2026-31192 2026-05-14 10:13 2026-04-22 Show GitHub Exploit DB Packet Storm
4194 7.3 重要
Network
D-Link Systems, Inc. DCS-932L Firmware D-Link CorporationのDCS-932L Firmwareにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-36983 2026-05-14 10:13 2026-05-11 Show GitHub Exploit DB Packet Storm
4195 7.5 重要
Network
Niko Fohr (fohrloop) dash-uploader Niko Fohr (fohrloop)のdash-uploaderにおける複数の脆弱性 CWE-400
CWE-670
CWE-noinfo
CVE-2026-38361 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
4196 9.8 緊急
Network
Mauricio Poppe (mauriciopoppe) math-codegen Mauricio Poppe (mauriciopoppe)のmath-codegenにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-41507 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
4197 9.8 緊急
Network
CROSS-CRYPT.COM CROSS CROSS-CRYPT.COMのCROSSにおける複数の脆弱性 CWE-121
CWE-122
CVE-2026-41509 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
4198 7.5 重要
Network
DCIT CryptX DCITのCryptXにおける複数の脆弱性 CWE-335
CWE-338
CVE-2026-41564 2026-05-14 10:12 2026-04-23 Show GitHub Exploit DB Packet Storm
4199 6.1 警告
Network
th30d4y w4nn4d13/ip th30d4yのw4nn4d13/ipにおける複数の脆弱性 CWE-79
CWE-79
CWE-80
CVE-2026-41575 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
4200 7.8 重要
Local
dail8859 Notepad Next dail8859のNotepad Nextにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-42214 2026-05-14 10:12 2026-05-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313111 9.8 CRITICAL
Network
dataprom personnel_attendance_control_systems_\/_access_control_security_systems Origin Validation Error vulnerability in Dataprom Informatics Personnel Attendance Control Systems (PACS) / Access Control Security Systems (ACSS) allows Traffic Injection.This issue affects Personne… CWE-346
 Origin Validation Error
CVE-2024-10534 2024-11-20 04:08 2024-11-15 Show GitHub Exploit DB Packet Storm
313112 8.8 HIGH
Network
microsoft sql_server_2016
sql_server_2017
sql_server_2019
SQL Server Native Client Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2024-48993 2024-11-20 04:06 2024-11-13 Show GitHub Exploit DB Packet Storm
313113 5.4 MEDIUM
Network
k5n webcalendar A stored cross-site scripting (XSS) vulnerability exists in craigk5n/webcalendar version 1.3.0. The vulnerability occurs in the 'Report Name' input field while creating a new report. An attacker can … CWE-79
Cross-site Scripting
CVE-2024-1097 2024-11-20 04:05 2024-11-15 Show GitHub Exploit DB Packet Storm
313114 9.8 CRITICAL
Network
tp-link vn020-f3v\(t\)_firmware A vulnerability, which was classified as critical, has been found in TP-Link VN020 F3v(T) TT_V6.2.1021. Affected by this issue is some unknown functionality of the component DHCP DISCOVER Packet Pars… CWE-787
 Out-of-bounds Write
CVE-2024-11237 2024-11-20 04:04 2024-11-15 Show GitHub Exploit DB Packet Storm
313115 6.1 MEDIUM
Network
pyload pyload An open redirection vulnerability exists in pyload/pyload version 0.5.0. The vulnerability is due to improper handling of the 'next' parameter in the login functionality. An attacker can exploit this… CWE-601
Open Redirect
CVE-2024-1240 2024-11-20 04:04 2024-11-15 Show GitHub Exploit DB Packet Storm
313116 5.3 MEDIUM
Network
landray landray_ekp A vulnerability, which was classified as critical, was found in Landray EKP up to 16.0. This affects the function delPreviewFile of the file /sys/ui/sys_ui_component/sysUiComponent.do?method=delPrevi… CWE-22
Path Traversal
CVE-2024-11238 2024-11-20 04:01 2024-11-15 Show GitHub Exploit DB Packet Storm
313117 7.2 HIGH
Network
eyoucms eyoucms A vulnerability classified as critical has been found in EyouCMS up to 1.6.7. Affected is an unknown function of the component Website Logo Handler. The manipulation leads to unrestricted upload. It … CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-11211 2024-11-20 04:01 2024-11-15 Show GitHub Exploit DB Packet Storm
313118 4.3 MEDIUM
Network
landray landray_ekp A vulnerability has been found in Landray EKP up to 16.0 and classified as critical. This vulnerability affects the function deleteFile of the file /sys/common/import.do?method=deleteFile of the comp… CWE-22
Path Traversal
CVE-2024-11239 2024-11-20 04:00 2024-11-15 Show GitHub Exploit DB Packet Storm
313119 5.4 MEDIUM
Network
eyoucms eyoucms A vulnerability was found in EyouCMS 1.51. It has been rated as critical. This issue affects the function editFile of the file application/admin/logic/FilemanagerLogic.php. The manipulation of the ar… CWE-22
Path Traversal
CVE-2024-11210 2024-11-20 03:42 2024-11-15 Show GitHub Exploit DB Packet Storm
313120 6.5 MEDIUM
Network
craftcms craft_cms Craft is a content management system (CMS). The dataUrl function can be exploited if an attacker has write permissions on system notification templates. This function accepts an absolute file path, r… CWE-22
CWE-552
Path Traversal
 Files or Directories Accessible to External Parties
CVE-2024-52292 2024-11-20 03:27 2024-11-14 Show GitHub Exploit DB Packet Storm