Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
861 3.1
Network
Django Software Foundation Django Django Software FoundationのDjangoにおける重要な情報を含むキャッシュの使用に関する脆弱性 CWE-524
重要な情報を含むキャッシュの使用
CVE-2026-35193 2026-06-8 12:31 2026-06-3 Show GitHub Exploit DB Packet Storm
862 6.1 警告
Network
citeum opencti citeumのopenctiにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-35212 2026-06-8 12:31 2026-06-2 Show GitHub Exploit DB Packet Storm
863 8.2 重要
Network
Mosaic5G Flexric Mosaic5GのFlexricにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-37234 2026-06-8 12:31 2026-06-1 Show GitHub Exploit DB Packet Storm
864 7.8 重要
Local
radare radare2 radareのradare2におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-40527 2026-06-8 12:31 2026-04-17 Show GitHub Exploit DB Packet Storm
865 7.5 重要
Network
quic-go project quic-go quic-go projectのquic-goにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-40898 2026-06-8 12:31 2026-06-4 Show GitHub Exploit DB Packet Storm
866 6.5 警告
Network
VMware Spring Cloud Function VMwareのSpring Cloud Functionにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-40989 2026-06-8 12:31 2026-06-1 Show GitHub Exploit DB Packet Storm
867 6.5 警告
Network
VMware Spring Cloud Function VMwareのSpring Cloud Functionにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-40990 2026-06-8 12:31 2026-06-1 Show GitHub Exploit DB Packet Storm
868 7.5 重要
Network
librechat librechat LibreChatにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-4276 2026-06-8 12:31 2026-03-16 Show GitHub Exploit DB Packet Storm
869 4.8 警告
Network
ERLANG Erlang/OTP ERLANGのErlang/OTPにおける複数の脆弱性 CWE-295
CWE-296
CVE-2026-42789 2026-06-8 12:31 2026-05-27 Show GitHub Exploit DB Packet Storm
870 6.1 警告
Network
Prometheus Prometheus Prometheusにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-44903 2026-06-8 12:31 2026-05-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
344861 - cscope cscope Multiple buffer overflows in cscope 15.5 and earlier allow user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via multiple vectors including (1) a long p… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2006-4262 2017-10-11 10:31 2006-08-23 Show GitHub Exploit DB Packet Storm
344862 - wireshark wireshark Multiple off-by-one errors in the IPSec ESP preference parser in Wireshark (formerly Ethereal) 0.99.2 allow remote attackers to cause a denial of service (crash) via unspecified vectors. NVD-CWE-Other
CVE-2006-4331 2017-10-11 10:31 2006-08-25 Show GitHub Exploit DB Packet Storm
344863 - mysql mysql MySQL before 4.1.13 allows local users to cause a denial of service (persistent replication slave crash) via a query with multiupdate and subselects. NVD-CWE-Other
CVE-2006-4380 2017-10-11 10:31 2006-08-29 Show GitHub Exploit DB Packet Storm
344864 - sun solaris pkgadd in Sun Solaris 10 before 20060825 installs files with insecure file and directory permissions (755 or 777) if the pkgmap file contains a "?" (question mark) in the mode field, which allows loc… NVD-CWE-Other
CVE-2006-4439 2017-10-11 10:31 2006-08-30 Show GitHub Exploit DB Packet Storm
344865 - ay_system_solutions ay_system_solutions_cms PHP remote file inclusion vulnerability in main.php in Ay System Solutions CMS 2.6 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the path[ShowProcessHandle] parameter. NVD-CWE-Other
CVE-2006-4440 2017-10-11 10:31 2006-08-30 Show GitHub Exploit DB Packet Storm
344866 - mozilla seamonkey
thunderbird
Mozilla Thunderbird before 1.5.0.7 and SeaMonkey before 1.0.5, with "Load Images" enabled, allows remote user-assisted attackers to bypass settings that disable JavaScript via a remote XBL file in a … NVD-CWE-Other
CVE-2006-4570 2017-10-11 10:31 2006-09-16 Show GitHub Exploit DB Packet Storm
344867 - gnu gnutls verify.c in GnuTLS before 1.4.4, when using an RSA key with exponent 3, does not properly handle excess data in the digestAlgorithm.parameters field when generating a hash, which allows remote attack… NVD-CWE-Other
CVE-2006-4790 2017-10-11 10:31 2006-09-15 Show GitHub Exploit DB Packet Storm
344868 - cisco ios Cisco IOS 12.2 through 12.4 before 20060920, as used by Cisco IAD2430, IAD2431, and IAD2432 Integrated Access Devices, the VG224 Analog Phone Gateway, and the MWR 1900 and 1941 Mobile Wireless Edge R… NVD-CWE-Other
CVE-2006-4950 2017-10-11 10:31 2006-09-23 Show GitHub Exploit DB Packet Storm
344869 - squirrelmail squirrelmail webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary web pages into the right frame via a URL in the right_frame parameter. NOTE: this has been called a cross-site … NVD-CWE-Other
CVE-2006-0188 2017-10-11 10:30 2006-02-24 Show GitHub Exploit DB Packet Storm
344870 - sun solaris Unspecified vulnerability in Sun Solaris 9 and 10 for the x86 platform allows local users to gain privileges or cause a denial of service (panic) via unspecified vectors, possibly involving functions… NVD-CWE-Other
CVE-2006-0190 2017-10-11 10:30 2006-01-13 Show GitHub Exploit DB Packet Storm