Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254371 4.3 警告 マイクロソフト - Windows Server 2003 および 2008 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1264 2011-06-28 12:17 2011-06-14 Show GitHub Exploit DB Packet Storm
254372 9.3 危険 マイクロソフト - Microsoft Internet Explorer 6 から 9 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-1261 2011-06-28 12:16 2011-06-14 Show GitHub Exploit DB Packet Storm
254373 4.3 警告 マイクロソフト - Microsoft Internet Explorer 6 から 8 における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-1258 2011-06-28 12:16 2011-06-14 Show GitHub Exploit DB Packet Storm
254374 9.3 危険 マイクロソフト - Microsoft Internet Explorer 6 から 8 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-1256 2011-06-28 12:15 2011-06-14 Show GitHub Exploit DB Packet Storm
254375 9.3 危険 マイクロソフト - Microsoft Internet Explorer 6 から 8 の HTML+TIME における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-1255 2011-06-28 12:14 2011-06-14 Show GitHub Exploit DB Packet Storm
254376 9.3 危険 マイクロソフト - Microsoft Internet Explorer 6 から 8 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-1254 2011-06-28 12:13 2011-06-14 Show GitHub Exploit DB Packet Storm
254377 9.3 危険 マイクロソフト - Microsoft Internet Explorer 6 から 9 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-1250 2011-06-28 12:12 2011-06-14 Show GitHub Exploit DB Packet Storm
254378 9.3 危険 マイクロソフト - Microsoft Internet Explorer 7 から 9 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-1262 2011-06-28 12:11 2011-06-14 Show GitHub Exploit DB Packet Storm
254379 4.9 警告 Linux
レッドハット
- Linux kernel の fs/eventpoll.c におけるサービス運用妨害 (DoS)の脆弱性 CWE-399
リソース管理の問題
CVE-2011-1082 2011-06-28 10:03 2011-04-4 Show GitHub Exploit DB Packet Storm
254380 4.9 警告 Linux
レッドハット
- Linux kernel の mm/huge_memory.c におけるサービス運用妨害 (メモリ破損) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-0999 2011-06-28 10:01 2011-02-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
6011 - - - SEPPmail Secure Email Gateway before version 15.0.2.1 allows unauthenticated remote code execution in the new GINA UI because an endpoint passes attacker-controlled input from a parameter to Perl's e… CWE-95
Eval Injection
CVE-2026-44128 2026-05-9 00:51 2026-05-8 Show GitHub Exploit DB Packet Storm
6012 - - - SEPPmail Secure Email Gateway before version 15.0.4 contains a server-side template injection vulnerability in the new GINA UI because an endpoint accepts attacker-controlled template, allowing remot… CWE-1336
 Improper Neutralization of Special Elements Used in a Template Engine
CVE-2026-44129 2026-05-9 00:51 2026-05-8 Show GitHub Exploit DB Packet Storm
6013 - - - SEPPmail Secure Email Gateway before version 15.0.4 exposes server environment variables through an unauthenticated endpoint in the new GINA UI, allowing remote attackers to obtain sensitive system i… CWE-497
 Exposure of Sensitive System Information to an Unauthorized Control Sphere
CVE-2026-7864 2026-05-9 00:51 2026-05-8 Show GitHub Exploit DB Packet Storm
6014 8.1 HIGH
Network
- - DrayTek Vigor 2960 firmware versions prior to 1.5.1.4 contain an OS command injection vulnerability in the CGI login handler that allows unauthenticated remote attackers to execute arbitrary commands… CWE-78
OS Command 
CVE-2022-50994 2026-05-9 00:48 2026-05-8 Show GitHub Exploit DB Packet Storm
6015 5.3 MEDIUM
Network
- - Vvveb before 1.0.8.2 contains an information disclosure vulnerability in the cron controller that allows unauthenticated attackers to retrieve the application's secret cron key. Attackers can access … CWE-497
 Exposure of Sensitive System Information to an Unauthorized Control Sphere
CVE-2026-41928 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
6016 6.1 MEDIUM
Network
- - Vvveb before 1.0.8.2 contains an unauthenticated reflected cross-site scripting vulnerability in the visual editor preview renderer that allows attackers to execute arbitrary JavaScript by manipulati… CWE-79
Cross-site Scripting
CVE-2026-41929 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
6017 8.6 HIGH
Network
- - The OttoKit: All-in-One Automation Platform WordPress plugin before 1.1.23 does not properly sanitize user input before using it in a SQL statement, which could allow unauthenticated attackers to per… CWE-89
SQL Injection
CVE-2026-4935 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
6018 7.5 HIGH
Network
- - Improper neutralization of special elements in M365 Copilot allows an unauthorized attacker to disclose information over a network. CWE-138
 Improper Neutralization of Special Elements
CVE-2026-26129 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
6019 7.5 HIGH
Network
- - Improper neutralization of special elements in output used by a downstream component ('injection') in M365 Copilot allows an unauthorized attacker to disclose information over a network. CWE-74
Injection
CVE-2026-26164 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
6020 8.8 HIGH
Network
- - Improper neutralization of input during web page generation ('cross-site scripting') in Azure Machine Learning allows an unauthorized attacker to perform spoofing over a network. CWE-79
Cross-site Scripting
CVE-2026-32207 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm