|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 4, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 601 | 8.8 |
重要
Adjacent |
ConnectWise, Inc. | automate | ConnectWise, Inc.のautomateにおけるダウンロードしたコードの完全性検証不備に関する脆弱性 |
CWE-494
ダウンロードしたコードの完全性検証不備 |
CVE-2026-9089 | 2026-05-28 14:35 | 2026-05-21 | Show | GitHub Exploit DB Packet Storm |
| 602 | 4.3 |
警告
Network |
Devolutions | Devolutions Server | DevolutionsのDevolutions Serverにおけるアクセス制御に関する脆弱性 |
CWE-284
不適切なアクセス制御 |
CVE-2026-9223 | 2026-05-28 14:35 | 2026-05-22 | Show | GitHub Exploit DB Packet Storm |
| 603 | 4.3 |
警告
Network |
Devolutions | Devolutions Server | DevolutionsのDevolutions Serverにおける認証の欠如に関する脆弱性 |
CWE-862
認証の欠如 |
CVE-2026-9224 | 2026-05-28 14:35 | 2026-05-22 | Show | GitHub Exploit DB Packet Storm |
| 604 | 5 |
警告
Network |
Devolutions | Devolutions Server | DevolutionsのDevolutions Serverにおけるオープンリダイレクトの脆弱性 |
CWE-601
オープンリダイレクト |
CVE-2026-9245 | 2026-05-28 14:35 | 2026-05-22 | Show | GitHub Exploit DB Packet Storm |
| 605 | 4.3 |
警告
Network |
Devolutions | Devolutions Server | DevolutionsのDevolutions Serverにおける認証の欠如に関する脆弱性 |
CWE-862
認証の欠如 |
CVE-2026-9246 | 2026-05-28 14:35 | 2026-05-22 | Show | GitHub Exploit DB Packet Storm |
| 606 | 2.4 |
低
Network |
Devolutions | Devolutions Server | DevolutionsのDevolutions Serverにおける不十分なロギングに関する脆弱性 |
CWE-778
不十分なロギング |
CVE-2026-9247 | 2026-05-28 14:35 | 2026-05-22 | Show | GitHub Exploit DB Packet Storm |
| 607 | 2.6 |
低
Network |
Devolutions | Devolutions Server | DevolutionsのDevolutions Serverにおけるユーザ制御の鍵による認証回避に関する脆弱性 |
CWE-639
ユーザ制御の鍵による認証回避 |
CVE-2026-9248 | 2026-05-28 14:35 | 2026-05-22 | Show | GitHub Exploit DB Packet Storm |
| 608 | 3.1 |
低
Network |
Devolutions | Devolutions Server | DevolutionsのDevolutions Serverにおける未検証のパスワード変更に関する脆弱性 |
CWE-620
未検証のパスワード変更 |
CVE-2026-9249 | 2026-05-28 14:35 | 2026-05-22 | Show | GitHub Exploit DB Packet Storm |
| 609 | 5.4 |
警告
Network |
Devolutions | Devolutions Server | DevolutionsのDevolutions Serverにおける認証の欠如に関する脆弱性 |
CWE-862
認証の欠如 |
CVE-2026-9251 | 2026-05-28 14:35 | 2026-05-22 | Show | GitHub Exploit DB Packet Storm |
| 610 | 9.8 |
緊急
Network |
LiteSpeed Technologies |
LiteSpeed cPanel Plugin LiteSpeed WHM Plugin (previously cPanel/WHM Plugin) |
LiteSpeed TechnologiesのLiteSpeed cPanel Plugin等の複数製品における不適切な権限設定に関する脆弱性 |
CWE-266
不適切な権限設定 |
CVE-2026-48172 | 2026-05-28 14:34 | 2026-05-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 4, 2026, 4:17 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 310931 | 6.1 |
MEDIUM
Network |
alist_project | alist | AList is a file list program that supports multiple storages. AList contains a reflected cross-site scripting vulnerability in helper.go. The endpoint /i/:link_name takes in a user-provided value and… |
CWE-79
Cross-site Scripting |
CVE-2024-47067 | 2024-11-16 01:28 | 2024-10-1 | Show | GitHub Exploit DB Packet Storm |
| 310932 | 8.8 |
HIGH
Network |
microsoft |
sql_server_2016 sql_server_2017 sql_server_2019 |
SQL Server Native Client Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49012 | 2024-11-16 01:16 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 310933 | 8.8 |
HIGH
Network |
microsoft |
sql_server_2016 sql_server_2017 sql_server_2019 |
SQL Server Native Client Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49011 | 2024-11-16 01:16 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 310934 | - | - | - | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-2414. Reason: This candidate is a reservation duplicate of CVE-2023-2414. Notes: All CVE users should reference CV… | - | CVE-2024-7865 | 2024-11-16 01:15 | 2024-11-16 | Show | GitHub Exploit DB Packet Storm | |
| 310935 | - | - | - | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-2414. Reason: This candidate is a reservation duplicate of CVE-2023-2414. Notes: All CVE users should reference C… | - | CVE-2024-6413 | 2024-11-16 01:15 | 2024-11-16 | Show | GitHub Exploit DB Packet Storm | |
| 310936 | 8.8 |
HIGH
Network |
microsoft |
sql_server_2016 sql_server_2017 sql_server_2019 |
SQL Server Native Client Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49013 | 2024-11-16 01:14 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 310937 | 8.8 |
HIGH
Network |
microsoft |
sql_server_2016 sql_server_2017 sql_server_2019 |
SQL Server Native Client Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49017 | 2024-11-16 01:07 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 310938 | 8.8 |
HIGH
Network |
microsoft |
sql_server_2016 sql_server_2017 sql_server_2019 |
SQL Server Native Client Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49016 | 2024-11-16 01:07 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 310939 | 8.8 |
HIGH
Network |
microsoft |
sql_server_2016 sql_server_2017 sql_server_2019 |
SQL Server Native Client Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49015 | 2024-11-16 01:07 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
| 310940 | 8.8 |
HIGH
Network |
microsoft |
sql_server_2016 sql_server_2017 sql_server_2019 |
SQL Server Native Client Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-49018 | 2024-11-16 01:06 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |