Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
471 4.9 警告
Network
Extreme Networks, Inc. ExtremeCloud IQ Site Engine Extreme Networks, Inc.のExtremeCloud IQ Site Engineにおける認証情報の不十分な保護に関する脆弱性 New CWE-522
認証情報の不十分な保護
CVE-2026-0689 2026-06-8 12:28 2026-03-2 Show GitHub Exploit DB Packet Storm
472 9.8 緊急
Network
Tesseract OCR project Tesseract OCR ZapolnochのTesseract OCRにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-26832 2026-06-8 12:28 2026-03-25 Show GitHub Exploit DB Packet Storm
473 9.1 緊急
Network
Bytedance Inc. DeerFlow Bytedance Inc.のDeerFlowにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-40518 2026-06-8 12:28 2026-04-17 Show GitHub Exploit DB Packet Storm
474 5.3 警告
Network
The Netty project netty-incubator-codec-ohttp Nettyのnetty-incubator-codec-ohttpにおける不十分なランダム値の使用に関する脆弱性 New CWE-330
不十分なランダム値の使用
CVE-2026-41207 2026-06-8 12:28 2026-06-4 Show GitHub Exploit DB Packet Storm
475 9.8 緊急
Network
DragonSoft Gcb/fcb Government Financial Cybersecurity Configuration Audit Software DragonSoftのGcb/fcb Government Financial Cybersecurity Configuration Audit Softwareにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-4312 2026-06-8 12:28 2026-03-17 Show GitHub Exploit DB Packet Storm
476 5.5 警告
Local
Linaro OP-TEE Trusted FirmwareのOP-TEEにおける型の取り違えに関する脆弱性 New CWE-843
型の取り違え
CVE-2026-45702 2026-06-8 12:28 2026-06-3 Show GitHub Exploit DB Packet Storm
477 9.1 緊急
Network
The Netty project netty-incubator-codec-ohttp Nettyのnetty-incubator-codec-ohttpにおける複数の脆弱性 New CWE-125
CWE-787
CVE-2026-48040 2026-06-8 12:28 2026-06-4 Show GitHub Exploit DB Packet Storm
478 9.8 緊急
Network
マイクロソフト Azure HorizonDB Azure HorizonDB Elevation of Privilege Vulnerability New CWE-290
スプーフィングによる認証回避
CVE-2026-48567 2026-06-8 12:28 2026-06-4 Show GitHub Exploit DB Packet Storm
479 7.5 重要
Network
マイクロソフト Microsoft Exchange Online Microsoft Exchange Online Information Disclosure Vulnerability New CWE-285
不適切な認可
CVE-2026-48579 2026-06-8 12:27 2026-06-4 Show GitHub Exploit DB Packet Storm
480 9.1 緊急
Network
CHORNY Apache::Session::Generate::ModUniqueId CHORNYのApache::Session::Generate::ModUniqueIdにおける予測可能な数字や識別子の生成に関する脆弱性 New CWE-340
予測可能な数字や識別子の生成
CVE-2026-5081 2026-06-8 12:27 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
344861 - hp hp-ux Unspecified vulnerability in the ied command in HP-UX 10.10, 10.20, and 11.0 allows local users to view "normally invisible data" via unknown attack vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2002-2270 2017-10-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
344862 - linux linux_kernel Unknown vulnerability in the eflags checking in the 32-bit ptrace emulation for the Linux kernel on AMD64 systems allows local users to gain privileges. NVD-CWE-Other
CVE-2004-0001 2017-10-10 10:30 2004-02-17 Show GitHub Exploit DB Packet Storm
344863 - openca openca The libCheckSignature function in crypto-utils.lib for OpenCA 0.9.1.6 and earlier only compares the serial of the signer's certificate and the one in the database, which can cause OpenCA to incorrect… NVD-CWE-Other
CVE-2004-0004 2017-10-10 10:30 2004-02-17 Show GitHub Exploit DB Packet Storm
344864 - apache-ssl apache-ssl Apache-SSL 1.3.28+1.52 and earlier, with SSLVerifyClient set to 1 or 3 and SSLFakeBasicAuth enabled, allows remote attackers to forge a client certificate by using basic authentication with the "one-… NVD-CWE-Other
CVE-2004-0009 2017-10-10 10:30 2004-03-3 Show GitHub Exploit DB Packet Storm
344865 - debian fsp Buffer overflow in fsp before 2.81.b18 allows remote users to execute arbitrary code. NVD-CWE-Other
CVE-2004-0011 2017-10-10 10:30 2004-01-20 Show GitHub Exploit DB Packet Storm
344866 - jabber_software_foundation jabber_server jabber 1.4.2, 1.4.2a, and possibly earlier versions, does not properly handle SSL connections, which allows remote attackers to cause a denial of service (crash). NVD-CWE-Other
CVE-2004-0013 2017-10-10 10:30 2004-02-3 Show GitHub Exploit DB Packet Storm
344867 - vbox3 vbox3 vbox3 0.1.8 and earlier does not properly drop privileges before executing a user-provided TCL script, which allows local users to gain privileges. NVD-CWE-Other
CVE-2004-0015 2017-10-10 10:30 2004-02-3 Show GitHub Exploit DB Packet Storm
344868 - phpgroupware phpgroupware The calendar module for phpgroupware 0.9.14 does not enforce the "save extension" feature for holiday files, which allows remote attackers to create and execute PHP files. NVD-CWE-Other
CVE-2004-0016 2017-10-10 10:30 2004-02-3 Show GitHub Exploit DB Packet Storm
344869 - samba jitterbug jitterbug 1.6.2 does not properly sanitize inputs, which allows remote authenticated users to execute arbitrary commands. NVD-CWE-Other
CVE-2004-0028 2017-10-10 10:30 2004-02-3 Show GitHub Exploit DB Packet Storm
344870 - phpgedview phpgedview PHPGEDVIEW 2.61 allows remote attackers to reinstall the software and change the administrator password via a direct HTTP request to editconfig.php. NVD-CWE-Other
CVE-2004-0031 2017-10-10 10:30 2004-01-20 Show GitHub Exploit DB Packet Storm