Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 28, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
801 7.1 重要
Local
OpenClaw OpenClaw OpenClawにおける信頼できない検索パスに関する脆弱性 CWE-426
信頼性のない検索パス
CVE-2026-53865 2026-06-22 11:47 2026-06-16 Show GitHub Exploit DB Packet Storm
802 8.1 重要
Network
OpenClaw OpenClaw OpenClawにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-53866 2026-06-22 11:47 2026-06-16 Show GitHub Exploit DB Packet Storm
803 6.5 警告
Network
Mozilla Foundation Mozilla Firefox Mobile Mozilla FoundationのMozilla Firefox Mobileにおけるデータの信頼性についての不十分な検証に関する脆弱性 CWE-345
データの信頼性についての不十分な検証
CVE-2026-53899 2026-06-22 11:47 2026-06-16 Show GitHub Exploit DB Packet Storm
804 4.3 警告
Network
Mozilla Foundation Mozilla Firefox Mobile Mozilla FoundationのMozilla Firefox Mobileにおける複数の脆弱性 CWE-345
CWE-384
CVE-2026-53900 2026-06-22 11:47 2026-06-16 Show GitHub Exploit DB Packet Storm
805 5.3 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-6046 2026-06-22 11:47 2026-06-12 Show GitHub Exploit DB Packet Storm
806 4.3 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-6689 2026-06-22 11:47 2026-06-12 Show GitHub Exploit DB Packet Storm
807 7.8 重要
Local
MongoDB Inc. MongoDB C Driver MongoDB Inc.のMongoDB C Driverにおける複数の脆弱性 CWE-120
CWE-787
CVE-2026-6691 2026-06-22 11:47 2026-05-6 Show GitHub Exploit DB Packet Storm
808 7.2 重要
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-6739 2026-06-22 11:47 2026-06-12 Show GitHub Exploit DB Packet Storm
809 7.6 重要
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-6961 2026-06-22 11:47 2026-06-12 Show GitHub Exploit DB Packet Storm
810 6.5 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける送信データへの重要な情報の挿入に関する脆弱性 CWE-201
送信データへの重要な情報の挿入
CVE-2026-7184 2026-06-22 11:47 2026-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 28, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
681 5.3 MEDIUM
Network
- - LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the DELETE /api/messages/:conversationId/:messageId endpoint allows any authenticated user to delete an… New CWE-862
 Missing Authorization
CVE-2026-54029 2026-06-26 03:58 2026-06-26 Show GitHub Exploit DB Packet Storm
682 - - - pnpm is a package manager. Prior to 10.34.0 and 11.4.0, pnpm can send user-level unscoped npm authentication credentials to a registry chosen by a repository-local .npmrc file. In the reproduced case… New CWE-200
CWE-522
Information Exposure
 Insufficiently Protected Credentials
CVE-2026-50017 2026-06-26 03:58 2026-06-26 Show GitHub Exploit DB Packet Storm
683 9.9 CRITICAL
Network
microsoft dynamics_365 Improper access control in Microsoft Dynamics 365 allows an authorized attacker to elevate privileges over a network. New CWE-284
Improper Access Control
CVE-2026-47647 2026-06-26 03:57 2026-06-19 Show GitHub Exploit DB Packet Storm
684 - - - motionEye (mEye) is an online interface for a piece of software called "motion," which is a video surveillance program with motion detection. Versions prior to 0.44.0 contain an absolute path travers… New CWE-22
Path Traversal
CVE-2026-55488 2026-06-26 03:56 2026-06-25 Show GitHub Exploit DB Packet Storm
685 4.3 MEDIUM
Network
- - AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. Prior to 1.13.0, on Windows, the document folder listing route can accept a… New CWE-22
Path Traversal
CVE-2026-48789 2026-06-26 03:56 2026-06-25 Show GitHub Exploit DB Packet Storm
686 0.0 NONE
Network
- - AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. From 1.11.1 until 1.14.1, userId/workspaceId scoping to the parsed-files re… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-55611 2026-06-26 03:56 2026-06-25 Show GitHub Exploit DB Packet Storm
687 5.5 MEDIUM
Local
- - motionEye (mEye) is an online interface for motion software, a video surveillance program with motion detection. Versions prior to 0.44.0 create the configuration file /etc/motioneye/motion.conf with… New CWE-200
CWE-522
CWE-732
Information Exposure
 Insufficiently Protected Credentials
 Incorrect Permission Assignment for Critical Resource
CVE-2026-32315 2026-06-26 03:56 2026-06-25 Show GitHub Exploit DB Packet Storm
688 7.1 HIGH
Network
silabs emberznet In EmberZNet v9.0.2 and earlier, malformed ClearWeekdaySchedule messages can trigger out-of-bounds writes into Door Lock schedule state. The size and location of this data is limited. These messages … New CWE-787
 Out-of-bounds Write
CVE-2026-47151 2026-06-26 03:51 2026-06-25 Show GitHub Exploit DB Packet Storm
689 7.1 HIGH
Network
silabs emberznet In EmberZNet v9.0.2 and earlier, malformed IAS Zone enrollment messages can trigger an out-of-bounds state-table write and terminate the process. The size and location of this write is limited. These… New CWE-787
 Out-of-bounds Write
CVE-2026-47150 2026-06-26 03:49 2026-06-25 Show GitHub Exploit DB Packet Storm
690 6.5 MEDIUM
Network
silabs emberznet In EmberZNet v9.0.2 and earlier, malformed or out-of-range Door Lock user identifiers can trigger out-of-bounds table reads and terminate the process. These messages must come from a device that has … New CWE-125
Out-of-bounds Read
CVE-2026-47149 2026-06-26 03:48 2026-06-25 Show GitHub Exploit DB Packet Storm