Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3151 9.6 緊急
Network
Guardrails AI Guardrails AI Guardrails AIにおける埋め込まれた悪意のあるコードに関する脆弱性 CWE-506
埋め込まれた悪意のあるコード
CVE-2026-45758 2026-06-9 14:11 2026-06-5 Show GitHub Exploit DB Packet Storm
3152 7.5 重要
Network
レッドハット Red Hat OpenShift Container Platform
OpenShift Router
レッドハットのRed Hat OpenShift Container Platform等の複数製品における認証に関する脆弱性 CWE-287
CWE-noinfo
CVE-2026-46579 2026-06-9 14:10 2026-05-29 Show GitHub Exploit DB Packet Storm
3153 5.3 警告
Network
Cosimo Net::statsd CosimoのNet::statsdにおけるCRLF インジェクションの脆弱性 CWE-93
CRLF インジェクション
CVE-2026-46719
CVE-2026-46720
CVE-2026-46739
2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
3154 7.5 重要
Network
Steve Sanbeg Etsy::StatsD Steve SanbegのEtsy::StatsDにおけるCRLF インジェクションの脆弱性 CWE-93
CRLF インジェクション
CVE-2026-46719
CVE-2026-46720
CVE-2026-46741
2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
3155 9.8 緊急
Network
Advanced Micro Devices (AMD) AITER (AI Tensor Engine for ROCm) Advanced Micro Devices (AMD)のAITER (AI Tensor Engine for ROCm)における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-49121 2026-06-9 14:10 2026-06-1 Show GitHub Exploit DB Packet Storm
3156 9.8 緊急
Network
日本エイサー Acer Wave 7 Router Firmware T7c Gbl エイサーのAcer Wave 7 Router Firmware T7c Gblにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2026-49200 2026-06-9 14:10 2026-05-29 Show GitHub Exploit DB Packet Storm
3157 9.8 緊急
Network
日本エイサー Acer Wave 7 Router Firmware T7c Gbl エイサーのAcer Wave 7 Router Firmware T7c Gblにおけるハードコードされた認証情報の使用に関する脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2026-49201 2026-06-9 14:10 2026-05-29 Show GitHub Exploit DB Packet Storm
3158 6.5 警告
Network
RRWO (Robert Rothenberg) Net::CIDR::Set RRWO (Robert Rothenberg)のNet::CIDR::Setにおける安全でない等式による入力の不適切な検証に関する脆弱性 CWE-1289
安全でない等式による入力の不適切な検証
CVE-2026-49940 2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
3159 7.5 重要
Network
RRWO (Robert Rothenberg) Net::CIDR::Set RRWO (Robert Rothenberg)のNet::CIDR::Setにおける複数の脆弱性 CWE-1287
CWE-674
CVE-2026-49941 2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
3160 7.3 重要
Network
RRWO (Robert Rothenberg) Net::CIDR::Set RRWO (Robert Rothenberg)のNet::CIDR::Setにおける安全でない等式による入力の不適切な検証に関する脆弱性 CWE-1289
安全でない等式による入力の不適切な検証
CVE-2026-49942 2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
344151 - apple mac_os_x
mac_os_x_server
passwd in Directory Services in Mac OS X 10.3.x before 10.3.9 and 10.4.x before 10.4.5 allows local users to create arbitrary world-writable files as root by specifying an alternate file in the passw… NVD-CWE-Other
CVE-2005-2713 2018-10-20 00:33 2005-12-31 Show GitHub Exploit DB Packet Storm
344152 - apple mac_os_x
mac_os_x_server
passwd in Directory Services in Mac OS X 10.3.x before 10.3.9 and 10.4.x before 10.4.5 allows local users to overwrite arbitrary files via a symlink attack on the .pwtmp.[PID] temporary file. CWE-59
Link Following
CVE-2005-2714 2018-10-20 00:33 2005-12-31 Show GitHub Exploit DB Packet Storm
344153 - apple quicktime Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file that causes a sign extension of the length element in a Pascal style s… CWE-189
Numeric Errors
CVE-2005-2753 2018-10-20 00:33 2005-11-5 Show GitHub Exploit DB Packet Storm
344154 - apple quicktime Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file with "Improper movie attributes." CWE-189
Numeric Errors
CVE-2005-2754 2018-10-20 00:33 2005-11-5 Show GitHub Exploit DB Packet Storm
344155 - apple quicktime Apple QuickTime Player before 7.0.3 allows user-assisted attackers to cause a denial of service (crash) via a crafted file with a missing movie attribute, which leads to a null dereference. NVD-CWE-Other
CVE-2005-2755 2018-10-20 00:33 2005-11-5 Show GitHub Exploit DB Packet Storm
344156 - apple quicktime Apple QuickTime before 7.0.3 allows user-assisted attackers to overwrite memory and execute arbitrary code via a crafted PICT file that triggers an overflow during expansion. NVD-CWE-Other
CVE-2005-2756 2018-10-20 00:33 2005-11-5 Show GitHub Exploit DB Packet Storm
344157 - ilia_alshanetsky fudforum The Avatar upload feature in FUD Forum before 2.7.0 does not properly verify uploaded files, which allows remote attackers to execute arbitrary PHP code via a file with a .php extension that contains… NVD-CWE-Other
CVE-2005-2781 2018-10-20 00:33 2005-09-3 Show GitHub Exploit DB Packet Storm
344158 - openbsd openssh sshd in OpenSSH before 4.2, when GSSAPIDelegateCredentials is enabled, allows GSSAPI credentials to be delegated to clients who log in using non-GSSAPI methods, which could cause those credentials to… NVD-CWE-Other
CVE-2005-2798 2018-10-20 00:33 2005-09-7 Show GitHub Exploit DB Packet Storm
344159 - flatnuke flatnuke Directory traversal vulnerability in FlatNuke 2.5.6 and possibly earlier allows remote attackers to read arbitrary files via ".." sequences and "%00" (trailing null byte) characters in the id paramet… NVD-CWE-Other
CVE-2005-2813 2018-10-20 00:33 2005-09-8 Show GitHub Exploit DB Packet Storm
344160 - mywebland mybloggie SQL injection vulnerability in login.php in myBloggie 2.1.3-beta and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter. NVD-CWE-Other
CVE-2005-2838 2018-10-20 00:33 2005-09-8 Show GitHub Exploit DB Packet Storm