|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 20, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 5061 | 9.8 |
緊急
Network |
nginxui | Nginx UI | Nginx UI TeamのNginx UIにおける重要な機能に対する認証の欠如に関する脆弱性 |
CWE-306
重要な機能に対する認証の欠如 解説 |
CVE-2026-42221 | 2026-05-8 12:23 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 5062 | 9.8 |
緊急
Network |
nginxui | Nginx UI | Nginx UI TeamのNginx UIにおける複数の脆弱性 |
CWE-284 CWE-306 |
CVE-2026-42222 | 2026-05-8 12:23 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 5063 | 6.5 |
警告
Network |
nginxui | Nginx UI | Nginx UI TeamのNginx UIにおける情報漏えいに関する脆弱性 |
CWE-200
情報漏えい |
CVE-2026-42223 | 2026-05-8 12:23 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 5064 | 7.5 |
重要
Network |
n8n | n8n | n8nにおける認証の欠如に関する脆弱性 |
CWE-862
認証の欠如 |
CVE-2026-42226 | 2026-05-8 12:23 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 5065 | 6.5 |
警告
Network |
n8n | n8n | n8nにおけるユーザ制御の鍵による認証回避に関する脆弱性 |
CWE-639
ユーザ制御の鍵による認証回避 |
CVE-2026-42227 | 2026-05-8 12:23 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 5066 | 6.5 |
警告
Network |
n8n | n8n | n8nにおける認証の欠如に関する脆弱性 |
CWE-862
認証の欠如 |
CVE-2026-42228 | 2026-05-8 12:22 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 5067 | 8.8 |
重要
Network |
n8n | n8n | n8nにおけるSQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2026-42229 | 2026-05-8 12:22 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 5068 | 6.1 |
警告
Network |
n8n | n8n | n8nにおけるオープンリダイレクトの脆弱性 |
CWE-601
オープンリダイレクト |
CVE-2026-42230 | 2026-05-8 12:22 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 5069 | 8.8 |
重要
Network |
n8n | n8n | n8nにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 |
CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染) |
CVE-2026-42231 | 2026-05-8 12:22 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 5070 | 8.8 |
重要
Network |
n8n | n8n | n8nにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 |
CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染) |
CVE-2026-42232 | 2026-05-8 12:22 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 20, 2026, 4:01 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 314081 | 4.8 |
MEDIUM
Network |
ibm | security_qradar_edr | IBM Security ReaQta 3.12 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality p… |
CWE-79
Cross-site Scripting |
CVE-2024-45099 | 2024-11-16 09:11 | 2024-11-14 | Show | GitHub Exploit DB Packet Storm |
| 314082 | 7.8 |
HIGH
Local |
microsoft |
excel office 365_apps office_long_term_servicing_channel |
Microsoft Excel Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49027 | 2024-11-16 09:09 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 314083 | 7.8 |
HIGH
Local |
microsoft |
office_online_server excel office 365_apps office_long_term_servicing_channel |
Microsoft Excel Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49026 | 2024-11-16 09:08 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 314084 | 7.8 |
HIGH
Local |
microsoft |
excel office 365_apps office_long_term_servicing_channel |
Microsoft Excel Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49030 | 2024-11-16 09:06 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 314085 | 7.8 |
HIGH
Local |
microsoft |
excel office 365_apps office_long_term_servicing_channel |
Microsoft Excel Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49029 | 2024-11-16 09:06 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 314086 | 7.5 |
HIGH
Network |
microsoft | exchange_server | Microsoft Exchange Server Spoofing Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49040 | 2024-11-16 09:05 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 314087 | 7.5 |
HIGH
Network |
microsoft |
word office 365_apps office_long_term_servicing_channel |
Microsoft Word Security Feature Bypass Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49033 | 2024-11-16 09:05 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 314088 | 6.7 |
MEDIUM
Network |
microsoft | visual_studio_2022 | Visual Studio Elevation of Privilege Vulnerability |
CWE-284
Improper Access Control |
CVE-2024-49044 | 2024-11-16 09:03 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 314089 | 8.8 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_10_1809 windows_server_2019 windows_server_2022 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_… |
Windows Telephony Service Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43621 | 2024-11-16 08:59 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 314090 | 8.8 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_10_1809 windows_server_2019 windows_server_2022 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_… |
Windows Telephony Service Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43620 | 2024-11-16 08:59 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |