Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4991 4.3 警告
Network
OpenClaw OpenClaw OpenClawにおける許容された入力値の許可リストに関する脆弱性 CWE-183
許容された入力値の許可リスト
CVE-2026-44111 2026-05-11 10:55 2026-05-6 Show GitHub Exploit DB Packet Storm
4992 6.3 警告
Network
OpenClaw OpenClaw OpenClawにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-44112 2026-05-11 10:55 2026-05-6 Show GitHub Exploit DB Packet Storm
4993 6.3 警告
Network
OpenClaw OpenClaw OpenClawにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-44113 2026-05-11 10:55 2026-05-6 Show GitHub Exploit DB Packet Storm
4994 7.8 重要
Local
OpenClaw OpenClaw OpenClawにおける不完全なブラックリストに関する脆弱性 CWE-184
不完全なブラックリスト
CVE-2026-44114 2026-05-11 10:55 2026-05-6 Show GitHub Exploit DB Packet Storm
4995 8.8 重要
Network
OpenClaw OpenClaw OpenClawにおける不完全なブラックリストに関する脆弱性 CWE-184
不完全なブラックリスト
CVE-2026-44115 2026-05-11 10:55 2026-05-6 Show GitHub Exploit DB Packet Storm
4996 8.6 重要
Network
OpenClaw OpenClaw OpenClawにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-44116 2026-05-11 10:55 2026-05-6 Show GitHub Exploit DB Packet Storm
4997 5.8 警告
Network
OpenClaw OpenClaw OpenClawにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-44117 2026-05-11 10:55 2026-05-6 Show GitHub Exploit DB Packet Storm
4998 7.8 重要
Local
OpenClaw OpenClaw OpenClawにおけるスプーフィングによる認証回避に関する脆弱性 CWE-290
スプーフィングによる認証回避
CVE-2026-44118 2026-05-11 10:55 2026-05-6 Show GitHub Exploit DB Packet Storm
4999 7.1 重要
Local
gitpython project gitpython gitpython projectのgitpythonにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-44243 2026-05-11 10:55 2026-05-7 Show GitHub Exploit DB Packet Storm
5000 9.1 緊急
Network
The Tor Project Tor The Tor ProjectのTorにおける指定された機能の不適切な提供に関する脆弱性 CWE-684
指定された機能の不適切な提供
CVE-2026-44597 2026-05-11 10:55 2026-05-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349111 - xuebook xuebook SQL injection vulnerability in index.php in xueBook 1.0 allows remote attackers to execute arbitrary SQL commands via the start parameter. NVD-CWE-Other
CVE-2006-2855 2017-07-20 10:31 2006-06-7 Show GitHub Exploit DB Packet Storm
349112 - activestate activeperl ActiveState ActivePerl 5.8.8.817 for Windows configures the site/lib directory with "Users" group permissions for changing files, which allows local users to gain privileges by creating a malicious s… NVD-CWE-Other
CVE-2006-2856 2017-07-20 10:31 2006-06-7 Show GitHub Exploit DB Packet Storm
349113 - particle_soft particle_wiki SQL injection vulnerability in index.php in Particle Wiki 1.0.2 and earlier allows remote attackers to execute arbitrary SQL commands via the version parameter. NVD-CWE-Other
CVE-2006-2861 2017-07-20 10:31 2006-06-7 Show GitHub Exploit DB Packet Storm
349114 - alwil avast_antivirus Unspecified vulnerability in the CHM unpacker in avast! before 4.7.844 has unknown impact and remote attack vectors. NVD-CWE-Other
CVE-2006-2869 2017-07-20 10:31 2006-06-7 Show GitHub Exploit DB Packet Storm
349115 - intelligent_solutions asp_discussion_forum Cross-site scripting (XSS) vulnerability in forum_search.asp in Intelligent Solutions Inc. ASP Discussion Forum allows remote attackers to inject arbitrary web script or HTML via the search variable. NVD-CWE-Other
CVE-2006-2870 2017-07-20 10:31 2006-06-7 Show GitHub Exploit DB Packet Storm
349116 - enigma_haber enigma_haber Cross-site scripting (XSS) vulnerability in hava.asp in Enigma Haber 4.2 allows remote attackers to inject arbitrary web script or HTML via the il parameter. NOTE: the provenance of this information… NVD-CWE-Other
CVE-2006-2873 2017-07-20 10:31 2006-06-7 Show GitHub Exploit DB Packet Storm
349117 - osads_alliance_database osads_alliance_database Unspecified vulnerability in OSADS Alliance Database before 1.4 has unknown impact and attack vectors related to a "Security Leak to lock in HTML-Code," possibly due to a cross-site scripting (XSS) v… NVD-CWE-Other
CVE-2006-2874 2017-07-20 10:31 2006-06-7 Show GitHub Exploit DB Packet Storm
349118 - alex news-engine SQL injection vulnerability in newscomments.php in Alex News-Engine 1.5.0 and earlier allows remote attackers to execute arbitrary SQL commands via the newsid parameter. NVD-CWE-Other
CVE-2006-2879 2017-07-20 10:31 2006-06-7 Show GitHub Exploit DB Packet Storm
349119 - pyblosxom pyblosxom Cross-site scripting (XSS) vulnerability in the Contributed Packages for PyBlosxom 1.2.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the Comments plugin in the (1) … NVD-CWE-Other
CVE-2006-2880 2017-07-20 10:31 2006-06-7 Show GitHub Exploit DB Packet Storm
349120 - pyblosxom pyblosxom This vulnerability is present only in the Contributed Packages of this product. NVD-CWE-Other
CVE-2006-2880 2017-07-20 10:31 2006-06-7 Show GitHub Exploit DB Packet Storm