Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5061 9.8 緊急
Network
nginxui Nginx UI Nginx UI TeamのNginx UIにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-42221 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5062 9.8 緊急
Network
nginxui Nginx UI Nginx UI TeamのNginx UIにおける複数の脆弱性 CWE-284
CWE-306
CVE-2026-42222 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5063 6.5 警告
Network
nginxui Nginx UI Nginx UI TeamのNginx UIにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-42223 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5064 7.5 重要
Network
n8n n8n n8nにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-42226 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5065 6.5 警告
Network
n8n n8n n8nにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-42227 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5066 6.5 警告
Network
n8n n8n n8nにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-42228 2026-05-8 12:22 2026-05-4 Show GitHub Exploit DB Packet Storm
5067 8.8 重要
Network
n8n n8n n8nにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-42229 2026-05-8 12:22 2026-05-4 Show GitHub Exploit DB Packet Storm
5068 6.1 警告
Network
n8n n8n n8nにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-42230 2026-05-8 12:22 2026-05-4 Show GitHub Exploit DB Packet Storm
5069 8.8 重要
Network
n8n n8n n8nにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-42231 2026-05-8 12:22 2026-05-4 Show GitHub Exploit DB Packet Storm
5070 8.8 重要
Network
n8n n8n n8nにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-42232 2026-05-8 12:22 2026-05-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
315041 - - - An issue was discovered in Logpoint before 7.5.0. Unvalidated input during the EventHub Collector setup by an authenticated user leads to Remote Code execution. - CVE-2024-48954 2024-11-9 04:01 2024-11-8 Show GitHub Exploit DB Packet Storm
315042 - - - An issue was discovered in Logpoint before 7.5.0. Endpoints for creating, editing, or deleting third-party authentication modules lacked proper authorization checks. This allowed unauthenticated user… - CVE-2024-48953 2024-11-9 04:01 2024-11-8 Show GitHub Exploit DB Packet Storm
315043 - - - An issue was discovered in Logpoint before 7.5.0. SOAR uses a static JWT secret key to generate tokens that allow access to SOAR API endpoints without authentication. This static key vulnerability en… - CVE-2024-48952 2024-11-9 04:01 2024-11-8 Show GitHub Exploit DB Packet Storm
315044 - - - An issue was discovered in Logpoint before 7.5.0. Server-Side Request Forgery (SSRF) on SOAR can be used to leak Logpoint's API Token leading to authentication bypass. - CVE-2024-48951 2024-11-9 04:01 2024-11-8 Show GitHub Exploit DB Packet Storm
315045 - - - An issue was discovered in Logpoint before 7.5.0. An endpoint used by Distributed Logpoint Setup was exposed, allowing unauthenticated attackers to bypass CSRF protections and authentication. - CVE-2024-48950 2024-11-9 04:01 2024-11-8 Show GitHub Exploit DB Packet Storm
315046 - - - A vulnerability in Veeam Backup & Replication Enterprise Manager has been identified, which allows attackers to perform authentication bypass. Attackers must be able to perform Man-in-the-Middle (MIT… - CVE-2024-40715 2024-11-9 04:01 2024-11-8 Show GitHub Exploit DB Packet Storm
315047 - - - A vulnerability classified as critical has been found in emqx neuron up to 2.10.0. Affected is the function handle_add_plugin in the library cmd.library of the file plugins/restful/plugin_handle.c. T… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2024-10964 2024-11-9 04:01 2024-11-8 Show GitHub Exploit DB Packet Storm
315048 - - - The Safe SVG WordPress plugin before 2.2.6 has its sanitisation code is only running for paths that call wp_handle_upload, but not for example for code that uses wp_handle_sideload which is often use… - CVE-2024-8378 2024-11-9 04:01 2024-11-8 Show GitHub Exploit DB Packet Storm
315049 - - - There exists an auth bypass in Google Quickshare where an attacker can upload an unknown file type to a victim. The root cause of the vulnerability lies in the fact that when a Payload Transfer frame… - CVE-2024-10668 2024-11-9 04:01 2024-11-8 Show GitHub Exploit DB Packet Storm
315050 - - - The Jetpack WordPress plugin does not have proper authorisation in one of its REST endpoint, allowing any authenticated users, such as subscriber to read arbitrary feedbacks data sent via the Jetpack… - CVE-2024-9926 2024-11-9 04:01 2024-11-8 Show GitHub Exploit DB Packet Storm