|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 24, 2026, 12:02 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 1011 | 6.1 |
警告
Network |
diagrams | drawio | diagramsのdrawioにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2026-46642 | 2026-06-17 15:39 | 2026-06-10 | Show | GitHub Exploit DB Packet Storm |
| 1012 | 7.2 |
重要
Network |
MariaDB Corporation Ab. | MariaDB | MariaDB Corporation Ab.のMariaDBにおけるOS コマンドインジェクションの脆弱性 |
CWE-78
OSコマンド・インジェクション |
CVE-2026-48163 | 2026-06-17 15:39 | 2026-06-12 | Show | GitHub Exploit DB Packet Storm |
| 1013 | 7.2 |
重要
Network |
MariaDB Corporation Ab. | MariaDB | MariaDB Corporation Ab.のMariaDBにおけるOS コマンドインジェクションの脆弱性 |
CWE-78
OSコマンド・インジェクション |
CVE-2026-48165 | 2026-06-17 15:39 | 2026-06-12 | Show | GitHub Exploit DB Packet Storm |
| 1014 | 7.8 |
重要
Local |
レッドハット X.Org Foundation |
X.Org X Server Red Hat Enterprise Linux xwayland |
レッドハット等の複数ベンダの製品における境界外書き込みに関する脆弱性 |
CWE-787
境界外書き込み |
CVE-2026-50264 | 2026-06-17 15:39 | 2026-06-5 | Show | GitHub Exploit DB Packet Storm |
| 1015 | 7.5 |
重要
Network |
Express.js | Multer | Express.jsのMulterにおける不完全なクリーンアップに関する脆弱性 |
CWE-459
不完全なクリーンアップ |
CVE-2026-5038 | 2026-06-17 15:39 | 2026-06-15 | Show | GitHub Exploit DB Packet Storm |
| 1016 | 7.5 |
重要
Network |
Express.js | Multer | Express.jsのMulterにおけるリソースの枯渇に関する脆弱性 |
CWE-400
リソースの枯渇 |
CVE-2026-5079 | 2026-06-17 15:39 | 2026-06-15 | Show | GitHub Exploit DB Packet Storm |
| 1017 | 8.1 |
重要
Network |
Zoom Video Communications, Inc. |
Zoom Meeting SDK Zoom Workplace |
Zoom Video Communications, Inc.のZoom Meeting SDK等の複数製品におけるカスタム URL スキームのハンドラの不適切な認可に関する脆弱性 |
CWE-939
カスタム URL スキームのハンドラの不適切な認可 |
CVE-2026-53408 | 2026-06-17 15:39 | 2026-06-12 | Show | GitHub Exploit DB Packet Storm |
| 1018 | 6.6 |
警告
Local |
OpenClaw | OpenClaw | OpenClawにおける認証の欠如に関する脆弱性 |
CWE-862
認証の欠如 |
CVE-2026-53820 | 2026-06-17 15:39 | 2026-06-12 | Show | GitHub Exploit DB Packet Storm |
| 1019 | 8.8 |
重要
Network |
OpenClaw | OpenClaw | OpenClawにおける認証の欠如に関する脆弱性 |
CWE-862
認証の欠如 |
CVE-2026-53821 | 2026-06-17 15:39 | 2026-06-12 | Show | GitHub Exploit DB Packet Storm |
| 1020 | 8.8 |
重要
Network |
OpenClaw | OpenClaw | OpenClawにおける複数の脆弱性 |
CWE-367 CWE-77 |
CVE-2026-53822 | 2026-06-17 15:39 | 2026-06-12 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 24, 2026, 4 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 3791 | 7.2 |
HIGH
Physics |
qualcomm |
ar8031_firmware ar8035_firmware cologne_firmware cq7790_firmware cq8725s_firmware qmp1000_firmware qmp2001_firmware qpa1083bd_firmware qpa1086bd_firmware qrb5165n_firmware<… |
Memory corruption while processing fastboot commands with invalid input. |
CWE-1286
Improper Validation of Syntactic Correctness of Input |
CVE-2026-24089 | 2026-06-3 00:25 | 2026-06-2 | Show | GitHub Exploit DB Packet Storm |
| 3792 | 7.1 |
HIGH
Local |
qualcomm |
ar8031_firmware ar8035_firmware cologne_firmware cq7790_firmware cq8725s_firmware sm6850_firmware sm7435_firmware sm7435p_firmware sm7525_firmware sm7550_firmware sm7550… |
Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow. |
CWE-306
Missing Authentication for Critical Function |
