Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191051 5.4 警告
Network
オラクル - Oracle Siebel CRM の Siebel Core - Server Framework における Services に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-10162 2017-10-26 15:32 2017-10-17 Show GitHub Exploit DB Packet Storm
191052 6.3 警告
Network
オラクル - Oracle Communications Applications の Oracle Communications WebRTC Session Controller における Security に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-10153 2017-10-26 14:53 2017-10-17 Show GitHub Exploit DB Packet Storm
191053 8.8 重要
Local
オラクル - Oracle Database Server の Core RDBMS における脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-10321 2017-10-26 14:31 2017-10-17 Show GitHub Exploit DB Packet Storm
191054 2.3
Local
オラクル - Oracle Database Server の RDBMS Security における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-10292 2017-10-26 14:31 2017-10-17 Show GitHub Exploit DB Packet Storm
191055 6.5 警告
Local
オラクル - Oracle Database Server の XML Database における脆弱性 CWE-200
情報漏えい
CVE-2017-10261 2017-10-26 14:31 2017-10-17 Show GitHub Exploit DB Packet Storm
191056 8.2 重要
Local
オラクル - Oracle Database Server の Java VM における脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-10190 2017-10-26 14:31 2017-10-17 Show GitHub Exploit DB Packet Storm
191057 7.8 重要
Local
freesmartphone.org
phonefsod project
- 複数の fso 製品および phonefsod における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-8156 2017-10-25 18:10 2014-10-10 Show GitHub Exploit DB Packet Storm
191058 4.8 警告
Network
SolarWinds - SolarWinds Network Performance Monitor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-9537 2017-10-25 18:00 2017-09-29 Show GitHub Exploit DB Packet Storm
191059 6.5 警告
Network
ImageMagick - ImageMagick における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-14989 2017-10-25 18:00 2017-10-4 Show GitHub Exploit DB Packet Storm
191060 8.8 重要
Network
dasinfomedia - WordPress 用 WPHRM Human Resource Management System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-14848 2017-10-25 18:00 2017-09-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2381 7.5 HIGH
Network
mosaic5g flexric FlexRIC v2.0.0 contains a reachable assertion in e2ap_recv_sctp_msg() (src/lib/ep/e2ap_ep.c). The function allocates a fixed 32KB receive buffer and enforces assert(rc < len) on the sctp_recvmsg() re… CWE-617
 Reachable Assertion
CVE-2026-37228 2026-06-4 02:16 2026-06-2 Show GitHub Exploit DB Packet Storm
2382 7.5 HIGH
Network
mosaic5g flexric FlexRIC v2.0.0 contains a reachable assertion in e2ap_create_pdu() triggered when ASN.1 PER decoding fails. A remote unauthenticated attacker can send any non-PER byte sequence (e.g., a single 0x00 b… CWE-617
 Reachable Assertion
CVE-2026-37229 2026-06-4 02:16 2026-06-2 Show GitHub Exploit DB Packet Storm
2383 7.5 HIGH
Network
mosaic5g flexric FlexRIC v2.0.0 crashes when the near-RT RIC receives a RIC_INDICATION message with a ran_func_id that does not exist in its registry. The lookup returns NULL, triggering assert() in Debug builds (SIG… CWE-476
 NULL Pointer Dereference
CVE-2026-37230 2026-06-4 02:16 2026-06-2 Show GitHub Exploit DB Packet Storm
2384 7.5 HIGH
Network
mosaic5g flexric FlexRIC v2.0.0 uses a uint16_t counter for xapp_id assignment but stores the value in uint32_t message fields. After 65,530+ E42_SETUP_REQUESTs, the 16-bit counter wraps around and produces duplicate… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2026-37231 2026-06-4 02:16 2026-06-2 Show GitHub Exploit DB Packet Storm
2385 7.5 HIGH
Network
mosaic5g flexric FlexRIC v2.0.0 contains an authorization bypass in the iApp's xApp isolation mechanism. The equality function eq_xapp_ric_gen_id() in src/ric/iApp/xapp_ric_id.c compares m0->xapp_id against itself (m… CWE-617
 Reachable Assertion
CVE-2026-37233 2026-06-4 02:16 2026-06-2 Show GitHub Exploit DB Packet Storm
2386 7.5 HIGH
Network
mosaic5g flexric FlexRIC v2.0.0 trusts the xapp_id field from E42 message payloads without binding it to the sender's SCTP association. The validation function valid_xapp_id() only checks that the value is within the… CWE-284
Improper Access Control
CVE-2026-37235 2026-06-4 02:15 2026-06-2 Show GitHub Exploit DB Packet Storm
2387 6.5 MEDIUM
Network
nextcloud nextcloud_server Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 31.0.0 to before 31.0.14, and 32.0.0 to before 32.0.4, if {lang} is used in the template directory config… CWE-22
Path Traversal
CVE-2026-45279 2026-06-4 02:15 2026-06-2 Show GitHub Exploit DB Packet Storm
2388 8.1 HIGH
Network
nextcloud nextcloud_server Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 32.0.0 to before 32.0.9, and 33.0.0 to before 33.0.3, with the knowledge of other users’ principal URL an… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-45281 2026-06-4 02:11 2026-06-2 Show GitHub Exploit DB Packet Storm
2389 8.1 HIGH
Network
jupyter jupyter_server A path traversal vulnerability exists in jupyter-server version 2.17.0 due to an incorrect root directory boundary check in the _get_os_path() function within jupyter_server/services/contents/fileio.… CWE-23
 Relative Path Traversal
CVE-2026-5422 2026-06-4 02:09 2026-06-2 Show GitHub Exploit DB Packet Storm
2390 6.5 MEDIUM
Network
nextcloud nextcloud_server Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 32.0.0 to before 32.0.9, and 33.0.0 to before 33.0.3, an authenticated attacker can access attachments of… CWE-284
NVD-CWE-noinfo
Improper Access Control
CVE-2026-45282 2026-06-4 02:09 2026-06-2 Show GitHub Exploit DB Packet Storm