Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
791 6.8 警告
Physics
opensc project opensc opensc projectのopenscにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-40510 2026-06-5 10:47 2026-05-29 Show GitHub Exploit DB Packet Storm
792 7.8 重要
Local
opensc project opensc opensc projectのopenscにおける複数の脆弱性 CWE-121
CWE-122
CVE-2026-40528 2026-06-5 10:46 2026-05-29 Show GitHub Exploit DB Packet Storm
793 6.5 警告
Network
Gitlawb OpenClaude GitlawbのOpenClaudeにおける複数の脆弱性 CWE-352
CWE-400
CVE-2026-42073 2026-06-5 10:46 2026-06-2 Show GitHub Exploit DB Packet Storm
794 9.8 緊急
Network
Gitlawb OpenClaude GitlawbのOpenClaudeにおける複数の脆弱性 CWE-284
CWE-306
CVE-2026-42074 2026-06-5 10:46 2026-06-2 Show GitHub Exploit DB Packet Storm
795 9.6 緊急
Network
Cline Cline Clineにおける複数の脆弱性 CWE-1385
CWE-306
CVE-2026-44211 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
796 7.5 重要
Network
Julian Gruber (juliangruber) brace-expansion Julian Gruber (juliangruber)のbrace-expansionにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-45149 2026-06-5 10:46 2026-05-29 Show GitHub Exploit DB Packet Storm
797 6.5 警告
Network
Nextcloud Approval NextcloudのApprovalにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-45275 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
798 3.3
Local
Nextcloud Approval NextcloudのApprovalにおける情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2026-45277 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
799 6.1 警告
Network
Nextcloud user oidc Nextcloudのuser oidcにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-45278 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
800 6.5 警告
Network
Nextcloud Nextcloud Server NextcloudのNextcloud Serverにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-45279 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311961 4.3 MEDIUM
Network
themify builder The Themify Builder plugin for WordPress is vulnerable to unauthorized post duplication due to missing checks on the duplicate_page_ajaxify function in all versions up to, and including, 7.6.1. This … CWE-863
 Incorrect Authorization
CVE-2024-7836 2024-11-21 00:09 2024-08-22 Show GitHub Exploit DB Packet Storm
311962 9.6 CRITICAL
Network
github cli The GitHub CLI version 2.6.1 and earlier are vulnerable to remote code execution through a malicious codespace SSH server when using `gh codespace ssh` or `gh codespace logs` commands. This has been … CWE-77
Command Injection
CVE-2024-52308 2024-11-21 00:07 2024-11-15 Show GitHub Exploit DB Packet Storm
311963 5.4 MEDIUM
Network
librenms librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Stored Cross-Site Scripting (XSS) vulnerability in the API-Access page allows authenticated users to inject arbitrary Jav… CWE-79
Cross-site Scripting
CVE-2024-49754 2024-11-21 00:02 2024-11-16 Show GitHub Exploit DB Packet Storm
311964 6.1 MEDIUM
Network
cleancoder fitnesse Cross-site scripting vulnerability exists in FitNesse releases prior to 20241026. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is using t… CWE-79
Cross-site Scripting
CVE-2024-39610 2024-11-21 00:02 2024-11-15 Show GitHub Exploit DB Packet Storm
311965 6.1 MEDIUM
Network
wpplugins hide_my_wp_ghost The Hide My WP Ghost – Security & Firewall plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the URL in all versions up to, and including, 5.3.01 due to insufficient input sani… CWE-79
Cross-site Scripting
CVE-2024-10825 2024-11-21 00:01 2024-11-15 Show GitHub Exploit DB Packet Storm
311966 4.3 MEDIUM
Network
moodle moodle A vulnerability was found in Moodle. Additional checks are required to ensure users can only edit or delete RSS feeds that they have permission to modify. CWE-863
 Incorrect Authorization
CVE-2024-48897 2024-11-20 23:48 2024-11-18 Show GitHub Exploit DB Packet Storm
311967 4.3 MEDIUM
Network
moodle moodle A vulnerability was found in Moodle. It is possible for users with the "send message" capability to view other users' names that they may not otherwise have access to via an error message in Messagin… CWE-209
Information Exposure Through an Error Message
CVE-2024-48896 2024-11-20 23:47 2024-11-18 Show GitHub Exploit DB Packet Storm
311968 4.3 MEDIUM
Network
moodle moodle A vulnerability was found in Moodle. Users with access to delete audiences from reports could delete audiences from other reports that they do not have permission to delete from. CWE-862
 Missing Authorization
CVE-2024-48898 2024-11-20 23:46 2024-11-18 Show GitHub Exploit DB Packet Storm
311969 4.3 MEDIUM
Network
moodle moodle A vulnerability was found in Moodle. Additional checks are required to ensure users can only access the schedule of a report if they have permission to edit that report. CWE-863
 Incorrect Authorization
CVE-2024-48901 2024-11-20 23:45 2024-11-18 Show GitHub Exploit DB Packet Storm
311970 9.8 CRITICAL
Network
really-simple-plugins really_simple_security The Really Simple Security (Free, Pro, and Pro Multisite) plugins for WordPress are vulnerable to authentication bypass in versions 9.0.0 to 9.1.1.1. This is due to improper user check error handling… CWE-306
Missing Authentication for Critical Function
CVE-2024-10924 2024-11-20 23:44 2024-11-15 Show GitHub Exploit DB Packet Storm