Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4361 4.3 警告
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-41910 2026-05-7 12:29 2026-04-28 Show GitHub Exploit DB Packet Storm
4362 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-41911 2026-05-7 12:29 2026-04-28 Show GitHub Exploit DB Packet Storm
4363 7.6 重要
Network
OpenClaw OpenClaw OpenClawにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-41912 2026-05-7 12:29 2026-04-28 Show GitHub Exploit DB Packet Storm
4364 7.5 重要
Network
FreeBSD FreeBSD FreeBSDにおける有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2026-4247 2026-05-7 12:29 2026-03-26 Show GitHub Exploit DB Packet Storm
4365 7.5 重要
Network
レッドハット
libarchive
Red Hat Enterprise Linux Server AUS
Red Hat Hardened Images
openshift container platform for power
Red Hat Enterprise&nb…
libarchive等の複数ベンダの製品における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-4424 2026-05-7 12:29 2026-03-19 Show GitHub Exploit DB Packet Storm
4366 7.5 重要
Network
FreeBSD FreeBSD FreeBSDにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-4652 2026-05-7 12:29 2026-03-26 Show GitHub Exploit DB Packet Storm
4367 5.5 警告
Local
レッドハット
firewalld
firewalld
Red Hat Enterprise Linux
firewalld等の複数ベンダの製品における割り当てられたパーミッションの実行に関する脆弱性 CWE-279
割り当てられたパーミッションの不適切な実行
CVE-2026-4948 2026-05-7 12:29 2026-03-27 Show GitHub Exploit DB Packet Storm
4368 10 緊急
Network
huggingface smolagents huggingfaceのsmolagentsにおける複数の脆弱性 CWE-74
CWE-94
CVE-2026-4963 2026-05-7 12:29 2026-03-27 Show GitHub Exploit DB Packet Storm
4369 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. ch22 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のch22 ファームウェアにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-5154 2026-05-7 12:28 2026-03-30 Show GitHub Exploit DB Packet Storm
4370 9.8 緊急
Network
TRENDnet TEW-713RE FIRMWARE TRENDnetのTEW-713RE FIRMWAREにおける複数の脆弱性 CWE-74
CWE-77
CVE-2026-5183 2026-05-7 12:28 2026-03-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
491 5.3 MEDIUM
Network
google chrome Uninitialized Use in Video in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from proc… New CWE-457
 Use of Uninitialized Variable
CVE-2026-11696 2026-06-9 23:51 2026-06-9 Show GitHub Exploit DB Packet Storm
492 4.3 MEDIUM
Network
google chrome Inappropriate implementation in Passwords in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High) New CWE-693
 Protection Mechanism Failure
CVE-2026-11695 2026-06-9 23:50 2026-06-9 Show GitHub Exploit DB Packet Storm
493 8.8 HIGH
Network
google chrome Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) New CWE-416
 Use After Free
CVE-2026-11698 2026-06-9 23:50 2026-06-9 Show GitHub Exploit DB Packet Storm
494 5.3 MEDIUM
Network
checkmk checkmk Incorrect authorization in the User Messages dashboard widget in Checkmk <2.5.0p5 causes the message-fetching endpoints to return the dashboard creator's messages rather than the viewer's, allowing a… New CWE-863
 Incorrect Authorization
CVE-2026-7765 2026-06-9 23:49 2026-06-8 Show GitHub Exploit DB Packet Storm
495 5.4 MEDIUM
Network
checkmk checkmk Improper neutralization of HTML-encoded characters in the URL validation function in Checkmk <2.5.0p5, <2.4.0p31, <2.3.0p48, and all 2.2.0 versions allows an authenticated user to bypass URL validati… New CWE-79
Cross-site Scripting
CVE-2026-8833 2026-06-9 23:49 2026-06-8 Show GitHub Exploit DB Packet Storm
496 - - - The Electron preload script in Logseq exposes an API method that allows the renderer process to invoke IPC handlers without proper path validation. An attacker with JavaScript execution in the render… New CWE-749
 Exposed Dangerous Method or Function
CVE-2026-47899 2026-06-9 23:47 2026-06-9 Show GitHub Exploit DB Packet Storm
497 - - - Logseq is vulnerable to a stored cross-site scripting (XSS). A malicious plugin can include a JavaScript payload in the "name" field of its "package.json" file, which is rendered using "innerHTML" wi… New CWE-79
Cross-site Scripting
CVE-2026-47900 2026-06-9 23:47 2026-06-9 Show GitHub Exploit DB Packet Storm
498 - - - Logseq is vulnerable to a sandbox escape flaw where plugins running in sandboxed iframes can inject arbitrary HTML attributes, such as event handlers, into their container element in the host DOM. Du… New CWE-79
Cross-site Scripting
CVE-2026-47901 2026-06-9 23:47 2026-06-9 Show GitHub Exploit DB Packet Storm
499 - - - Uncontrolled Resource Consumption vulnerability in the Elixir standard library's Version module allows an attacker who controls a version string to cause a denial of service through CPU and memory ex… New CWE-400
 Uncontrolled Resource Consumption
CVE-2026-49762 2026-06-9 23:47 2026-06-9 Show GitHub Exploit DB Packet Storm
500 9.8 CRITICAL
Network
- - Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Netcad Software Inc. E-İmar allows SQL Injection. This issue affects E-İmar: from 2.10.1.0 befor… New CWE-89
SQL Injection
CVE-2026-7486 2026-06-9 23:47 2026-06-9 Show GitHub Exploit DB Packet Storm