Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2791 7.1 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-31430 2026-05-25 10:23 2026-04-20 Show GitHub Exploit DB Packet Storm
2792 8.8 重要
Network
Linux Linux Kernel LinuxのLinux Kernelにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-31432 2026-05-25 10:23 2026-04-22 Show GitHub Exploit DB Packet Storm
2793 4.3 警告
Network
GLPI-PROJECT.ORG GLPI GLPI-PROJECT.ORGのGLPIにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-32312 2026-05-25 10:23 2026-05-19 Show GitHub Exploit DB Packet Storm
2794 7.8 重要
Local
mullvad mullvad vpn mullvadのmullvad vpnにおける複数の脆弱性 CWE-269
CWE-345
CWE-427
CWE-noinfo
CVE-2026-32323 2026-05-25 10:23 2026-05-19 Show GitHub Exploit DB Packet Storm
2795 6.5 警告
Network
Faraday Project Faraday Faraday ProjectのFaradayにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-33637 2026-05-25 10:22 2026-05-19 Show GitHub Exploit DB Packet Storm
2796 8.8 重要
Local
FreeBSD FreeBSD FreeBSDにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-39461 2026-05-25 10:22 2026-05-21 Show GitHub Exploit DB Packet Storm
2797 6.5 警告
Network
plane plane planeにおけるデータクエリロジックの特殊要素の不適切な中立化に関する脆弱性 CWE-943
データクエリロジックの特殊要素の不適切な中立化
CVE-2026-40102 2026-05-25 10:22 2026-05-20 Show GitHub Exploit DB Packet Storm
2798 7.5 重要
Network
マイクロソフト Microsoft Entra ID Microsoft Entra ID のスプーフィングの脆弱性 CWE-200
情報漏えい
CVE-2026-40379 2026-05-25 10:22 2026-05-12 Show GitHub Exploit DB Packet Storm
2799 4.3 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-4055 2026-05-25 10:22 2026-05-21 Show GitHub Exploit DB Packet Storm
2800 7.8 重要
Local
Samba Project rsync Samba Projectのrsyncにおけるレングスパラメーターの不整合による処理に関する脆弱性 CWE-130
レングスパラメーターの不整合による不適切な処理
CVE-2026-41035 2026-05-25 10:22 2026-04-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3801 8.8 HIGH
Local
qualcomm cq8750m_firmware
fastconnect_6700_firmware
fastconnect_6800_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
g3x_gen_2_firmware
pandeiro_firmware
qca6391_firmware
Memory corruption while using Strongbox due to missing bounds check. CWE-129
 Improper Validation of Array Index
CVE-2026-25276 2026-06-2 23:58 2026-06-2 Show GitHub Exploit DB Packet Storm
3802 8.8 HIGH
Local
qualcomm cq8750m_firmware
fastconnect_6700_firmware
fastconnect_6800_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
g3x_gen_2_firmware
pandeiro_firmware
qca6391_firmware
Memory corruption while using Strongbox due to buffer overflow. CWE-120
Classic Buffer Overflow
CVE-2026-25277 2026-06-2 23:57 2026-06-2 Show GitHub Exploit DB Packet Storm
3803 6.1 MEDIUM
Network
- - Cross-Site Scripting (XSS) in GeniexWebView component in Transsion AI Assistant Lifestyle application (com.transsion.aiassistantlifestyle) all versions on Android allows remote attacker to execute ar… CWE-79
Cross-site Scripting
CVE-2026-10510 2026-06-2 23:50 2026-06-2 Show GitHub Exploit DB Packet Storm
3804 6.5 MEDIUM
Network
- - D.Launcher 2 component of Slovak eID client ecosystem contains Improper URL Handler Processing vulnerability. Application registers multiple custom URL handlers that could be exploited to initiate fu… CWE-74
CWE-200
Injection
Information Exposure
CVE-2026-8993 2026-06-2 23:50 2026-06-2 Show GitHub Exploit DB Packet Storm
3805 5.7 MEDIUM
Network
- - A vulnerability has been identified in RUGGEDCOM RST2428P (6GK6242-6PA00) (All versions < V4.0). The affected applications stores sensitive information in the browser cache when an authenticated user… CWE-525
 Use of Web Browser Cache Containing Sensitive Information
CVE-2026-41918 2026-06-2 23:50 2026-06-2 Show GitHub Exploit DB Packet Storm
3806 - - - Use of default credentials vulnerability in Roche Diagnostics navify Digital Pathology (RabbitMQ Management interface modules) allows Default Usernames and Passwords. This issue affects navify Digita… CWE-1392
 Use of Default Credentials
CVE-2026-9844 2026-06-2 23:50 2026-06-2 Show GitHub Exploit DB Packet Storm
3807 8.8 HIGH
Network
openstack keystone An issue was discovered in OpenStack Keystone before 29.0.2. The Keystone application credential authentication plugin does not verify that the user supplied in the authentication request matches the… CWE-863
 Incorrect Authorization
CVE-2026-42998 2026-06-2 23:50 2026-05-29 Show GitHub Exploit DB Packet Storm
3808 9.8 CRITICAL
Network
ibm cloud_pak_for_data_system_-_cyclops IBM Cloud Pak for Data System - Cyclops 11.3.0.2 through Interim Fix 002 IBM Cloud Pak for Data System is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, … CWE-89
SQL Injection
CVE-2025-36220 2026-06-2 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3809 7.5 HIGH
Network
ibm cloud_pak_for_data_system_-_cyclops IBM Cloud Pak for Data System - Cyclops 11.3.0.2 through Interim Fix 002 IBM Cloud Pak for Data System uses default passwords default passwords from the manufacturing process for use during the inst… CWE-1392
NVD-CWE-noinfo
 Use of Default Credentials
CVE-2025-36221 2026-06-2 23:49 2026-05-27 Show GitHub Exploit DB Packet Storm
3810 4.3 MEDIUM
Network
jenkins job_import Jenkins Job Import Plugin 143.v044a_2e819b_27 and earlier does not perform a permission check in an HTTP endpoint, allowing attackers with Overall/Read permission to enumerate credentials IDs of cred… CWE-269
 Improper Privilege Management
CVE-2026-48926 2026-06-2 23:49 2026-05-28 Show GitHub Exploit DB Packet Storm