Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190411 5.7 警告
Adjacent
シマンテック - Symantec Encryption Desktop におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-13682 2017-11-16 17:01 2017-10-6 Show GitHub Exploit DB Packet Storm
190412 5.9 警告
Network
F5 Networks - F5 BIG-IP AAM および PEM におけるリソース管理に関する脆弱性 CWE-399
リソース管理の問題
CVE-2017-6160 2017-11-16 16:58 2017-10-27 Show GitHub Exploit DB Packet Storm
190413 5.9 警告
Network
F5 Networks - 複数の F5 BIG-IP 製品におけるリソース管理に関する脆弱性 CWE-399
リソース管理の問題
CVE-2017-6159 2017-11-16 16:58 2017-10-27 Show GitHub Exploit DB Packet Storm
190414 7.5 重要
Network
F5 Networks - 複数の F5 BIG-IP 製品におけるリソース管理に関する脆弱性 CWE-399
リソース管理の問題
CVE-2017-0303 2017-11-16 16:58 2017-10-27 Show GitHub Exploit DB Packet Storm
190415 7.5 重要
Network
Apache Software Foundation - Apache Storm におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-0115 2017-11-16 16:49 2014-05-21 Show GitHub Exploit DB Packet Storm
190416 5.3 警告
Network
ArGo Software Design - ArGoSoft Mini Mail Server におけるリソース管理に関する脆弱性 CWE-399
リソース管理の問題
CVE-2017-15223 2017-11-16 16:40 2017-10-21 Show GitHub Exploit DB Packet Storm
190417 3.3
Local
Gluster, Inc. - GlusterFS における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2017-15096 2017-11-16 16:40 2017-10-19 Show GitHub Exploit DB Packet Storm
190418 7.5 重要
Network
Keycloak
レッドハット
- Keycloak におけるセッション期限に関する脆弱性 CWE-613
不適切なセッション期限
CVE-2017-12159 2017-11-16 16:40 2017-10-17 Show GitHub Exploit DB Packet Storm
190419 7.2 重要
Network
Angry Frog - Xavier PHP Management Panel における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-15949 2017-11-16 16:34 2017-06-6 Show GitHub Exploit DB Packet Storm
190420 4.8 警告
Network
Grabaperch - Perch Content Management System におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-15948 2017-11-16 16:34 2017-05-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2461 8.2 HIGH
Network
mosaic5g flexric FlexRIC v2.0.0 allows a single SCTP connection to bind multiple xapp_ids by sending multiple E42_SETUP_REQUESTs. On disconnect, only the first registered xapp_id's resources are cleaned up; subsequen… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-37234 2026-06-6 05:42 2026-06-2 Show GitHub Exploit DB Packet Storm
2462 7.8 HIGH
Local
trustedfirmware op-tee OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Starting in version 3.16.0 and prior … CWE-416
 Use After Free
CVE-2026-40290 2026-06-6 05:20 2026-06-4 Show GitHub Exploit DB Packet Storm
2463 - - - HAX CMS helps manage microsite universe with PHP or NodeJs backends. A stored cross-site scripting (XSS) vulnerability exists in versions prior to 26.0.0 due to improper sanitization of the `<video-p… CWE-79
CWE-116
Cross-site Scripting
 Improper Encoding or Escaping of Output
CVE-2026-46496 2026-06-6 05:17 2026-06-6 Show GitHub Exploit DB Packet Storm
2464 - - - HAX CMS helps manage microsite universe with PHP or NodeJs backends. Prior to version 26.0.0, the `hmacBase64()` function in the HAXcms Node.js backend contains two critical cryptographic implementat… CWE-200
CWE-321
CWE-327
Information Exposure
 Use of Hard-coded Cryptographic Key
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2026-46395 2026-06-6 05:17 2026-06-6 Show GitHub Exploit DB Packet Storm
2465 8.7 HIGH
Network
- - HAX CMS helps manage microsite universe with PHP or NodeJs backends. Prior to version 26.0.0 of HAX CMS PHP, the `saveFile` endpoint validates upload extensions case-insensitively and writes the file… CWE-178
CWE-434
 Improper Handling of Case Sensitivity
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-46392 2026-06-6 05:17 2026-06-6 Show GitHub Exploit DB Packet Storm
2466 4.3 MEDIUM
Network
misp misp A visibility control issue in the event template creation workflow allowed non-site-admin users to access private galaxies belonging to other organisations. The event template builder loaded all enab… CWE-200
Information Exposure
CVE-2026-10854 2026-06-6 04:51 2026-06-4 Show GitHub Exploit DB Packet Storm
2467 10.0 CRITICAL
Network
- - UDS Identity Config builds the Keycloak configuration image (realm, plugins, theme, truststore, JARs) consumed by UDS Core's Identity deployment. In versions 0.11.0 through 0.26.0, a logic error in t… CWE-287
CWE-303
Improper Authentication
 Incorrect Implementation of Authentication Algorithm
CVE-2026-46389 2026-06-6 04:21 2026-06-6 Show GitHub Exploit DB Packet Storm
2468 9.8 CRITICAL
Network
- - The Hippoo Mobile App for WooCommerce plugin for WordPress is vulnerable to Authentication Bypass leading to Administrator Account Takeover in all versions up to and including 1.9.4. This is due to a… CWE-285
Improper Authorization
CVE-2026-10580 2026-06-6 04:20 2026-06-6 Show GitHub Exploit DB Packet Storm
2469 8.8 HIGH
Network
- - The WP Captcha PRO (the premium version of the Advanced Google reCAPTCHA plugin, both have the same slug) plugin for WordPress is vulnerable to arbitrary file upload in all versions up to, and includ… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-5411 2026-06-6 04:20 2026-06-6 Show GitHub Exploit DB Packet Storm
2470 8.8 HIGH
Network
- - The WP Captcha PRO (the premium version of the Advanced Google reCAPTCHA plugin, both have the same slug) plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and includ… CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2026-5415 2026-06-6 04:20 2026-06-6 Show GitHub Exploit DB Packet Storm