Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5061 9.8 緊急
Network
nginxui Nginx UI Nginx UI TeamのNginx UIにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-42221 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5062 9.8 緊急
Network
nginxui Nginx UI Nginx UI TeamのNginx UIにおける複数の脆弱性 CWE-284
CWE-306
CVE-2026-42222 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5063 6.5 警告
Network
nginxui Nginx UI Nginx UI TeamのNginx UIにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-42223 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5064 7.5 重要
Network
n8n n8n n8nにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-42226 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5065 6.5 警告
Network
n8n n8n n8nにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-42227 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5066 6.5 警告
Network
n8n n8n n8nにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-42228 2026-05-8 12:22 2026-05-4 Show GitHub Exploit DB Packet Storm
5067 8.8 重要
Network
n8n n8n n8nにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-42229 2026-05-8 12:22 2026-05-4 Show GitHub Exploit DB Packet Storm
5068 6.1 警告
Network
n8n n8n n8nにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-42230 2026-05-8 12:22 2026-05-4 Show GitHub Exploit DB Packet Storm
5069 8.8 重要
Network
n8n n8n n8nにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-42231 2026-05-8 12:22 2026-05-4 Show GitHub Exploit DB Packet Storm
5070 8.8 重要
Network
n8n n8n n8nにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-42232 2026-05-8 12:22 2026-05-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
851 4.8 MEDIUM
Network
netty netty Netty is a network application framework for development of protocol servers and clients. Prior to version 4.2.15.Final, Netty QUIC exposes the stateless reset token on the network path when using th… CWE-200
CWE-330
Information Exposure
 Use of Insufficiently Random Values
CVE-2026-50009 2026-06-15 11:31 2026-06-13 Show GitHub Exploit DB Packet Storm
852 7.5 HIGH
Network
netty netty Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Final and 4.2.15.Final, RedisArrayAggregator pre-allocates ArrayList with initial c… CWE-400
CWE-770
 Uncontrolled Resource Consumption
 Allocation of Resources Without Limits or Throttling
CVE-2026-50011 2026-06-15 11:31 2026-06-13 Show GitHub Exploit DB Packet Storm
853 5.3 MEDIUM
Network
netty netty Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Final and 4.2.15.Final, before reading the first request-line, `HttpObjectDecoder` … CWE-444
HTTP Request Smuggling
CVE-2026-50020 2026-06-15 11:31 2026-06-13 Show GitHub Exploit DB Packet Storm
854 5.3 MEDIUM
Network
netty netty Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Final and 4.2.15.Final, Netty HTTP/2 max header size handling produces an attack si… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-50560 2026-06-15 11:30 2026-06-13 Show GitHub Exploit DB Packet Storm
855 8.1 HIGH
Network
netty netty Netty is a network application framework for development of protocol servers and clients. In netty-handler prior to versions 4.1.135.Final and 4.2.15.Final, an attacker can bypass IPv6 subnet rules d… CWE-284
CWE-697
Improper Access Control
 Incorrect Comparison
CVE-2026-44249 2026-06-15 11:30 2026-06-12 Show GitHub Exploit DB Packet Storm
856 7.5 HIGH
Network
netty netty Netty is a network application framework for development of protocol servers and clients. In netty-codec-redis prior to versions 4.1.135.Final and 4.2.15.Final, an attacker can cause DoS by sending a… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-44250 2026-06-15 11:30 2026-06-12 Show GitHub Exploit DB Packet Storm
857 7.5 HIGH
Network
netty netty Netty is a network application framework for development of protocol servers and clients. In netty-codec-redis prior to versions 4.1.135.Final and 4.2.15.Final, an attacker can cause DoS by sending c… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-44890 2026-06-15 11:30 2026-06-12 Show GitHub Exploit DB Packet Storm
858 7.5 HIGH
Network
netty netty Netty is a network application framework for development of protocol servers and clients. Prior to version 4.2.15.Final, the default configuration of the `Http3ConnectionHandler` in the Netty HTTP/3 … CWE-400
CWE-1188
 Uncontrolled Resource Consumption
 Insecure Default Initialization of Resource
CVE-2026-44892 2026-06-15 11:30 2026-06-12 Show GitHub Exploit DB Packet Storm
859 7.5 HIGH
Network
netty netty Netty is a network application framework for development of protocol servers and clients. In netty-codec-haproxy prior to versions 4.1.135.Final and 4.2.15.Final, when decoding a PP2_TYPE_SSL TLV, HA… CWE-703
 Improper Check or Handling of Exceptional Conditions
CVE-2026-44893 2026-06-15 11:23 2026-06-13 Show GitHub Exploit DB Packet Storm
860 7.5 HIGH
Network
netty netty Netty is a network application framework for development of protocol servers and clients. NoQuicTokenHandler is the tokenHandler used when the application does not set one. Prior to version 4.2.15.Fi… CWE-940
 Improper Verification of Source of a Communication Channel
CVE-2026-44894 2026-06-15 11:23 2026-06-13 Show GitHub Exploit DB Packet Storm