Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
561 7.5 重要
Network
n8n n8n n8nにおける高圧縮データの処理 (データ増幅)に関する脆弱性 CWE-409
高圧縮データの不適切な処理 (データ増幅)
CVE-2026-54314 2026-06-26 11:54 2026-06-23 Show GitHub Exploit DB Packet Storm
562 5.5 警告
Local
pypdf project pypdf pypdf projectのpypdfにおける無限ループに関する脆弱性 CWE-835
無限ループ
CVE-2026-54530 2026-06-26 11:54 2026-06-22 Show GitHub Exploit DB Packet Storm
563 5.5 警告
Local
pypdf project pypdf pypdf projectのpypdfにおける無限ループに関する脆弱性 CWE-835
無限ループ
CVE-2026-54531 2026-06-26 11:54 2026-06-22 Show GitHub Exploit DB Packet Storm
564 5.5 警告
Local
pypdf project pypdf pypdf projectのpypdfにおける無限ループに関する脆弱性 CWE-835
無限ループ
CVE-2026-54651 2026-06-26 11:54 2026-06-22 Show GitHub Exploit DB Packet Storm
565 5.3 警告
Network
Apache Software Foundation Apache NiFi Apache Software FoundationのApache NiFiにおける同一生成元ポリシー違反に関する脆弱性 CWE-346
同一生成元ポリシー違反
CVE-2026-54665 2026-06-26 11:54 2026-06-22 Show GitHub Exploit DB Packet Storm
566 9.9 緊急
Network
langflow langflow langflowにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-55255 2026-06-26 11:54 2026-06-23 Show GitHub Exploit DB Packet Storm
567 6.1 警告
Physics
langflow langflow langflowにおけるセッション期限に関する脆弱性 CWE-613
不適切なセッション期限
CVE-2026-55423 2026-06-26 11:54 2026-06-23 Show GitHub Exploit DB Packet Storm
568 7.5 重要
Network
langflow langflow langflowにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-55446 2026-06-26 11:54 2026-06-23 Show GitHub Exploit DB Packet Storm
569 9.6 緊急
Network
langflow langflow langflowにおける複数の脆弱性 CWE-200
CWE-61
CVE-2026-55447 2026-06-26 11:54 2026-06-23 Show GitHub Exploit DB Packet Storm
570 9.3 緊急
Network
langflow langflow langflowにおける複数の脆弱性 CWE-200
CWE-306
CWE-400
CVE-2026-55450 2026-06-26 11:54 2026-06-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
191531 8.1 HIGH
Network
xos-shop xos_shop_system Arbitrary File Deletion vulnerability in XOS-Shop xos_shop_system 1.0.9 via current_manufacturer_image parameter to /shop/admin/manufacturers.php. CWE-862
 Missing Authorization
CVE-2021-37764 2024-11-21 15:15 2022-06-17 Show GitHub Exploit DB Packet Storm
191532 9.8 CRITICAL
Network
apache hadoop There is a potential heap buffer overflow in Apache Hadoop libhdfs native code. Opening a file path provided by user without validation may result in a denial of service or arbitrary code execution. … - CVE-2021-37404 2024-11-21 15:15 2022-06-13 Show GitHub Exploit DB Packet Storm
191533 7.5 HIGH
Network
virtuasoftware cobranca Virtua Cobranca before 12R allows SQL Injection on the login page. CWE-89
SQL Injection
CVE-2021-37589 2024-11-21 15:15 2022-06-7 Show GitHub Exploit DB Packet Storm
191534 9.8 CRITICAL
Network
grandcom dynweb GRANDCOM DynWEB before 4.2 contains a SQL Injection vulnerability in the admin login interface. A remote unauthenticated attacker can exploit this vulnerability to obtain administrative access to the… CWE-89
SQL Injection
CVE-2021-37413 2024-11-21 15:15 2022-05-20 Show GitHub Exploit DB Packet Storm
191535 7.8 HIGH
Local
eset smart_security
internet_security
nod32_antivirus
endpoint_antivirus
endpoint_security
security
mail_security
server_security
file_security
Local privilege escalation in Windows products of ESET allows user who is logged into the system to exploit repair feature of the installer to run malicious code with higher privileges. This issue af… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2021-37851 2024-11-21 15:15 2022-05-12 Show GitHub Exploit DB Packet Storm
191536 7.5 HIGH
Network
mdt scn-ip000.03_firmware
scn-ip100.03_firmware
A denial of service vulnerability exists in MDT's firmware for the KNXnet/IP Secure router SCN-IP100.03 and KNX IP interface SCN-IP000.03 before v3.0.4, that allows a remote attacker to turn the devi… NVD-CWE-noinfo
CVE-2021-37740 2024-11-21 15:15 2022-04-21 Show GitHub Exploit DB Packet Storm
191537 7.5 HIGH
Network
dolibarr dolibarr_erp\/crm An Access Control vulnerability exists in Dolibarr ERP/CRM 13.0.2, fixed version is 14.0.0,in the forgot-password function becuase the application allows email addresses as usernames, which can cause… CWE-863
 Incorrect Authorization
CVE-2021-37517 2024-11-21 15:15 2022-04-1 Show GitHub Exploit DB Packet Storm
191538 6.1 MEDIUM
Network
hayageek jquery_upload_file A cross-site scripting (XSS) vulnerability in the fileNameStr parameter of jQuery-Upload-File v4.0.11 allows attackers to execute arbitrary web scripts or HTML via a crafted file with a Javascript pa… CWE-79
Cross-site Scripting
CVE-2021-37504 2024-11-21 15:15 2022-02-26 Show GitHub Exploit DB Packet Storm
191539 9.8 CRITICAL
Network
xerox phaser_4622_firmware Xerox Phaser 4622 v35.013.01.000 was discovered to contain a buffer overflow in the function sub_3226AC via the TIMEZONE variable. This vulnerability allows attackers to cause a Denial of Service (Do… CWE-787
 Out-of-bounds Write
CVE-2021-37354 2024-11-21 15:15 2022-02-16 Show GitHub Exploit DB Packet Storm
191540 6.5 MEDIUM
Adjacent
stormshield stormshield_network_security Stormshield Network Security (SNS) 1.0.0 through 4.2.3 allows a Denial of Service. NVD-CWE-noinfo
CVE-2021-37613 2024-11-21 15:15 2022-02-11 Show GitHub Exploit DB Packet Storm