Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4381 7.3 重要
Network
NextChat NextChat NextChatにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-7178 2026-05-7 12:28 2026-04-27 Show GitHub Exploit DB Packet Storm
4382 7.3 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における複数の脆弱性 CWE-119
CWE-787
CVE-2026-7323 2026-05-7 12:28 2026-04-28 Show GitHub Exploit DB Packet Storm
4383 9.6 緊急
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-7333 2026-05-7 12:28 2026-04-28 Show GitHub Exploit DB Packet Storm
4384 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-7334 2026-05-7 12:28 2026-04-28 Show GitHub Exploit DB Packet Storm
4385 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-7335 2026-05-7 12:28 2026-04-28 Show GitHub Exploit DB Packet Storm
4386 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-7336 2026-05-7 12:28 2026-04-28 Show GitHub Exploit DB Packet Storm
4387 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける型の取り違えに関する脆弱性 CWE-843
型の取り違え
CVE-2026-7337 2026-05-7 12:28 2026-04-28 Show GitHub Exploit DB Packet Storm
4388 7.5 重要
Adjacent
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-7338 2026-05-7 12:28 2026-04-28 Show GitHub Exploit DB Packet Storm
4389 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-7339 2026-05-7 12:28 2026-04-28 Show GitHub Exploit DB Packet Storm
4390 8.1 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-7346 2026-05-7 12:28 2026-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314141 - - - Chamilo LMS Version 1.11.26 is vulnerable to Incorrect Access Control. A non-authenticated attacker can request the number of messages and the number of online users via "/main/inc/ajax/message.ajax.… - CVE-2024-30619 2024-11-6 03:35 2024-11-5 Show GitHub Exploit DB Packet Storm
314142 - - - A Stored Cross-Site Scripting (XSS) Vulnerability in Chamilo LMS 1.11.26 allows a remote attacker to execute arbitrary JavaScript in a web browser by including a malicious payload in the 'content' pa… - CVE-2024-30618 2024-11-6 03:35 2024-11-5 Show GitHub Exploit DB Packet Storm
314143 - - - Yealink Meeting Server before V26.0.0.67 is vulnerable to sensitive data exposure in the server response via sending HTTP request with enterprise ID. - CVE-2024-48352 2024-11-6 03:35 2024-11-2 Show GitHub Exploit DB Packet Storm
314144 - - - Altai Technologies Ltd Altai IX500 Indoor 22 802.11ac Wave 2 AP After login, there are file reads in the background, and attackers can obtain sensitive information such as user credentials, system co… - CVE-2024-51399 2024-11-6 03:35 2024-11-2 Show GitHub Exploit DB Packet Storm
314145 - - - Altai Technologies Ltd Altai X500 Indoor 22 802.11ac Wave 2 AP web Management Weak password leakage in the background may lead to unauthorized access, data theft, and network attacks, seriously threa… - CVE-2024-51398 2024-11-6 03:35 2024-11-2 Show GitHub Exploit DB Packet Storm
314146 9.8 CRITICAL
Network
codezips free_exam_hall_seating_management_system A vulnerability classified as critical has been found in Codezips Free Exam Hall Seating Management System 1.0. Affected is an unknown function of the file /teacher.php. The manipulation of the argum… CWE-89
SQL Injection
CVE-2024-10737 2024-11-6 03:03 2024-11-4 Show GitHub Exploit DB Packet Storm
314147 9.8 CRITICAL
Network
codezips free_exam_hall_seating_management_system A vulnerability was found in Codezips Free Exam Hall Seating Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /student.php. The manipulatio… CWE-89
SQL Injection
CVE-2024-10736 2024-11-6 03:03 2024-11-4 Show GitHub Exploit DB Packet Storm
314148 9.8 CRITICAL
Network
codezips pet_shop_management_system A vulnerability was found in Codezips Pet Shop Management System 1.0. It has been classified as critical. This affects an unknown part of the file /productsadd.php. The manipulation of the argument i… CWE-89
SQL Injection
CVE-2024-10752 2024-11-6 02:59 2024-11-4 Show GitHub Exploit DB Packet Storm
314149 5.4 MEDIUM
Network
tezzeract league_of_legends_shortcodes The League of Legends Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 1.0.1 due to insufficient input sanitization and ou… CWE-79
Cross-site Scripting
CVE-2024-10342 2024-11-6 02:52 2024-10-25 Show GitHub Exploit DB Packet Storm
314150 6.5 MEDIUM
Network
tezzeract league_of_legends_shortcodes The League of Legends Shortcodes plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode in versions up to, and including, 1.0.1 due to insufficient escaping on the user suppli… CWE-89
SQL Injection
CVE-2024-10341 2024-11-6 02:51 2024-10-25 Show GitHub Exploit DB Packet Storm