Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191531 8.8 重要
Network
hawtio - hawtio におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-7556 2017-09-14 16:58 2017-08-9 Show GitHub Exploit DB Packet Storm
191532 9.8 緊急
Network
Hercules Team - Augeas におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-7555 2017-09-14 16:58 2017-08-18 Show GitHub Exploit DB Packet Storm
191533 9.8 緊急
Network
Apache Software Foundation - Apache Subversion における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-9800 2017-09-14 16:56 2017-08-11 Show GitHub Exploit DB Packet Storm
191534 9.8 緊急
Network
Fedora Project - 389 Directory Server におけるパスワード管理機能に関する脆弱性 CWE-640
パスワードを忘れた場合の脆弱なパスワードリカバリの仕組み
CVE-2017-7551 2017-09-14 16:49 2017-07-31 Show GitHub Exploit DB Packet Storm
191535 7.8 重要
Local
Foxit Software Inc - Foxit PDF Compressor における信頼性のない検索パスに関する脆弱性 CWE-426
信頼性のない検索パス
CVE-2017-12892 2017-09-14 16:48 2017-07-26 Show GitHub Exploit DB Packet Storm
191536 9.8 緊急
Network
openSUSE project - openSUSE におけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2011-0469 2017-09-14 16:48 2011-03-11 Show GitHub Exploit DB Packet Storm
191537 5.7 警告
Local
シスコシステムズ - Cisco ASR 5000 シリーズのアグリゲーションサービスルータにおける認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-6775 2017-09-14 16:44 2017-08-16 Show GitHub Exploit DB Packet Storm
191538 5 警告
Network
シスコシステムズ - Cisco ASR 5000 シリーズのアグリゲーションサービスルータにおける認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-6774 2017-09-14 16:44 2017-08-16 Show GitHub Exploit DB Packet Storm
191539 6.7 警告
Local
シスコシステムズ - Cisco ASR 5000 シリーズのアグリゲーションサービスルータにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-6773 2017-09-14 16:44 2017-08-16 Show GitHub Exploit DB Packet Storm
191540 8.1 重要
Network
シスコシステムズ - Cisco Virtual Network Function Element Manager における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2017-6710 2017-09-14 16:44 2017-08-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2581 7.1 HIGH
Network
- - RT is an open source, enterprise-grade issue and ticket tracking system. Versions 6.0.0 through 6.0.2 contain a Cross-Site Request Forgery (CSRF) vulnerability. An attacker who can induce a logged-in… CWE-352
 Origin Validation Error
CVE-2026-41074 2026-05-27 05:03 2026-05-23 Show GitHub Exploit DB Packet Storm
2582 8.8 HIGH
Network
- - RT is an open source, enterprise-grade issue and ticket tracking system. Versions 5.0.0 through 5.0.9 and 6.0.0 through 6.0.2 contain an SQL injection vulnerability. An authenticated user can craft i… CWE-89
SQL Injection
CVE-2026-41075 2026-05-27 05:03 2026-05-23 Show GitHub Exploit DB Packet Storm
2583 4.6 MEDIUM
Network
- - RT is an open source, enterprise-grade issue and ticket tracking system. Versions prior to 5.0.10 and 6.0.0 through 6.0.2 contain a spreadsheet (CSV/formula) injection vulnerability. User-controlled … CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2026-41073 2026-05-27 05:03 2026-05-23 Show GitHub Exploit DB Packet Storm
2584 8.1 HIGH
Network
- - RT is an open source, enterprise-grade issue and ticket tracking system. Versions 5.0.9 and prior in addition to 6.0.0 through 6.0.2 contain an authentication bypass vulnerability in RT installations… CWE-287
Improper Authentication
CVE-2026-41076 2026-05-27 05:03 2026-05-23 Show GitHub Exploit DB Packet Storm
2585 - - - OutSystems Lifetime is vulnerable to Authorization Bypass Through User-Controlled Key vulnerability in ApplicationID parameter. Any authenticated user, can read the Change Log containing actions perf… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-40127 2026-05-27 05:00 2026-05-25 Show GitHub Exploit DB Packet Storm
2586 - - - Kenik Camera management Panel is vulnerable to Path Traversal vulnerability. An unauthenticated attacker can send GET request with arbitrary file path and read corresponding files located on the serv… CWE-22
Path Traversal
CVE-2026-7766 2026-05-27 04:59 2026-05-25 Show GitHub Exploit DB Packet Storm
2587 - - - Szafir SDK returns a success status code from the cryptographic digital signature verification process (i.e. /VerifyingTaskItem/Signature/VerificationResult/Result/@code == 0, "Positively verified") … CWE-393
CWE-637
 Return of Wrong Status Code
CVE-2026-9058 2026-05-27 04:59 2026-05-25 Show GitHub Exploit DB Packet Storm
2588 8.8 HIGH
Network
- - A security vulnerability has been detected in Tenda F456 1.0.0.5. This affects the function frmL7ImForm of the file /goform/L7Im. The manipulation of the argument page leads to buffer overflow. The a… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-9389 2026-05-27 04:57 2026-05-25 Show GitHub Exploit DB Packet Storm
2589 3.1 LOW
Adjacent
- - A vulnerability was determined in Besen BS20 EV Charging Station up to 20260426. This impacts an unknown function of the component Bluetooth Low Energy Handler. Executing a manipulation can lead to w… CWE-521
Weak Password Requirements 
CVE-2026-9394 2026-05-27 04:57 2026-05-25 Show GitHub Exploit DB Packet Storm
2590 3.5 LOW
Adjacent
- - A vulnerability was identified in Besen BS20 EV Charging Station up to 20260426. Affected is an unknown function of the component BLE/UDP. The manipulation leads to insufficiently protected credentia… CWE-522
 Insufficiently Protected Credentials
CVE-2026-9395 2026-05-27 04:57 2026-05-25 Show GitHub Exploit DB Packet Storm