Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190141 7.5 重要
Network
ZKTECO CO., LTD. - ZKTeco ZKTime Web における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-14680 2017-10-17 15:43 2017-09-18 Show GitHub Exploit DB Packet Storm
190142 8 重要
Network
ZKTECO CO., LTD. - ZKTeco ZKTime Web におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-13129 2017-10-17 15:43 2017-09-18 Show GitHub Exploit DB Packet Storm
190143 7.8 重要
Local
Foxit Software Inc - Foxit Reader におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-14694 2017-10-17 15:36 2017-09-22 Show GitHub Exploit DB Packet Storm
190144 5.4 警告
Network
Telaxus LLC - EPESI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-14712 2017-10-17 15:22 2017-09-20 Show GitHub Exploit DB Packet Storm
190145 6.1 警告
Network
The Foreman - Foreman におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-5282 2017-10-17 11:49 2015-09-18 Show GitHub Exploit DB Packet Storm
190146 7.8 重要
Local
Xceedium, Inc. - Xsuite における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-4669 2017-10-17 11:49 2015-07-22 Show GitHub Exploit DB Packet Storm
190147 6.1 警告
Network
Xceedium, Inc. - Xsuite におけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2015-4668 2017-10-17 11:49 2015-07-22 Show GitHub Exploit DB Packet Storm
190148 9.8 緊急
Network
Xceedium, Inc. - Xsuite におけるハードコードされた認証情報の使用に関する脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2015-4667 2017-10-17 11:49 2015-07-22 Show GitHub Exploit DB Packet Storm
190149 8.8 重要
Network
Apache Software Foundation - Apache Brooklyn における信頼性のないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2016-8744 2017-10-16 18:11 2016-12-25 Show GitHub Exploit DB Packet Storm
190150 8.8 重要
Network
Newsbeuter - Newsbeuter における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2017-14500 2017-10-16 17:36 2017-08-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211 6.5 MEDIUM
Adjacent
- - A buffer overflow vulnerability in the UPnP AddPortMapping() command in Zyxel VMG4005-B50B firmware versions through 5.13(ABRL.5.4)C0 could allow an adjacent attacker to trigger a temporary denial-of… New CWE-120
Classic Buffer Overflow
CVE-2026-3870 2026-06-2 23:45 2026-06-2 Show GitHub Exploit DB Packet Storm
212 6.5 MEDIUM
Adjacent
- - A buffer overflow vulnerability in the UPnP DeletePortMapping() command in Zyxel VMG4005-B50B firmware versions through 5.13(ABRL.5.4)C0 could allow an adjacent attacker to trigger a temporary denial… New CWE-120
Classic Buffer Overflow
CVE-2026-3871 2026-06-2 23:45 2026-06-2 Show GitHub Exploit DB Packet Storm
213 - - - LDAP filter injection vulnerability in Yandex Database prior to 25.3.1.25 allows a remote attacker with valid LDAP credentials to bypass group membership checks resulting in unauthorized access to th… New CWE-280
Improper Handling of Insufficient Permissions or Privileges 
CVE-2026-10549 2026-06-2 23:45 2026-06-2 Show GitHub Exploit DB Packet Storm
214 8.8 HIGH
Network
- - microtar through 0.1.0 contains a stack-based buffer overflow vulnerability in the raw_to_header() function in src/microtar.c that allows attackers to corrupt adjacent stack memory by supplying a cra… New CWE-121
Stack-based Buffer Overflow
CVE-2026-43623 2026-06-2 23:43 2026-06-2 Show GitHub Exploit DB Packet Storm
215 8.2 HIGH
Network
- - F5-TTS through version 1.1.20 contains a path traversal vulnerability in the finetune Gradio handlers that allows unauthenticated attackers to write arbitrary files by passing unsanitized user-suppli… New CWE-22
Path Traversal
CVE-2026-43624 2026-06-2 23:43 2026-06-2 Show GitHub Exploit DB Packet Storm
216 5.9 MEDIUM
Network
- - CodexBar prior to 0.32.0 contains a session cookie leakage vulnerability that allows network attackers to intercept imported browser session cookies by exploiting improper redirect handling for Amp a… New CWE-319
Cleartext Transmission of Sensitive Information
CVE-2026-43625 2026-06-2 23:43 2026-06-2 Show GitHub Exploit DB Packet Storm
217 7.1 HIGH
Network
- - CodexBar prior to 0.32.0 contains a privilege escalation vulnerability in the CLI installer that allows local attackers to execute arbitrary commands as root by exploiting a race condition in tempora… New CWE-377
 Insecure Temporary File
CVE-2026-49134 2026-06-2 23:43 2026-06-2 Show GitHub Exploit DB Packet Storm
218 7.1 HIGH
Local
- - CodexBar prior to 0.32.0 contains an insecure temporary file handling vulnerability that allows local attackers to access sensitive credentials or tamper with build artifacts by exploiting predictabl… New CWE-59
CWE-377
Link Following
 Insecure Temporary File
CVE-2026-49135 2026-06-2 23:43 2026-06-2 Show GitHub Exploit DB Packet Storm
219 5.0 MEDIUM
Network
- - Nanobot prior to version 0.2.1 contains a server-side request forgery vulnerability in the web_fetch tool that allows remote attackers to reach internal or private network hosts by supplying a URL th… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-49138 2026-06-2 23:43 2026-06-2 Show GitHub Exploit DB Packet Storm
220 - - - Nanobot prior to version 0.2.1 contains a server-side request forgery vulnerability in the Microsoft Teams channel handler that allows remote attackers to exfiltrate Bot Framework bearer tokens by su… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-49139 2026-06-2 23:43 2026-06-2 Show GitHub Exploit DB Packet Storm