Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4491 6.5 警告
Network
Devolutions Devolutions Server DevolutionsのDevolutions Serverにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-6706 2026-05-7 11:25 2026-04-28 Show GitHub Exploit DB Packet Storm
4492 6.5 警告
Adjacent
Amazon.com, Inc. freertos-plus-tcp Amazon.com, Inc.のfreertos-plus-tcpにおけるスプーフィングによる認証回避に関する脆弱性 CWE-290
スプーフィングによる認証回避
CVE-2026-7422 2026-05-7 11:25 2026-04-29 Show GitHub Exploit DB Packet Storm
4493 6.5 警告
Adjacent
Amazon.com, Inc. freertos-plus-tcp Amazon.com, Inc.のfreertos-plus-tcpにおける整数アンダーフローの脆弱性 CWE-191
整数アンダーフロー
CVE-2026-7423 2026-05-7 11:25 2026-04-29 Show GitHub Exploit DB Packet Storm
4494 8.1 重要
Adjacent
Amazon.com, Inc. freertos-plus-tcp Amazon.com, Inc.のfreertos-plus-tcpにおける整数アンダーフローの脆弱性 CWE-191
整数アンダーフロー
CVE-2026-7424 2026-05-7 11:25 2026-04-29 Show GitHub Exploit DB Packet Storm
4495 6.5 警告
Adjacent
Amazon.com, Inc. freertos-plus-tcp Amazon.com, Inc.のfreertos-plus-tcpにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-7425 2026-05-7 11:25 2026-04-29 Show GitHub Exploit DB Packet Storm
4496 8.1 重要
Adjacent
Amazon.com, Inc. freertos-plus-tcp Amazon.com, Inc.のfreertos-plus-tcpにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-7426 2026-05-7 11:25 2026-04-29 Show GitHub Exploit DB Packet Storm
4497 5.4 警告
Network
レッドハット build of keycloak レッドハットのbuild of keycloakにおけるリクエストの直接送信に関する脆弱性 CWE-425
CWE-noinfo
CVE-2026-7500 2026-05-7 11:25 2026-04-30 Show GitHub Exploit DB Packet Storm
4498 8.8 重要
Network
HKUDS OpenHarness HKUDSのOpenHarnessにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-7551 2026-05-7 11:25 2026-04-30 Show GitHub Exploit DB Packet Storm
4499 9.8 緊急
Network
Synway SMG Gateway Management Software SynwayのSMG Gateway Management SoftwareにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2025-71284 2026-05-7 10:53 2026-04-30 Show GitHub Exploit DB Packet Storm
4500 7.8 重要
Local
KDE project KCoreAddons KDE projectのKCoreAddonsにおけるエスケープ、メタ、またはコントロールシーケンスの不適切な無効化に関する脆弱性 CWE-150
エスケープ、メタ、またはコントロールシーケンスの不適切な無効化
CVE-2026-41526 2026-05-7 10:53 2026-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314851 - - - Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity. - CVE-2023-31356 2024-10-31 04:35 2024-08-14 Show GitHub Exploit DB Packet Storm
314852 - - - A hardcoded AES key in PMFW may result in a privileged attacker gaining access to the key, potentially resulting in internal debug information leakage. - CVE-2023-20512 2024-10-31 04:35 2024-08-14 Show GitHub Exploit DB Packet Storm
314853 7.0 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: riscv: fix race when vmap stack overflow Currently, when detecting vmap stack overflow, riscv firstly switches to the so called s… CWE-362
Race Condition
CVE-2022-49001 2024-10-31 03:58 2024-10-22 Show GitHub Exploit DB Packet Storm
314854 6.1 MEDIUM
Network
butlerblog wp-members The WP-Members Membership Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, an… CWE-79
Cross-site Scripting
CVE-2024-9231 2024-10-31 03:56 2024-10-22 Show GitHub Exploit DB Packet Storm
314855 7.5 HIGH
Network
esafenet cdg A vulnerability classified as problematic was found in ESAFENET CDG 5. Affected by this vulnerability is the function actionViewDecyptFile of the file /com/esafenet/servlet/client/DecryptApplicationS… CWE-22
Path Traversal
CVE-2024-10379 2024-10-31 03:54 2024-10-25 Show GitHub Exploit DB Packet Storm
314856 5.5 MEDIUM
Local
apple macos An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.7.1, macOS Sonoma 14.7.1. Parsing a maliciously crafted file may lead to an unexpect… CWE-787
 Out-of-bounds Write
CVE-2024-44284 2024-10-31 03:48 2024-10-29 Show GitHub Exploit DB Packet Storm
314857 9.8 CRITICAL
Network
codezips pet_shop_management_system A vulnerability, which was classified as critical, has been found in Codezips Pet Shop Management System 1.0. This issue affects some unknown processing of the file /animalsupdate.php. The manipulati… CWE-89
SQL Injection
CVE-2024-10430 2024-10-31 03:48 2024-10-28 Show GitHub Exploit DB Packet Storm
314858 5.5 MEDIUM
Local
apple macos
iphone_os
ipados
watchos
visionos
tvos
An out-of-bounds read was addressed with improved input validation. This issue is fixed in tvOS 18.1, iOS 18.1 and iPadOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, macOS Ventura 13.7.1, macOS Sonoma 14.7.1… CWE-125
Out-of-bounds Read
CVE-2024-44282 2024-10-31 03:47 2024-10-29 Show GitHub Exploit DB Packet Storm
314859 5.5 MEDIUM
Local
apple ipados
iphone_os
macos
watchos
visionos
tvos
This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 18.1 and iPadOS 18.1, visionOS 2.1, macOS Sonoma 14.7.1, watchOS 11.1, tvOS 18.1. A malicious app may be able t… CWE-59
Link Following
CVE-2024-44273 2024-10-31 03:45 2024-10-29 Show GitHub Exploit DB Packet Storm
314860 9.8 CRITICAL
Network
projectworlds simple_web-based_chat_application A vulnerability has been found in Project Worlds Simple Web-Based Chat Application 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /index.php. T… CWE-89
SQL Injection
CVE-2024-10432 2024-10-31 03:45 2024-10-28 Show GitHub Exploit DB Packet Storm