CVE-2026-24090 | 2026-06-3 00:25 | 2026-06-2 | Show | GitHub Exploit DB Packet Storm |
| 3793 | 7.2 |
HIGH
Physics |
qualcomm |
c-v2x_9150_firmware cologne_firmware cq7790_firmware cq8725s_firmware cq8750m_firmware csra6620_firmware csra6640_firmware csrb31024_firmware fastconnect_6200_firmware fast… |
Memory corruption while processing fastboot commands with improperly formatted input. |
CWE-1286
Improper Validation of Syntactic Correctness of Input |
CVE-2026-24091 | 2026-06-3 00:25 | 2026-06-2 | Show | GitHub Exploit DB Packet Storm |
| 3794 | 7.2 |
HIGH
Physics |
qualcomm |
ar8031_firmware ar8035_firmware cologne_firmware cq7790_firmware cq8725s_firmware cq8750m_firmware csra6620_firmware csra6640_firmware fastconnect_6200_firmware fastconnect… |
Memory Corruption when processing fastboot commands to set display mode. |
CWE-1286
Improper Validation of Syntactic Correctness of Input |
CVE-2026-24092 | 2026-06-3 00:25 | 2026-06-2 | Show | GitHub Exploit DB Packet Storm |
| 3795 | 9.8 |
CRITICAL
Network |
langflow | langflow | IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to improper validation of symbolic links during archive extraction. |
CWE-22
Path Traversal |
CVE-2026-7524 | 2026-06-3 00:24 | 2026-05-27 | Show | GitHub Exploit DB Packet Storm |
| 3796 | 7.8 |
HIGH
Local |
qualcomm |
cologne_firmware fastconnect_6900_firmware fastconnect_7800_firmware iqx5121_firmware iqx7181_firmware qca0000_firmware sc8380xp_firmware wcd9378c_firmware wcd9380_firmware | Memory corruption while processing IOCTL calls for escape operations. |
CWE-125
Out-of-bounds Read |
CVE-2026-25258 | 2026-06-3 00:23 | 2026-06-2 | Show | GitHub Exploit DB Packet Storm |
| 3797 | 7.8 |
HIGH
Local |
qualcomm |
cologne_firmware fastconnect_6700_firmware fastconnect_6900_firmware fastconnect_7800_firmware iqx5121_firmware iqx7181_firmware qca0000_firmware qcm5430_firmware qcm6490_firm… |
Memory corruption while processing multiple IOCTL command for escape operations. |
CWE-787
Out-of-bounds Write |
CVE-2026-25259 | 2026-06-3 00:22 | 2026-06-2 | Show | GitHub Exploit DB Packet Storm |
| 3798 | 7.0 |
HIGH
Local |
qualcomm |
cologne_firmware fastconnect_6700_firmware fastconnect_6900_firmware fastconnect_7800_firmware qcm5430_firmware qcm6490_firmware video_collaboration_vc3_platform_firmware sc8380x… |
Memory Corruption when accessing shared buffers without validation of concurrent user-mode input modifications. |
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition |
CVE-2026-25260 | 2026-06-3 00:22 | 2026-06-2 | Show | GitHub Exploit DB Packet Storm |
| 3799 | 7.5 |
HIGH
Network |
langflow | langflow | IBM Langflow OSS 1.0.0 through 1.9.0 could allow a denial of service due to uncontrolled resource consumption. |
CWE-400
Uncontrolled Resource Consumption |
CVE-2026-7528 | 2026-06-3 00:20 | 2026-05-27 | Show | GitHub Exploit DB Packet Storm |
| 3800 | 8.8 |
HIGH
Network |
ibm | controller | IBM Controller 11.0.1, 11.1.0, 11.1.1, and 11.1.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to… |
CWE-798
Use of Hard-coded Credentials |
CVE-2026-5065 | 2026-06-3 00:16 | 2026-05-27 | Show | GitHub Exploit DB Packet Storm |