Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198981 9.8 緊急
Network
Embedthis Software, LLC - Foscam などのホワイトラベルの IP カメラモデルで使用されるカスタムビルドされた GoAhead Web サーバにおける設定ファイルを公開される脆弱性 CWE-200
情報漏えい
CVE-2017-5674 2017-04-6 10:19 2017-03-13 Show GitHub Exploit DB Packet Storm
198982 4.7 警告
Network
SAP - SAP BusinessObjects Financial Consolidation の help コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6061 2017-04-5 18:42 2017-02-27 Show GitHub Exploit DB Packet Storm
198983 7.5 重要
Network
Cloud Foundry Foundation - Cloud Foundry および UAA 製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2017-4960 2017-04-5 18:41 2017-03-8 Show GitHub Exploit DB Packet Storm
198984 8.1 重要
Network
Dahua Technology Co., Ltd - Dahua DHI-HCVR7216A-S3 デバイスにおける完全な特権を持つ新たなユーザを作成される脆弱性 CWE-310
暗号の問題
CVE-2017-6432 2017-04-5 18:40 2017-03-9 Show GitHub Exploit DB Packet Storm
198985 9.8 緊急
Network
ワゴジャパン株式会社 - 複数の WAGO 製品における認証なしで設定を編集される脆弱性 CWE-287
不適切な認証
CVE-2016-9362 2017-04-5 18:15 2016-12-22 Show GitHub Exploit DB Packet Storm
198986 3.7
Network
Honeywell International Inc. - Honeywell Experion PKS プラットフォームにおけるプロセスを終了される脆弱性 CWE-20
不適切な入力確認
CVE-2016-8344 2017-04-5 18:02 2016-10-27 Show GitHub Exploit DB Packet Storm
198987 7.5 重要
Network
pcre.org - PCRE の pcre_jit_compile.c の compile_bracket_matchingpath 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2017-6004 2017-04-5 17:54 2017-02-7 Show GitHub Exploit DB Packet Storm
198988 7.2 重要
Local
Sielco Sistemi - Sielco Sistemi Winlog Lite および Winlog Pro SCADA ソフトウェアにおける DLL ハイジャックの脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2017-5161 2017-04-5 17:29 2017-02-7 Show GitHub Exploit DB Packet Storm
198989 7.5 重要
Network
VCE Company, LLC. - VCE Vision Intelligent Operations の "Plug-in for VMware vCenter" における管理ユーザのパスワードを取得される脆弱性 CWE-200
情報漏えい
CVE-2015-4057 2017-04-5 17:24 2015-06-17 Show GitHub Exploit DB Packet Storm
198990 9.8 緊急
Network
iBall - iBall Baton 150M iB-WRA150N デバイスにおける認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-6558 2017-04-5 16:59 2017-03-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3361 7.5 HIGH
Network
- - CryptX versions before 0.088_001 for Perl have a stack buffer overflow in four AEAD decrypt_verify helpers. The gcm_decrypt_verify, ccm_decrypt_verify, chacha20poly1305_decrypt_verify and eax_decryp… CWE-121
Stack-based Buffer Overflow
CVE-2026-41565 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
3362 7.3 HIGH
Network
- - An arbitrary file upload vulnerability in the pages/admin.uploadmapimg.php component of SourceBans Material Admin v1.1.6 allows attackers to execute arbitrary code via uploading a crafted image file. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-30761 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
3363 7.3 HIGH
Network
- - An issue in SourceBans Material Admin before v.1.1.6 (3ecd95e) allows attackers to manipulate arbitrary user data in the web app via a crafted XAJAX call. CWE-20
 Improper Input Validation 
CVE-2026-30760 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
3364 5.5 MEDIUM
Local
- - IO::Uncompress::Unzip versions before 2.215 for Perl propagate uncaught exception when parsing zip header with malformed DOS date. _dosToUnixTime() decodes the local-file-header last-modification da… CWE-248
 Uncaught Exception
CVE-2025-15649 2026-05-30 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm
3365 7.1 HIGH
Network
- - LangSmith Client SDKs provide SDK's for interacting with the LangSmith platform. Prior to LangSmith SDK Python 0.8.0 and JS/TS 0.6.0, the LangSmith SDK's prompt pull methods (pull_prompt / pull_promp… CWE-502
 Deserialization of Untrusted Data
CVE-2026-45134 2026-05-30 01:12 2026-05-28 Show GitHub Exploit DB Packet Storm
3366 5.4 MEDIUM
Network
- - AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.59, POST /api/blocks/{block_id}/execute endpoint executes block… CWE-770
CWE-841
 Allocation of Resources Without Limits or Throttling
 Improper Enforcement of Behavioral Workflow
CVE-2026-45023 2026-05-30 01:07 2026-05-29 Show GitHub Exploit DB Packet Storm
3367 7.5 HIGH
Network
google chrome Uninitialized Use in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code inside a sandbox vi… CWE-457
 Use of Uninitialized Variable
CVE-2026-9963 2026-05-30 01:06 2026-05-29 Show GitHub Exploit DB Packet Storm
3368 7.5 HIGH
Network
dell unisphere_for_powermax_virtual_appliance Dell Unisphere for PowerMax vApp version prior to 10.0.0.2, contains an authorization bypass vulnerability in the  Unisphere for VMAX application running in vApp CWE-285
Improper Authorization
CVE-2022-34363 2026-05-30 00:53 2026-05-23 Show GitHub Exploit DB Packet Storm
3369 6.5 MEDIUM
Network
golang net Parsing arbitrary HTML can consume excessive CPU time, possibly leading to denial of service. CWE-400
 Uncontrolled Resource Consumption
CVE-2026-25680 2026-05-30 00:47 2026-05-23 Show GitHub Exploit DB Packet Storm
3370 6.5 MEDIUM
Network
- - The OpenTelemetry.Exporter.Instana exports telemetry to Instana backend. Prior to 1.1.0, the OpenTelemetry.Exporter.Instana NuGet package does not validate HTTPS/TLS certificates are valid when sendi… CWE-295
Improper Certificate Validation 
CVE-2026-44213 2026-05-30 00:42 2026-05-27 Show GitHub Exploit DB Packet Storm