Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2491 7.5 重要
Network
Honeywell International Inc. Control Network Module Firmware Honeywell International Inc.のControl Network Module Firmwareにおけるファイルおよびディレクトリ情報の漏えいに関する脆弱性 CWE-538
ファイルおよびディレクトリ情報の漏えい
CVE-2026-5434 2026-05-28 14:45 2026-05-21 Show GitHub Exploit DB Packet Storm
2492 7.5 重要
Network
デル elastic cloud storage デルのelastic cloud storageにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2022-31231 2026-05-28 14:45 2026-05-22 Show GitHub Exploit DB Packet Storm
2493 7.8 重要
Local
Check MK Check MK Check MKにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2024-47091 2026-05-28 14:45 2026-05-13 Show GitHub Exploit DB Packet Storm
2494 5.5 警告
Local
- AutoGPTのAutoGPT Platformにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-32425 2026-05-28 14:44 2026-05-13 Show GitHub Exploit DB Packet Storm
2495 6.5 警告
Network
Neo Technology Neo4j Neo TechnologyのNeo4jにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-1471 2026-05-28 14:44 2026-03-11 Show GitHub Exploit DB Packet Storm
2496 9.8 緊急
Network
Neo Technology Neo4j Neo TechnologyのNeo4jにおける複数の脆弱性 CWE-287
CWE-863
CVE-2026-1524 2026-05-28 14:44 2026-03-11 Show GitHub Exploit DB Packet Storm
2497 5.4 警告
Network
Webmin Project Webmin Webmin ProjectのWebminにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-22678 2026-05-28 14:44 2026-05-21 Show GitHub Exploit DB Packet Storm
2498 8.8 重要
Adjacent
Linux Linux Kernel LinuxのLinux Kernelにおける配列インデックスの検証に関する脆弱性 CWE-129
配列インデックスの不適切な検証
CVE-2026-23246 2026-05-28 14:44 2026-03-18 Show GitHub Exploit DB Packet Storm
2499 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2026-23261 2026-05-28 14:44 2026-03-18 Show GitHub Exploit DB Packet Storm
2500 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-23262 2026-05-28 14:44 2026-03-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306641 - apple itunes
webkit
WebKit, as used in Apple iTunes before 10.5, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-3233 2024-11-21 10:30 2011-10-13 Show GitHub Exploit DB Packet Storm
306642 - apple itunes Buffer overflow in CoreMedia, as used in Apple iTunes before 10.5, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with H.2… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-3219 2024-11-21 10:30 2011-10-13 Show GitHub Exploit DB Packet Storm
306643 - adam_kennedy crypt-dsa The Crypt::DSA (aka Crypt-DSA) module 1.17 and earlier for Perl, when /dev/random is absent, uses the Data::Random module, which makes it easier for remote attackers to spoof a signature, or determin… CWE-310
Cryptographic Issues
CVE-2011-3599 2024-11-21 10:30 2011-10-10 Show GitHub Exploit DB Packet Storm
306644 - zope
plone
zope
plone
Unspecified vulnerability in Zope 2.12.x and 2.13.x, as used in Plone 4.0.x through 4.0.9, 4.1, and 4.2 through 4.2a2, allows remote attackers to execute arbitrary commands via vectors related to the… NVD-CWE-noinfo
CVE-2011-3587 2024-11-21 10:30 2011-10-10 Show GitHub Exploit DB Packet Storm
306645 - quagga quagga Heap-based buffer overflow in the ecommunity_ecom2str function in bgp_ecommunity.c in bgpd in Quagga before 0.99.19 allows remote attackers to cause a denial of service (daemon crash) or possibly exe… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-3327 2024-11-21 10:30 2011-10-10 Show GitHub Exploit DB Packet Storm
306646 - quagga quagga The ospf_flood function in ospf_flood.c in ospfd in Quagga before 0.99.19 allows remote attackers to cause a denial of service (daemon crash) via an invalid Link State Advertisement (LSA) type in an … CWE-399
 Resource Management Errors
CVE-2011-3326 2024-11-21 10:30 2011-10-10 Show GitHub Exploit DB Packet Storm
306647 - quagga quagga ospf_packet.c in ospfd in Quagga before 0.99.19 allows remote attackers to cause a denial of service (daemon crash) via (1) a 0x0a type field in an IPv4 packet header or (2) a truncated IPv4 Hello pa… CWE-399
 Resource Management Errors
CVE-2011-3325 2024-11-21 10:30 2011-10-10 Show GitHub Exploit DB Packet Storm
306648 - quagga quagga The ospf6_lsa_is_changed function in ospf6_lsa.c in the OSPFv3 implementation in ospf6d in Quagga before 0.99.19 allows remote attackers to cause a denial of service (assertion failure and daemon exi… CWE-399
 Resource Management Errors
CVE-2011-3324 2024-11-21 10:30 2011-10-10 Show GitHub Exploit DB Packet Storm
306649 - quagga quagga The OSPFv3 implementation in ospf6d in Quagga before 0.99.19 allows remote attackers to cause a denial of service (out-of-bounds memory access and daemon crash) via a Link State Update message with a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-3323 2024-11-21 10:30 2011-10-10 Show GitHub Exploit DB Packet Storm
306650 - phppgadmin phppgadmin Multiple cross-site scripting (XSS) vulnerabilities in phpPgAdmin before 5.0.3 allow remote attackers to inject arbitrary web script or HTML via (1) a web page title, related to classes/Misc.php; or … CWE-79
Cross-site Scripting
CVE-2011-3598 2024-11-21 10:30 2011-10-8 Show GitHub Exploit DB Packet Storm