|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 10, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 4201 | 7.5 |
重要
Network |
Quantum Networks | QN-I-470 Firmware | Quantum NetworksのQN-I-470 Firmwareにおける重要な機能に対する認証の欠如に関する脆弱性 |
CWE-306
重要な機能に対する認証の欠如 解説 |
CVE-2026-41039 | 2026-05-8 12:11 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 4202 | 8.8 |
重要
Adjacent |
D-Link Systems, Inc. | DIR-605L ファームウェア | D-Link CorporationのDIR-605L ファームウェアにおけるハードコードされた認証情報の使用に関する脆弱性 |
CWE-798
ハードコードされた認証情報の使用 |
CVE-2026-42372 | 2026-05-8 12:11 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 4203 | 8.8 |
重要
Adjacent |
D-Link Systems, Inc. | DIR-605L ファームウェア | D-Link CorporationのDIR-605L ファームウェアにおけるハードコードされた認証情報の使用に関する脆弱性 |
CWE-798
ハードコードされた認証情報の使用 |
CVE-2026-42373 | 2026-05-8 12:11 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 4204 | 8.8 |
重要
Adjacent |
D-Link Systems, Inc. | DIR-600L ファームウェア | D-Link CorporationのDIR-600L ファームウェアにおけるハードコードされた認証情報の使用に関する脆弱性 |
CWE-798
ハードコードされた認証情報の使用 |
CVE-2026-42374 | 2026-05-8 12:11 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 4205 | 8.8 |
重要
Adjacent |
D-Link Systems, Inc. | DIR-600L ファームウェア | D-Link CorporationのDIR-600L ファームウェアにおけるハードコードされた認証情報の使用に関する脆弱性 |
CWE-798
ハードコードされた認証情報の使用 |
CVE-2026-42375 | 2026-05-8 12:11 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 4206 | 9.8 |
緊急
Network |
MIYAGAWA (Tatsuhiko Miyagawa) | Plack::Middleware::Session::Cookie | MIYAGAWA (Tatsuhiko Miyagawa)のPlack::Middleware::Session::Cookieにおける検証および完全性チェックを行っていない Cookie への依存に関する脆弱性 |
CWE-565
検証および完全性チェックを行っていない Cookie への依存 |
CVE-2014-125112 | 2026-05-8 12:11 | 2026-03-26 | Show | GitHub Exploit DB Packet Storm |
| 4207 | 7.5 |
重要
Network |
Lobster DATA GmbH | Lobster_pro | Lobster DATA GmbHのLobster_proにおけるXML 外部エンティティの脆弱性 |
CWE-611
XML 外部エンティティ参照の不適切な制限 |
CVE-2024-13971 | 2026-05-8 12:11 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 4208 | 9.8 |
緊急
Network |
D-Link Systems, Inc. | DIR-1253 Firmware | D-Link CorporationのDIR-1253 Firmwareにおける権限管理に関する脆弱性 |
CWE-269
不適切な権限管理 |
CVE-2025-29165 | 2026-05-8 12:11 | 2026-03-5 | Show | GitHub Exploit DB Packet Storm |
| 4209 | 4.4 |
警告
Local |
IBM | Planning Analytics Advanced Certified Containers | IBMのPlanning Analytics Advanced Certified Containersにおける複数の脆弱性 |
CWE-312 CWE-526 |
CVE-2025-36105 | 2026-05-8 12:11 | 2026-03-10 | Show | GitHub Exploit DB Packet Storm |
| 4210 | 6.1 |
警告
Network |
IBM | IBM InfoSphere Data Architect | IBMのIBM InfoSphere Data Architectにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2025-36173 | 2026-05-8 12:11 | 2026-03-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 10, 2026, 5 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 313831 | 5.5 |
MEDIUM
Local |
linux | linux_kernel | In the Linux kernel, the following vulnerability has been resolved: LoongArch: Don't crash in stack_top() for tasks without vDSO Not all tasks have a vDSO mapped, for example kthreads never do. If … |
CWE-476
NULL Pointer Dereference |
CVE-2024-50133 | 2024-11-8 06:17 | 2024-11-6 | Show | GitHub Exploit DB Packet Storm |
| 313832 | 5.4 |
MEDIUM
Network |
basticom | framework | The Basticom Framework plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.5.0 due to insufficient input sanitization and ou… |
CWE-79
Cross-site Scripting |
CVE-2024-9443 | 2024-11-8 05:56 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
| 313833 | - | - | - | An issue in Linux Server Heimdall v.2.6.1 allows a remote attacker to execute arbitrary code via a crafted script to the Add new application. | - | CVE-2024-51358 | 2024-11-8 05:35 | 2024-11-6 | Show | GitHub Exploit DB Packet Storm | |
| 313834 | 4.3 |
MEDIUM
Network |
shaon | post_from_frontend | The Post From Frontend WordPress plugin through 1.0.0 does not have CSRF check when deleting posts, which could allow attackers to make logged in admin perform such action via a CSRF attack |
CWE-352
Origin Validation Error |
CVE-2024-9689 | 2024-11-8 05:35 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
| 313835 | - | - | - | util/JSONTokener.java in JSON-lib before 3.1.0 mishandles an unbalanced comment string. | - | CVE-2024-47855 | 2024-11-8 05:35 | 2024-10-4 | Show | GitHub Exploit DB Packet Storm | |
| 313836 | 5.5 |
MEDIUM
Local |
huawei | harmonyos | Vulnerability of processes not being fully terminated in the VPN module Impact: Successful exploitation of this vulnerability will affect power consumption. |
NVD-CWE-noinfo
|
CVE-2024-51513 | 2024-11-8 05:30 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
| 313837 | 6.5 |
MEDIUM
Network |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wcn7881_firmware wcn7880_firmware wcn7861_firmware wcn7860_firmware | Transient DOS while parsing fragments of MBSSID IE from beacon frame. |
CWE-416
Use After Free |
CVE-2024-33068 | 2024-11-8 05:07 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
| 313838 | 6.5 |
MEDIUM
Network |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wcn7881_firmware wcn7880_firmware wcn7861_firmware wcn7860_firmware | Transient DOS while processing the CU information from RNR IE. |
CWE-125
Out-of-bounds Read |
CVE-2024-38405 | 2024-11-8 05:06 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
| 313839 | 6.5 |
MEDIUM
Network |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wcn7881_firmware wcn7880_firmware wcn7861_firmware wcn7860_firmware | Transient DOS while parsing BTM ML IE when per STA profile is not included. |
CWE-125
Out-of-bounds Read |
CVE-2024-38403 | 2024-11-8 05:06 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
| 313840 | 6.5 |
MEDIUM
Network |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wsa8815_firmware wsa8810_firmware wcn6755_firmware wcn3988_firmware | Transient DOS as modem reset occurs when an unexpected MAC RAR (with invalid PDU length) is seen at UE. |
CWE-617
Reachable Assertion |
CVE-2024-23385 | 2024-11-8 05:05 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |