Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2881 6.5 警告
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-29220 2026-05-21 10:53 2026-05-19 Show GitHub Exploit DB Packet Storm
2882 7.3 重要
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-29226 2026-05-21 10:53 2026-05-19 Show GitHub Exploit DB Packet Storm
2883 7.5 重要
Network
HSC MailInspector HSCのMailInspectorにおけるファイル名やパス名の外部制御に関する脆弱性 CWE-73
ファイル名やパス名の外部制御
CVE-2026-29962 2026-05-21 10:53 2026-05-18 Show GitHub Exploit DB Packet Storm
2884 7.5 重要
Network
HSC MailInspector HSCのMailInspectorにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-29963 2026-05-21 10:53 2026-05-18 Show GitHub Exploit DB Packet Storm
2885 6.1 警告
Network
HSC MailInspector HSCのMailInspectorにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-29964 2026-05-21 10:53 2026-05-18 Show GitHub Exploit DB Packet Storm
2886 6.1 警告
Network
HSC MailInspector HSCのMailInspectorにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-29965 2026-05-21 10:53 2026-05-18 Show GitHub Exploit DB Packet Storm
2887 6.5 警告
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおける入力確認に関する脆弱性 CWE-20
CWE-noinfo
CVE-2026-31378 2026-05-21 10:53 2026-05-19 Show GitHub Exploit DB Packet Storm
2888 6.1 警告
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおける複数の脆弱性 CWE-22
CWE-79
CWE-94
CVE-2026-31379 2026-05-21 10:53 2026-05-19 Show GitHub Exploit DB Packet Storm
2889 6.5 警告
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおける言語構文の表現に使用される特殊な要素の不適切な無効化に関する脆弱性 CWE-917
言語構文の表現に使用される特殊な要素の不適切な無効化
CVE-2026-31380 2026-05-21 10:53 2026-05-19 Show GitHub Exploit DB Packet Storm
2890 5.3 警告
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-31387 2026-05-21 10:53 2026-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306761 - tedfelix acpid2 samples/powerbtn/powerbtn.sh in acpid (aka acpid2) 2.0.16 and earlier uses the pidof program incorrectly, which allows local users to gain privileges by running a program with the name kded4 and a DB… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-2777 2024-11-21 10:28 2012-08-30 Show GitHub Exploit DB Packet Storm
306762 - novell zenworks_configuration_management The ISList.ISAvi ActiveX control in AdminStudio in Novell ZENworks Configuration Management (ZCM) 10.2, 10.3, and 11 SP1 provides access to the mscomct2.ocx file, which allows remote attackers to exe… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-2658 2024-11-21 10:28 2012-07-27 Show GitHub Exploit DB Packet Storm
306763 - novell zenworks_configuration_management Directory traversal vulnerability in the LaunchProcess function in the LaunchHelp.HelpLauncher.1 ActiveX control in LaunchHelp.dll in AdminStudio in Novell ZENworks Configuration Management (ZCM) 10.… CWE-22
Path Traversal
CVE-2011-2657 2024-11-21 10:28 2012-07-27 Show GitHub Exploit DB Packet Storm
306764 - systemtap systemtap The insert_module function in runtime/staprun/staprun_funcs.c in the systemtap runtime tool (staprun) in SystemTap before 1.6 does not properly validate a module when loading it, which allows local u… CWE-20
 Improper Input Validation 
CVE-2011-2503 2024-11-21 10:28 2012-07-27 Show GitHub Exploit DB Packet Storm
306765 - systemtap systemtap runtime/staprun/staprun_funcs.c in the systemtap runtime tool (staprun) in SystemTap before 1.6 does not properly validate modules when a module path is specified by a user for user-space probing, wh… CWE-20
 Improper Input Validation 
CVE-2011-2502 2024-11-21 10:28 2012-07-27 Show GitHub Exploit DB Packet Storm
306766 - t-mobile
busybox
tm-ac1900
busybox
The DHCP client (udhcpc) in BusyBox before 1.20.0 allows remote DHCP servers to execute arbitrary commands via shell metacharacters in the (1) HOST_NAME, (2) DOMAIN_NAME, (3) NIS_DOMAIN, and (4) TFTP… CWE-20
 Improper Input Validation 
CVE-2011-2716 2024-11-21 10:28 2012-07-4 Show GitHub Exploit DB Packet Storm
306767 - gnome gdk-pixbuf The gdk_pixbuf__gif_image_load function in gdk-pixbuf/io-gif.c in gdk-pixbuf before 2.23.5 does not properly handle certain return values, which allows remote attackers to cause a denial of service (… NVD-CWE-Other
CVE-2011-2485 2024-11-21 10:28 2012-07-4 Show GitHub Exploit DB Packet Storm
306768 - umich libgssglue
libgssapi
libgssapi and libgssglue before 0.4 do not properly check privileges, which allows local users to load untrusted configuration files and execute arbitrary code via the GSSAPI_MECH_CONF environment va… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-2709 2024-11-21 10:28 2012-06-22 Show GitHub Exploit DB Packet Storm
306769 - qemu qemu The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted fi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-2527 2024-11-21 10:28 2012-06-22 Show GitHub Exploit DB Packet Storm
306770 - kvm_group qemu-kvm The virtio_queue_notify in qemu-kvm 0.14.0 and earlier does not properly validate the virtqueue number, which allows guest users to cause a denial of service (guest crash) and possibly execute arbitr… CWE-20
 Improper Input Validation 
CVE-2011-2512 2024-11-21 10:28 2012-06-22 Show GitHub Exploit DB Packet Storm