Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
631 6.5 警告
Network
librechat librechat LibreChatにおける送信データへの重要な情報の挿入に関する脆弱性 New CWE-201
CWE-noinfo
CVE-2026-44653 2026-06-8 11:46 2026-06-2 Show GitHub Exploit DB Packet Storm
632 8.1 重要
Network
librechat librechat LibreChatにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-44654 2026-06-8 11:46 2026-06-2 Show GitHub Exploit DB Packet Storm
633 8.1 重要
Network
Broadcom RabbitMQ Server BroadcomのRabbitMQ Serverにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-44838 2026-06-8 11:46 2026-05-27 Show GitHub Exploit DB Packet Storm
634 4.8 警告
Network
Broadcom RabbitMQ Server BroadcomのRabbitMQ Serverにおけるクロスサイトスクリプティングの脆弱性 New CWE-80
クロスサイトスクリプティング (Basic XSS)
CVE-2026-44839 2026-06-8 11:46 2026-05-27 Show GitHub Exploit DB Packet Storm
635 4.9 警告
Network
OpenStack OpenStack Ironic OpenStackのOpenStack Ironicにおける領域間での誤ったリソース移動に関する脆弱性 New CWE-669
領域間での誤ったリソース移動
CVE-2026-44917 2026-06-8 11:46 2026-06-4 Show GitHub Exploit DB Packet Storm
636 7.5 重要
Network
go-git project go-git go-git projectのgo-gitにおける複数の脆弱性 New CWE-180
CWE-345
CVE-2026-45022 2026-06-8 11:46 2026-05-27 Show GitHub Exploit DB Packet Storm
637 2.7
Network
Matrix Synapse ElementのSynapseにおける入力確認に関する脆弱性 New CWE-20
不適切な入力確認
CVE-2026-45076 2026-06-8 11:46 2026-05-28 Show GitHub Exploit DB Packet Storm
638 4.3 警告
Network
Nextcloud Tables NextcloudのTablesにおけるメタデータのよる重要な情報の公開に関する脆弱性 New CWE-1230
メタデータのよる重要な情報の公開
CVE-2026-45544 2026-06-8 11:46 2026-06-1 Show GitHub Exploit DB Packet Storm
639 8.2 重要
Network
Nextcloud Tables NextcloudのTablesにおけるSQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2026-45545 2026-06-8 11:46 2026-06-1 Show GitHub Exploit DB Packet Storm
640 9.6 緊急
Network
go-git project go-git go-git projectのgo-gitにおけるエンコードおよびエスケープに関する脆弱性 New CWE-116
不適切なエンコード、または出力のエスケープ
CVE-2026-45570 2026-06-8 11:46 2026-05-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312081 - - - In the Linux kernel, the following vulnerability has been resolved: ipv4: ip_tunnel: Fix suspicious RCU usage warning in ip_tunnel_find() The per-netns IP tunnel hash table is protected by the RTNL… - CVE-2024-50304 2024-11-20 03:15 2024-11-20 Show GitHub Exploit DB Packet Storm
312082 - - - In the Linux kernel, the following vulnerability has been resolved: resource,kexec: walk_system_ram_res_rev must retain resource flags walk_system_ram_res_rev() erroneously discards resource flags … - CVE-2024-50303 2024-11-20 03:15 2024-11-20 Show GitHub Exploit DB Packet Storm
312083 - - - The Versa Director uses PostgreSQL (Postgres) to store operational and configuration data. It is also needed for High Availability function of the Versa Director. The default configuration has a comm… - CVE-2024-42450 2024-11-20 03:15 2024-11-20 Show GitHub Exploit DB Packet Storm
312084 9.8 CRITICAL
Network
wpdeveloper reviewx Missing Authorization vulnerability in ReviewX ReviewX allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ReviewX: from n/a through 1.6.28. CWE-862
 Missing Authorization
CVE-2024-43323 2024-11-20 03:15 2024-11-2 Show GitHub Exploit DB Packet Storm
312085 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PluginOps MailChimp Subscribe Forms allows Stored XSS.This issue affects MailChimp Subscribe For… CWE-79
Cross-site Scripting
CVE-2024-43211 2024-11-20 03:15 2024-11-2 Show GitHub Exploit DB Packet Storm
312086 - - - Missing Authorization vulnerability in PropertyHive PropertyHive allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects PropertyHive: from n/a through 2.0.9. CWE-862
 Missing Authorization
CVE-2024-37204 2024-11-20 03:15 2024-11-2 Show GitHub Exploit DB Packet Storm
312087 - - - Missing Authorization vulnerability in StylemixThemes MasterStudy LMS allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects MasterStudy LMS: from n/a through 3.2.… CWE-862
 Missing Authorization
CVE-2024-37094 2024-11-20 03:15 2024-11-1 Show GitHub Exploit DB Packet Storm
312088 7.2 HIGH
Network
craftcms craft_cms Craft is a content management system (CMS). A vulnerability in CraftCMS allows an attacker to bypass local file system validation by utilizing a double file:// scheme (e.g., file://file:////). This e… CWE-22
Path Traversal
CVE-2024-52291 2024-11-20 03:06 2024-11-14 Show GitHub Exploit DB Packet Storm
312089 4.8 MEDIUM
Network
webkul unopim UnoPim is an open-source Product Information Management (PIM) system built on the Laravel framework. A vulnerability exists in the Create User process, allowing the creation of a new admin account wi… CWE-616
CWE-692
 Incomplete Identification of Uploaded File Variables (PHP)
 Incomplete Denylist to Cross-Site Scripting
CVE-2024-52305 2024-11-20 03:04 2024-11-14 Show GitHub Exploit DB Packet Storm
312090 7.5 HIGH
Network
cesanta mongoose Improper Neutralization of Delimiters vulnerability in Cesanta Mongoose Web Server v7.14 allows to trigger an infinite loop bug if the input string contains unexpected characters. NVD-CWE-Other
CVE-2024-42392 2024-11-20 02:55 2024-11-18 Show GitHub Exploit DB Packet Storm