Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
199271 5.4 警告
Network
Moodle - Moodle におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-7298 2017-04-26 17:53 2017-03-29 Show GitHub Exploit DB Packet Storm
199272 5.5 警告
Local
Linux - Linux Kernel の drivers/gpu/drm/vmwgfx/vmwgfx_surface.c の vmw_surface_define_ioctl 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2017-7261 2017-04-26 17:51 2017-03-24 Show GitHub Exploit DB Packet Storm
199273 9.8 緊急
Network
Linux - Linux Kernel の net/ipv6/ip6_gre.c の ip6gre_err 関数における境界外アクセスの脆弱性 CWE-125
境界外読み取り
CVE-2017-5897 2017-04-26 17:51 2017-02-4 Show GitHub Exploit DB Packet Storm
199274 5.5 警告
Local
ImageMagick - ImageMagick の coders/pcx.c の ReadPCXImage 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2017-7275 2017-04-26 17:49 2017-03-28 Show GitHub Exploit DB Packet Storm
199275 7.8 重要
Local
Artifex Software - Artifex Software の fitz/pixmap.c の fz_subsample_pixmap 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-7264 2017-04-26 17:47 2017-02-10 Show GitHub Exploit DB Packet Storm
199276 7.5 重要
Network
Eview - Eview EV-07S GPS トラッカーファームウェアにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2017-5237 2017-04-26 17:02 2017-03-27 Show GitHub Exploit DB Packet Storm
199277 7.5 重要
Network
Eview - Eview EV-07S GPS トラッカーファームウェアにおける暗号強度に関する脆弱性 CWE-326
不適切な暗号強度
CVE-2017-5239 2017-04-26 16:58 2017-03-27 Show GitHub Exploit DB Packet Storm
199278 5.3 警告
Network
Eview - Eview EV-07S GPS トラッカーファームウェアにおけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-5238 2017-04-26 16:58 2017-03-27 Show GitHub Exploit DB Packet Storm
199279 5.4 警告
Network
シーメンス - Siemens RUGGEDCOM ROX I のポート 10000/TCP の統合 Web サーバにおける格納型クロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6864 2017-04-26 16:53 2017-03-28 Show GitHub Exploit DB Packet Storm
199280 8.8 重要
Network
シーメンス - Siemens RUGGEDCOM ROX I におけるポート10000/TCP で Web インターフェースのアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-2689 2017-04-26 16:53 2017-03-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3991 9.1 CRITICAL
Network
- - Casdoor versions 2.362.0 and earlier contain a vulnerability involving unverified email binding that may enable account takeover. The getExistUserByBindingRule function matches users by email without… - CVE-2026-9092 2026-06-2 04:16 2026-05-29 Show GitHub Exploit DB Packet Storm
3992 4.3 MEDIUM
Network
- - FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to 1.8.221, while investigating the ThreadPolicy::delete issue reported previously, the same missing mailbox m… CWE-285
Improper Authorization
CVE-2026-48810 2026-06-2 04:16 2026-05-30 Show GitHub Exploit DB Packet Storm
3993 9.0 CRITICAL
Network
- - Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.28.8 and earlier, authenticated OS command injection in the application.updateTraefikConfig tRPC endpoint allows admin/owner users … CWE-78
OS Command 
CVE-2026-45630 2026-06-2 04:16 2026-05-30 Show GitHub Exploit DB Packet Storm
3994 7.2 HIGH
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Administration WebUI in Waterfall WF-500 TX Host in version… CWE-78
OS Command 
CVE-2025-41265 2026-06-2 03:58 2026-05-29 Show GitHub Exploit DB Packet Storm
3995 7.2 HIGH
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Administration WebUI in Waterfall WF-500 TX Host in version… CWE-78
OS Command 
CVE-2025-41266 2026-06-2 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm
3996 7.2 HIGH
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Administration WebUI in Waterfall WF-500 TX Host in version… CWE-78
OS Command 
CVE-2025-41267 2026-06-2 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm
3997 9.1 CRITICAL
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Administration WebUI in Waterfall WF-500 TX and RX Hosts in version 7.9.1.0 R2502171040 that allows remote unauthenticated att… CWE-23
 Relative Path Traversal
CVE-2025-41268 2026-06-2 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm
3998 9.8 CRITICAL
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Console WebUI in Waterfall WF-500 TX and RX Hosts in versio… CWE-78
OS Command 
CVE-2025-41269 2026-06-2 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm
3999 9.8 CRITICAL
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Console WebUI in Waterfall WF-500 TX and RX Hosts in versio… CWE-78
OS Command 
CVE-2025-41270 2026-06-2 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm
4000 7.5 HIGH
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Console WebUI in Waterfall WF-500 TX and RX Hosts in version 7.9.1.0 R2502171040 that allows remote unauthenticated attackers … CWE-23
 Relative Path Traversal
CVE-2025-41271 2026-06-2 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm