Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
731 4.5 警告
Adjacent
ネットギア RAXE450 Firmware
R7000 ファームウェア
rax42 ファームウェア
RAX42v2 Firmware
XR1000V2 FIRMWARE
RAX50S FIRMWARE
RAX45 ファームウェア
RAXE500 Firmware
XR1000&n…
ネットギアのR7000 ファームウェア等の複数製品における入力確認に関する脆弱性 New CWE-20
不適切な入力確認
CVE-2026-0410 2026-06-22 11:35 2026-06-9 Show GitHub Exploit DB Packet Storm
732 8 重要
Adjacent
ネットギア RBE970 FIRMWARE
RBR760 ファームウェア
RBS350 ファームウェア
RBR350 ファームウェア
RBS760 Firmware
ネットギアのRBE970 FIRMWARE等の複数製品における情報漏えいに関する脆弱性 New CWE-200
情報漏えい
CVE-2026-0411 2026-06-22 11:35 2026-06-9 Show GitHub Exploit DB Packet Storm
733 4.5 警告
Adjacent
ネットギア R6900P ファームウェア
RAXE450 Firmware
R7960P ファームウェア
R7000 ファームウェア
rax42 ファームウェア
mr80 ファームウェア
MR70 FIRMWARE
MR60 ファームウェア
MS60 ファームウェア
ネットギアのMR60 ファームウェア等の複数製品における入力確認に関する脆弱性 New CWE-20
CWE-noinfo
CVE-2026-0417 2026-06-22 11:35 2026-06-9 Show GitHub Exploit DB Packet Storm
734 4.5 警告
Adjacent
ネットギア RBR750 ファームウェア
RAX200 ファームウェア
RAXE450 Firmware
RBRE960 ファームウェア
RBS850 ファームウェア
rax42 ファームウェア
mr80 ファームウェア
MR70 FIRMWARE
RBR840 ファーム…
ネットギアのCBR750 ファームウェア等の複数製品における複数の脆弱性 New CWE-15
CWE-610
CVE-2026-0418 2026-06-22 11:35 2026-06-9 Show GitHub Exploit DB Packet Storm
735 7.5 重要
Network
Mozilla Foundation Mozilla Focus
Firefox Klar
Mozilla FoundationのMozilla Focus等の複数製品におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-11799 2026-06-22 11:35 2026-06-9 Show GitHub Exploit DB Packet Storm
736 9.8 緊急
Network
Remotion AG Remotion Remotion AGのRemotionにおけるコードインジェクションの脆弱性 New CWE-94
コード・インジェクション
CVE-2026-30120 2026-06-22 11:35 2026-06-15 Show GitHub Exploit DB Packet Storm
737 9.1 緊急
Network
Remotion AG Remotion Remotion AGのRemotionにおける任意の場所に任意の値を書き込み可能な状態に関する脆弱性 New CWE-123
任意の場所に任意の値を書き込み可能な状態
CVE-2026-30121 2026-06-22 11:35 2026-06-15 Show GitHub Exploit DB Packet Storm
738 6.1 警告
Network
Broadcom
VMware
Spring Security
Spring Authorization Server
Broadcom等の複数ベンダの製品におけるオープンリダイレクトの脆弱性 New CWE-601
オープンリダイレクト
CVE-2026-41008 2026-06-22 11:35 2026-06-10 Show GitHub Exploit DB Packet Storm
739 7.5 重要
Network
Broadcom Spring Cloud Sleuth BroadcomのSpring Cloud Sleuthにおけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-41708 2026-06-22 11:35 2026-06-15 Show GitHub Exploit DB Packet Storm
740 5.5 警告
Local
opentelemetry Telemetry Schema Files opentelemetryのTelemetry Schema Filesにおける複数の脆弱性 New CWE-772
CWE-775
CVE-2026-45287 2026-06-22 11:35 2026-06-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
320521 7.5 HIGH
Network
huawei harmonyos
emui
Vulnerability of permission verification for APIs in the DownloadProviderMain module Impact: Successful exploitation of this vulnerability will affect availability. NVD-CWE-noinfo
CVE-2024-45442 2024-09-14 05:00 2024-09-4 Show GitHub Exploit DB Packet Storm
320522 5.4 MEDIUM
Network
squaredup squaredup_ds_for_scom SquaredUp DS for SCOM 6.2.1.11104 allows XSS. CWE-79
Cross-site Scripting
CVE-2024-45180 2024-09-14 04:55 2024-09-4 Show GitHub Exploit DB Packet Storm
320523 8.1 HIGH
Network
idec windo\/i-nv4
windldr
Cleartext storage of sensitive information vulnerability exists in WindLDR and WindO/I-NV4. If this vulnerability is exploited, an attacker who obtained the product's project file may obtain user cre… CWE-312
 Cleartext Storage of Sensitive Information
CVE-2024-41716 2024-09-14 04:53 2024-09-4 Show GitHub Exploit DB Packet Storm
320524 4.3 MEDIUM
Network
audiobookshelf audiobookshelf audiobookshelf is a self-hosted audiobook and podcast server. A non-admin user is not allowed to create libraries (or access only the ones they have permission to). However, the `LibraryController` i… CWE-22
Path Traversal
CVE-2024-43797 2024-09-14 04:49 2024-09-3 Show GitHub Exploit DB Packet Storm
320525 9.8 CRITICAL
Network
zyxel nwa110ax_firmware
nwa1123-ac_pro_firmware
nwa1123acv3_firmware
nwa130be_firmware
nwa210ax_firmware
nwa220ax-6e_firmware
nwa50ax_firmware
nwa50ax_pro_firmware
nwa55axe_firmware…
The improper neutralization of special elements in the parameter "host" in the CGI program of Zyxel NWA1123ACv3 firmware version 6.70(ABVT.4) and earlier, WAC500 firmware version 6.70(ABVS.4) and e… CWE-78
OS Command 
CVE-2024-7261 2024-09-14 04:39 2024-09-3 Show GitHub Exploit DB Packet Storm
320526 9.8 CRITICAL
Network
cisco smart_license_utility A vulnerability in Cisco Smart Licensing Utility could allow an unauthenticated, remote attacker to log in to an affected system by using a static administrative credential. This vulnerability is … CWE-798
 Use of Hard-coded Credentials
CVE-2024-20439 2024-09-14 04:35 2024-09-5 Show GitHub Exploit DB Packet Storm
320527 5.3 MEDIUM
Network
funnelforms funnelforms_free The Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability… CWE-862
 Missing Authorization
CVE-2024-7447 2024-09-14 04:33 2024-08-28 Show GitHub Exploit DB Packet Storm
320528 5.3 MEDIUM
Network
permalink_manager_lite_project permalink_manager_lite The Permalink Manager Lite plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'debug_data', 'debug_query', and 'debug_redirect' functions in al… CWE-862
 Missing Authorization
CVE-2024-8195 2024-09-14 04:28 2024-08-28 Show GitHub Exploit DB Packet Storm
320529 5.5 MEDIUM
Local
cisco duo_authentication_for_epic A vulnerability in Cisco Duo Epic for Hyperdrive could allow an authenticated, local attacker to view sensitive information in cleartext on an affected system. This vulnerability is due to imprope… CWE-311
Missing Encryption of Sensitive Data
CVE-2024-20503 2024-09-14 04:24 2024-09-5 Show GitHub Exploit DB Packet Storm
320530 9.8 CRITICAL
Network
fabianros hospital_management_system A vulnerability was found in code-projects Hospital Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file index.php of the component L… CWE-89
SQL Injection
CVE-2024-8368 2024-09-14 04:23 2024-09-1 Show GitHub Exploit DB Packet Storm