Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
631 7.5 重要
Network
Tatsuhiro-t Ngtcp2 Tatsuhiro-tのNgtcp2におけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-40170 2026-05-28 14:33 2026-04-16 Show GitHub Exploit DB Packet Storm
632 7.8 重要
Local
opentelemetry OpenTelemetry.Exporter.OpenTelemetryProtocol opentelemetryのOpenTelemetry.Exporter.OpenTelemetryProtocolにおけるアクセスパーミションのディレクトリの一時ファイル作成に関する脆弱性 CWE-379
不適切なアクセスパーミションのディレクトリに一時ファイル作成
CVE-2026-42191 2026-05-28 14:33 2026-05-12 Show GitHub Exploit DB Packet Storm
633 7.5 重要
Network
Absinthe-graphql Absinthe Absinthe-graphqlのAbsintheにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-42793 2026-05-28 14:32 2026-05-8 Show GitHub Exploit DB Packet Storm
634 7.5 重要
Network
Absinthe-graphql Absinthe Absinthe-graphqlのAbsintheにおけるアルゴリズムの複雑さに関する脆弱性 CWE-407
アルゴリズムの複雑性
CVE-2026-43967 2026-05-28 14:32 2026-05-8 Show GitHub Exploit DB Packet Storm
635 6.1 警告
Network
The Kyverno Authors Policy-reporter-ui The Kyverno AuthorsのPolicy-reporter-uiにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-44245 2026-05-28 14:32 2026-05-12 Show GitHub Exploit DB Packet Storm
636 8.6 重要
Network
Marginal v1-core Marginalのv1-coreにおける数値型間の変換の誤りに関する脆弱性 CWE-681
数値型間の変換の誤り
CVE-2026-4931 2026-05-28 14:32 2026-04-7 Show GitHub Exploit DB Packet Storm
637 7.4 重要
Network
Project Jupyter Jupyter Server Jupyter Serverにおけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2025-61669 2026-05-28 12:05 2026-05-28 Show GitHub Exploit DB Packet Storm
638 - - 日立 Hitachi Application Server
uCosminexus Application Runtime with Java for Apache Tomcat
uCosminexus Application Runtime with Java…
Cosminexusにおける複数の脆弱性 - CVE-2026-22007
CVE-2026-22013
CVE-2026-22016
CVE-2026-22018
CVE-2026-22021
CVE-2026-23865
CVE-2026-34268
CVE-2026-34282
2026-05-27 13:53 2026-05-26 Show GitHub Exploit DB Packet Storm
639 - - 日立 Hitachi Automation Director
Hitachi Replication Manager
Hitachi Configuration Manager
Hitachi Ops Center API Configuration Manager
H…
Hitachi Command Suite製品, Hitachi Automation Director, Hitachi Configuration Manager, Hitachi Infrastructure Analytics AdvisorおよびHitachi Ops Center製品における複数の脆弱性 - CVE-2026-22007
CVE-2026-22013
CVE-2026-22016
CVE-2026-22018
CVE-2026-22021
CVE-2026-23865
CVE-2026-34268
CVE-2026-34282
2026-05-27 13:53 2026-05-26 Show GitHub Exploit DB Packet Storm
640 - - 日立 Hitachi Infrastructure Analytics Advisor
Hitachi Ops Center Analyzer
Hitachi Ops Center Analyzer viewpoint
Hitachi Infrastructure Analytics Advisor,Hitachi Ops Center AnalyzerおよびHitachi Ops Center Analyzer viewpointにおける脆弱性 - CVE-2026-3314 2026-05-27 13:53 2026-05-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345241 - newsgator feeddemon Multiple cross-site scripting (XSS) vulnerabilities in NewsGator FeedDemon before 2.0.0.25 allow remote attackers to inject arbitrary web script or HTML via an Atom 1.0 feed, as demonstrated by certa… NVD-CWE-Other
CVE-2006-4710 2017-07-20 10:33 2006-09-13 Show GitHub Exploit DB Packet Storm
345242 - newsgator feeddemon This vulnerability is addressed in the following product release: NewsGator, FeedDemon, 2.0.0.25 NVD-CWE-Other
CVE-2006-4710 2017-07-20 10:33 2006-09-13 Show GitHub Exploit DB Packet Storm
345243 - korviblog korviblog Multiple cross-site scripting (XSS) vulnerabilities in livre_or.php in KorviBlog 1.3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) prenom, (2) emailFrom, or (3) body par… NVD-CWE-Other
CVE-2006-4718 2017-07-20 10:33 2006-09-13 Show GitHub Exploit DB Packet Storm
345244 - adobe coldfusion Unspecified vulnerability in the ColdFusion Flash Remoting Gateway in Adobe ColdFusion MX 7 and 7.01 allows remote attackers to cause a denial of service (infinite loop) via unspecified vectors invol… NVD-CWE-Other
CVE-2006-4724 2017-07-20 10:33 2006-09-14 Show GitHub Exploit DB Packet Storm
345245 - adobe coldfusion Adobe ColdFusion MX 7 and 7.01 allows local users to bypass security restrictions and call components (CFC) within a sandbox from CFML templates that are located outside of the sandbox. NVD-CWE-Other
CVE-2006-4725 2017-07-20 10:33 2006-09-14 Show GitHub Exploit DB Packet Storm
345246 - adobe coldfusion Cross-site scripting (XSS) vulnerability in Adobe ColdFusion MX 6.1 through 7.02 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving a ColdFusion error pa… NVD-CWE-Other
CVE-2006-4726 2017-07-20 10:33 2006-09-14 Show GitHub Exploit DB Packet Storm
345247 - benjamin_pasero_and_tobias_eichert rssowl Multiple cross-site scripting (XSS) vulnerabilities in Benjamin Pasero and Tobias Eichert RSSOwl allow remote attackers to inject arbitrary web script or HTML via a web feed, as demonstrated by certa… NVD-CWE-Other
CVE-2006-4760 2017-07-20 10:33 2006-09-14 Show GitHub Exploit DB Packet Storm
345248 - luke_hutteman sharpreader Multiple cross-site scripting (XSS) vulnerabilities in Luke Hutteman SharpReader allow remote attackers to inject arbitrary web script or HTML via a web feed, as demonstrated by certain test cases of… NVD-CWE-Other
CVE-2006-4761 2017-07-20 10:33 2006-09-14 Show GitHub Exploit DB Packet Storm
345249 - rssreader rssreader Multiple cross-site scripting (XSS) vulnerabilities in Ykoon RssReader allow remote attackers to inject arbitrary web script or HTML via a web feed, as demonstrated by certain test cases of the Rober… NVD-CWE-Other
CVE-2006-4762 2017-07-20 10:33 2006-09-14 Show GitHub Exploit DB Packet Storm
345250 - stefan_ernst newsscript Multiple directory traversal vulnerabilities in Stefan Ernst Newsscript (aka WM-News) 0.5beta allow remote attackers to (1) read arbitrary local files via a .. (dot dot) sequence in the ide parameter… NVD-CWE-Other
CVE-2006-4767 2017-07-20 10:33 2006-09-14 Show GitHub Exploit DB Packet Storm