Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4811 7.8 重要
Local
LibreOffice プロジェクト LibreOffice LibreOffice プロジェクトのLibreOfficeにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-4430 2026-05-11 11:04 2026-05-7 Show GitHub Exploit DB Packet Storm
4812 8.4 重要
Local
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAIにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-44334 2026-05-11 11:04 2026-05-8 Show GitHub Exploit DB Packet Storm
4813 9.8 緊急
Network
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAIにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-44335 2026-05-11 11:04 2026-05-8 Show GitHub Exploit DB Packet Storm
4814 9.6 緊急
Network
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAIにおける複数の脆弱性 CWE-20
CWE-22
CWE-829
CWE-913
CWE-94
CVE-2026-44336 2026-05-11 11:04 2026-05-8 Show GitHub Exploit DB Packet Storm
4815 6.3 警告
Network
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAIにおける複数の脆弱性 CWE-20
CWE-89
CVE-2026-44337 2026-05-11 11:04 2026-05-8 Show GitHub Exploit DB Packet Storm
4816 7.3 重要
Network
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAIにおける複数の脆弱性 CWE-1188
CWE-306
CWE-668
CVE-2026-44338 2026-05-11 11:04 2026-05-8 Show GitHub Exploit DB Packet Storm
4817 8.6 重要
Network
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAI等の複数製品におけるクラスまたはコードを選択する外部から制御された入力の使用に関する脆弱性 CWE-470
クラスまたはコードを選択する外部から制御された入力の使用
CVE-2026-44339 2026-05-11 11:04 2026-05-8 Show GitHub Exploit DB Packet Storm
4818 7.5 重要
Network
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAIにおける複数の脆弱性 CWE-22
CWE-59
CVE-2026-44340 2026-05-11 11:04 2026-05-8 Show GitHub Exploit DB Packet Storm
4819 7.8 重要
Local
ZTE ZXCLOUD iRAI ZTEのZXCLOUD iRAIにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-44406 2026-05-11 11:04 2026-05-7 Show GitHub Exploit DB Packet Storm
4820 7.5 重要
Network
Zcash Foundation Zebrad Zcash FoundationのZebradにおける計算の誤りに関する脆弱性 CWE-682
計算の誤り
CVE-2026-44498 2026-05-11 11:04 2026-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313771 6.1 MEDIUM
Network
vice webopac Webopac from Grand Vice info has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript code in the user's browser through phishing … CWE-79
Cross-site Scripting
CVE-2024-11019 2024-11-19 03:59 2024-11-11 Show GitHub Exploit DB Packet Storm
313772 9.8 CRITICAL
Network
vice webopac Webopac from Grand Vice info does not properly validate uploaded file types, allowing unauthenticated remote attackers to upload and execute webshells, which could lead to arbitrary code execution on… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-11018 2024-11-19 03:59 2024-11-11 Show GitHub Exploit DB Packet Storm
313773 9.8 CRITICAL
Network
1000projects beauty_parlour_management_system A vulnerability was found in 1000 Projects Beauty Parlour Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/search-invoices.php. The manipu… CWE-89
SQL Injection
CVE-2024-11101 2024-11-19 03:57 2024-11-12 Show GitHub Exploit DB Packet Storm
313774 9.8 CRITICAL
Network
1000projects beauty_parlour_management_system A vulnerability was found in 1000 Projects Beauty Parlour Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /index.php. T… CWE-89
SQL Injection
CVE-2024-11100 2024-11-19 03:52 2024-11-12 Show GitHub Exploit DB Packet Storm
313775 8.8 HIGH
Network
vice webopac Webopac from Grand Vice info does not properly validate uploaded file types, allowing remote attackers with regular privileges to upload and execute webshells, which could lead to arbitrary code exec… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-11017 2024-11-19 03:47 2024-11-11 Show GitHub Exploit DB Packet Storm
313776 7.7 HIGH
Network
adobe commerce
magento
Adobe Commerce versions 3.2.5 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could lead to a security feature bypass. A low privileged attacker could exploit this… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2024-49521 2024-11-19 03:44 2024-11-13 Show GitHub Exploit DB Packet Storm
313777 8.8 HIGH
Network
oretnom23 online_veterinary_appointment_system A vulnerability classified as critical was found in SourceCodester Online Veterinary Appointment System 1.0. This vulnerability affects unknown code of the file /admin/services/view_service.php. The … CWE-89
SQL Injection
CVE-2024-10990 2024-11-19 03:42 2024-11-8 Show GitHub Exploit DB Packet Storm
313778 7.8 HIGH
Local
adobe animate Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue… CWE-416
 Use After Free
CVE-2024-49526 2024-11-19 03:41 2024-11-13 Show GitHub Exploit DB Packet Storm
313779 8.8 HIGH
Network
codezips online_institute_management_system A vulnerability has been found in Codezips Online Institute Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /edit_user.php. Th… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-10994 2024-11-19 03:41 2024-11-8 Show GitHub Exploit DB Packet Storm
313780 8.8 HIGH
Network
codezips online_institute_management_system A vulnerability, which was classified as critical, was found in Codezips Online Institute Management System 1.0. Affected is an unknown function of the file /manage_website.php. The manipulation of t… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-10993 2024-11-19 03:41 2024-11-8 Show GitHub Exploit DB Packet Storm