Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 12:20 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2501 6.5 警告
Network
Grzegorz Kostka (gkostka) Lwext4 Grzegorz Kostka (gkostka)のLwext4における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2025-70101 2026-06-8 12:28 2026-06-3 Show GitHub Exploit DB Packet Storm
2502 7.5 重要
Network
NAVTOR AS NavBox Firmware NAVTOR ASのNavBox Firmwareにおける絶対パストラバーサルに関する脆弱性 CWE-36
絶対パストラバーサル
CVE-2026-2753 2026-06-8 12:28 2026-03-6 Show GitHub Exploit DB Packet Storm
2503 7.5 重要
Network
NAVTOR AS NavBox Firmware NAVTOR ASのNavBox Firmwareにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-2754 2026-06-8 12:28 2026-03-6 Show GitHub Exploit DB Packet Storm
2504 6.5 警告
Network
Project Calico Calico tigeraのCalicoにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2026-41184 2026-06-8 12:28 2026-05-28 Show GitHub Exploit DB Packet Storm
2505 6.5 警告
Network
Project Calico Calico tigeraのCalicoにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2026-41185 2026-06-8 12:28 2026-05-28 Show GitHub Exploit DB Packet Storm
2506 5.5 警告
Local
Canonical Livepatch Client CanonicalのLivepatch Clientにおける複数の脆弱性 CWE-306
CWE-732
CVE-2026-6369 2026-06-8 12:28 2026-04-20 Show GitHub Exploit DB Packet Storm
2507 7.8 重要
Local
Synology Inc. Hyper Backup Explorer Synology Inc.のHyper Backup Explorerにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2022-49042 2026-06-8 12:28 2026-06-3 Show GitHub Exploit DB Packet Storm
2508 5.9 警告
Network
Synology Inc. Note Station Client Synology Inc.のNote Station Clientにおける重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2023-52951 2026-06-8 12:28 2026-06-3 Show GitHub Exploit DB Packet Storm
2509 4.1 警告
Network
Synology Inc. Hyper Backup Synology Inc.のHyper Backupにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2024-47263 2026-06-8 12:28 2026-06-3 Show GitHub Exploit DB Packet Storm
2510 4.3 警告
Network
Synology Inc. Hyper Backup Synology Inc.のHyper Backupにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2024-47273 2026-06-8 12:28 2026-06-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307281 - utage.org enkai Cross-site scripting (XSS) vulnerability in Enkai-kun before 110916 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2011-2675 2024-11-21 10:28 2011-10-10 Show GitHub Exploit DB Packet Storm
307282 - novell groupwise Array index error in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before HP3 allows remote attackers to execute arbitrary code via a crafted yearly RRULE variable in a VCALENDAR attachment… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2663 2024-11-21 10:28 2011-10-8 Show GitHub Exploit DB Packet Storm
307283 - novell groupwise Integer signedness error in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before HP3 allows remote attackers to execute arbitrary code via a negative BYWEEKNO property in a weekly RRULE var… CWE-189
Numeric Errors
CVE-2011-2662 2024-11-21 10:28 2011-10-8 Show GitHub Exploit DB Packet Storm
307284 - novell groupwise Multiple cross-site scripting (XSS) vulnerabilities in WebAccess in Novell GroupWise 8.0 before HP3 allow remote attackers to inject arbitrary web script or HTML via the (1) Directory.Item.name or (2… CWE-79
Cross-site Scripting
CVE-2011-2661 2024-11-21 10:28 2011-10-8 Show GitHub Exploit DB Packet Storm
307285 - adobe photoshop_elements Multiple buffer overflows in Adobe Photoshop Elements 8.0 and earlier allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2443 2024-11-21 10:28 2011-10-5 Show GitHub Exploit DB Packet Storm
307286 - samba
hp
samba
nonstop_server
nonstop_server_software
Unspecified vulnerability on HP NonStop Servers with software H06.x through H06.23.00 and J06.x through J06.12.00, when Samba is used, allows remote authenticated users to execute arbitrary code via … NVD-CWE-noinfo
CVE-2011-2411 2024-11-21 10:28 2011-10-3 Show GitHub Exploit DB Packet Storm
307287 - basercms basercms BaserCMS before 1.6.12 does not properly restrict additions to the membership of the operators group, which allows remote authenticated users to gain privileges via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-2674 2024-11-21 10:28 2011-10-2 Show GitHub Exploit DB Packet Storm
307288 - basercms basercms Cross-site scripting (XSS) vulnerability in BaserCMS before 1.6.13.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2011-2673 2024-11-21 10:28 2011-10-2 Show GitHub Exploit DB Packet Storm
307289 - mozilla firefox
thunderbird
seamonkey
Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 do not prevent the starting of a download in response to the holding of the Enter key, which allows u… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-2372 2024-11-21 10:28 2011-09-29 Show GitHub Exploit DB Packet Storm
307290 - fast_cgi_project
debian
fast_cgi
debian_linux
The FCGI (aka Fast CGI) module 0.70 through 0.73 for Perl, as used by CGI::Fast, uses environment variable values from one request during processing of a later request, which allows remote attackers … CWE-287
Improper Authentication
CVE-2011-2766 2024-11-21 10:28 2011-09-23 Show GitHub Exploit DB Packet Storm