Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190201 8.8 重要
Network
dasinfomedia - WordPress 用 Mojoomla WPAMS Apartment Management System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-14847 2017-10-19 16:53 2017-09-26 Show GitHub Exploit DB Packet Storm
190202 8.8 重要
Network
dasinfomedia - WordPress 用 Mojoomla Hospital Management System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-14846 2017-10-19 16:53 2017-09-26 Show GitHub Exploit DB Packet Storm
190203 8.8 重要
Network
dasinfomedia - WordPress 用 Mojoomla WPCHURCH Church Management System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-14845 2017-10-19 16:53 2017-09-26 Show GitHub Exploit DB Packet Storm
190204 8.8 重要
Network
dasinfomedia - Mojoomla WPGYM WordPress Gym Management System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-14844 2017-10-19 16:53 2017-09-26 Show GitHub Exploit DB Packet Storm
190205 8.8 重要
Network
dasinfomedia - WordPress 用 Mojoomla School Management System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-14843 2017-10-19 16:53 2017-09-26 Show GitHub Exploit DB Packet Storm
190206 8.8 重要
Network
dasinfomedia - WordPress 用 Mojoomla SMSmaster Multipurpose SMS Gateway における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-14842 2017-10-19 16:53 2017-09-26 Show GitHub Exploit DB Packet Storm
190207 6.5 警告
Network
dasinfomedia - Mojoomla Annual Maintenance Contract Management System における危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2017-14841 2017-10-19 16:53 2017-09-26 Show GitHub Exploit DB Packet Storm
190208 6.1 警告
Network
Mahara - Mahara におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-9551 2017-10-19 16:38 2017-09-11 Show GitHub Exploit DB Packet Storm
190209 8.1 重要
Network
pulp project - pulp-consumer-client における証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2015-5263 2017-10-19 16:28 2015-09-5 Show GitHub Exploit DB Packet Storm
190210 6.1 警告
Network
ヒューレット・パッカード・エンタープライズ - HP UCMDB Configuration Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-14352 2017-10-19 16:17 2017-09-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1221 7.8 HIGH
Local
google android In getCallingAppLabel of CertInstaller.java, there is a possible way to hide a sensitive security dialogue due to misleading or insufficient UI. This could lead to local escalation of privilege with … CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-0088 2026-06-4 01:59 2026-06-2 Show GitHub Exploit DB Packet Storm
1222 7.8 HIGH
Local
google android In approvalLevelForDomainInternal of DomainVerificationService.java, there is a possible way to hijack an arbitrary app link due to a logic error in the code. This could lead to local escalation of p… CWE-693
 Protection Mechanism Failure
CVE-2026-0087 2026-06-4 01:59 2026-06-2 Show GitHub Exploit DB Packet Storm
1223 6.8 MEDIUM
Local
google android In onCreate of DisableSupervisionActivity.kt, there is a possible way to delete supervision data due to a missing null check. This could lead to local escalation of privilege with no additional execu… CWE-269
 Improper Privilege Management
CVE-2026-0086 2026-06-4 01:58 2026-06-2 Show GitHub Exploit DB Packet Storm
1224 6.5 MEDIUM
Network
google android In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a crash due to an integer overflow. This could lead to remote denial of service with no additional execution priv… CWE-190
 Integer Overflow or Wraparound
CVE-2026-0080 2026-06-4 01:58 2026-06-2 Show GitHub Exploit DB Packet Storm
1225 5.5 MEDIUM
Local
google android In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer overflow. This could lead to local denial of service with no additional executi… CWE-190
 Integer Overflow or Wraparound
CVE-2026-0079 2026-06-4 01:57 2026-06-2 Show GitHub Exploit DB Packet Storm
1226 7.8 HIGH
Local
google android In setGlobalProxy of DevicePolicyManagerService.java, there is a possible desync in persistence due to improper input validation. This could lead to local escalation of privilege with no additional e… CWE-20
 Improper Input Validation 
CVE-2026-0078 2026-06-4 01:57 2026-06-2 Show GitHub Exploit DB Packet Storm
1227 9.8 CRITICAL
Network
gitlawb openclaude OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0.5.1, the dangerouslyDisableSandbox parameter is exposed as part of the BashToo… CWE-284
CWE-306
Improper Access Control
Missing Authentication for Critical Function
CVE-2026-42074 2026-06-4 01:54 2026-06-3 Show GitHub Exploit DB Packet Storm
1228 6.5 MEDIUM
Network
gitlawb openclaude OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0.5.1, the OpenClaude MCP authentication flow starts a temporary local HTTP serv… CWE-352
CWE-400
 Origin Validation Error
 Uncontrolled Resource Consumption
CVE-2026-42073 2026-06-4 01:54 2026-06-3 Show GitHub Exploit DB Packet Storm
1229 5.4 MEDIUM
Network
shopify react-router React Router is a router for React. In versions 7.5.1 through 7.13.1, when using Framework Mode with pre-rendering enabled, improper neutralization of the HTTP `Location` header value can permit Cros… CWE-79
Cross-site Scripting
CVE-2026-33244 2026-06-4 01:54 2026-06-3 Show GitHub Exploit DB Packet Storm
1230 5.3 MEDIUM
Network
oracle rest_data_services Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network ac… CWE-284
Improper Access Control
CVE-2026-46842 2026-06-4 01:53 2026-05-29 Show GitHub Exploit DB Packet Storm