Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4231 6.5 警告
Network
openwebui open webui openwebuiのopen webuiにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-45351 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
4232 5.4 警告
Network
openwebui open webui openwebuiのopen webuiにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-45365 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
4233 4.3 警告
Network
openwebui open webui openwebuiのopen webuiにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-45385 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
4234 4.3 警告
Network
openwebui open webui openwebuiのopen webuiにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-45386 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
4235 4.3 警告
Network
openwebui open webui openwebuiのopen webuiにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-45387 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
4236 7.2 重要
Network
openwebui open webui openwebuiのopen webuiにおける複数の脆弱性 CWE-269
CWE-862
CVE-2026-45395 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
4237 7.1 重要
Network
openwebui open webui openwebuiのopen webuiにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-45399 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
4238 8.1 重要
Network
openwebui open webui openwebuiのopen webuiにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-45402 2026-05-20 13:25 2026-05-15 Show GitHub Exploit DB Packet Storm
4239 8.1 重要
Network
openwebui open webui openwebuiのopen webuiにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-45665 2026-05-20 13:25 2026-05-15 Show GitHub Exploit DB Packet Storm
4240 6.5 警告
Network
openwebui open webui openwebuiのopen webuiにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-45666 2026-05-20 13:25 2026-05-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
315491 - - - The LSC Smart Connect Indoor IP Camera V7.6.32 is vulnerable to an information disclosure issue where live camera footage can be accessed through the RTSP protocol on port 8554 without requiring auth… - CVE-2024-51362 2024-11-7 03:17 2024-11-6 Show GitHub Exploit DB Packet Storm
315492 - - - OctoPrint provides a web interface for controlling consumer 3D printers. OctoPrint versions up until and including 1.10.2 contain reflected XSS vulnerabilities in the login dialog and the standalone … CWE-79
CWE-80
Cross-site Scripting
Basic XSS
CVE-2024-49377 2024-11-7 03:17 2024-11-6 Show GitHub Exploit DB Packet Storm
315493 - - - An XML External Entity (XXE) vulnerability in HAPI FHIR before v6.4.0 allows attackers to access sensitive information or execute arbitrary code via supplying a crafted request containing malicious X… - CVE-2024-51132 2024-11-7 03:17 2024-11-6 Show GitHub Exploit DB Packet Storm
315494 - - - WebLaudos v20.8 (118) was discovered to contain a cross-site scripting (XSS) vulnerability via the login page. - CVE-2024-48312 2024-11-7 03:17 2024-11-6 Show GitHub Exploit DB Packet Storm
315495 - - - Under certain conditions, access to service libraries is granted to account they should not have access to. - CVE-2023-29122 2024-11-7 03:17 2024-11-6 Show GitHub Exploit DB Packet Storm
315496 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2024. N… - CVE-2024-50315 2024-11-7 03:15 2024-11-7 Show GitHub Exploit DB Packet Storm
315497 5.4 MEDIUM
Network
phpgurukul online_shopping_portal A vulnerability was found in PHPGurukul Online Shopping Portal 2.0. It has been declared as problematic. This vulnerability affects unknown code of the file admin/assets/plugins/DataTables/media/unit… CWE-79
Cross-site Scripting
CVE-2024-10753 2024-11-7 02:42 2024-11-4 Show GitHub Exploit DB Packet Storm
315498 7.1 HIGH
Network
akamai secure_internet_access_enterprise_threatavert Akamai SIA (Secure Internet Access Enterprise) ThreatAvert, in SPS (Security and Personalization Services) before the latest 19.2.0 patch and Apps Portal before 19.2.0.3 or 19.2.0.20240814, has incor… CWE-863
 Incorrect Authorization
CVE-2024-45164 2024-11-7 02:35 2024-11-4 Show GitHub Exploit DB Packet Storm
315499 8.1 HIGH
Network
qbittorrent qbittorrent qBittorrent before 5.0.1 proceeds with use of https URLs even after certificate validation errors. CWE-295
Improper Certificate Validation 
CVE-2024-51774 2024-11-7 02:35 2024-11-2 Show GitHub Exploit DB Packet Storm
315500 - - - IBOS v4.5.5 has an arbitrary file deletion vulnerability via \system\modules\dashboard\controllers\LoginController.php. - CVE-2024-28265 2024-11-7 02:35 2024-11-2 Show GitHub Exploit DB Packet Storm