Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3161 5.3 警告
Network
Fleet Device Management fleet Fleet Device Managementのfleetにおけるスプーフィングによる認証回避に関する脆弱性 CWE-290
スプーフィングによる認証回避
CVE-2026-24000 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3162 7.5 重要
Network
strapi strapi strapiにおける複数の脆弱性 CWE-200
CWE-22
CWE-943
CVE-2026-27886 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3163 6.5 警告
Network
Grafana Labs Grafana Grafana LabsのGrafanaにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-28376 2026-05-18 12:07 2026-05-13 Show GitHub Exploit DB Packet Storm
3164 2.7
Network
GitLab.org GitLab GitLab.orgのGitLabにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-2900 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3165 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-3073 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3166 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-3074 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3167 5.8 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるフィルタリングの回避に関する脆弱性 CWE-441
フィルタリング回避
CVE-2026-3160 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3168 9.1 緊急
Network
マイクロソフト Azure SDK for Java Azure SDK for Java のセキュリティ機能のバイパスの脆弱性 CWE-287
CWE-347
CVE-2026-33117 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
3169 9.9 緊急
Network
マイクロソフト Microsoft Dynamics 365 Customer Insights Microsoft Dynamics 365 Customer Insights の特権昇格の脆弱性 CWE-269
不適切な権限管理
CVE-2026-33821 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3170 6.5 警告
Adjacent
Pengutronix e.K. barebox Pengutronix e.K.のbareboxにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-34960 2026-05-18 12:06 2026-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306391 - invensys wonderware_inbatch Buffer overflow in the InBatch BatchField ActiveX control for Invensys Wonderware InBatch 8.1 SP1, 9.0, and 9.0 SP1 allows remote attackers to cause a denial of service (crash) and possibly execute a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-3141 2024-11-21 10:29 2011-08-17 Show GitHub Exploit DB Packet Storm
306392 - ibm web_application_firewall
g400_ips-g400-ib-1_appliance
gx4004_ips-gx4004-ib-2_appliance
IBM Web Application Firewall, as used on the G400 IPS-G400-IB-1 and GX4004 IPS-GX4004-IB-2 appliances with update 31.030, does not properly handle query strings with multiple instances of the same pa… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-3140 2024-11-21 10:29 2011-08-16 Show GitHub Exploit DB Packet Storm
306393 - ca arcserve_d2d BaseServiceImpl.class in CA ARCserve D2D r15 does not properly handle sessions, which allows remote attackers to obtain credentials, and consequently execute arbitrary commands, via unspecified vecto… CWE-200
Information Exposure
CVE-2011-3011 2024-11-21 10:29 2011-08-16 Show GitHub Exploit DB Packet Storm
306394 - clusterresources torque_resource_manager Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 3.0.1 and earlier allows remote attackers to bypass host-based authentication and submit arbitrary jobs via a modified P… CWE-287
Improper Authentication
CVE-2011-2907 2024-11-21 10:29 2011-08-16 Show GitHub Exploit DB Packet Storm
306395 - ibm tivoli_federated_identity_manager
tivoli_federated_identity_manager_business_gateway
The LTPA STS module support implementation in IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.9 and Tivoli Federated Identity Manager Business Gateway (TFIMBG) 6.2.0 before 6.2.0.9 re… NVD-CWE-Other
CVE-2011-3138 2024-11-21 10:29 2011-08-13 Show GitHub Exploit DB Packet Storm
306396 - ibm tivoli_federated_identity_manager
tivoli_federated_identity_manager_business_gateway
Unspecified vulnerability in the Management Console in IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.9 and Tivoli Federated Identity Manager Business Gateway (TFIMBG) 6.2.0 before 6… NVD-CWE-noinfo
CVE-2011-3137 2024-11-21 10:29 2011-08-13 Show GitHub Exploit DB Packet Storm
306397 - ibm tivoli_federated_identity_manager
tivoli_federated_identity_manager_business_gateway
Unspecified vulnerability in the Management Console in IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.9 and Tivoli Federated Identity Manager Business Gateway (TFIMBG) 6.2.0 before 6… NVD-CWE-noinfo
CVE-2011-3136 2024-11-21 10:29 2011-08-13 Show GitHub Exploit DB Packet Storm
306398 - ibm tivoli_federated_identity_manager
tivoli_federated_identity_manager_business_gateway
Unspecified vulnerability in the Runtime in IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.9 and Tivoli Federated Identity Manager Business Gateway (TFIMBG) 6.2.0 before 6.2.0.9 has … NVD-CWE-noinfo
CVE-2011-3135 2024-11-21 10:29 2011-08-13 Show GitHub Exploit DB Packet Storm
306399 - wordpress wordpress wp-includes/taxonomy.php in WordPress 3.1 before 3.1.3 and 3.2 before Beta 2 has unknown impact and attack vectors related to "Taxonomy query hardening," possibly involving SQL injection. CWE-89
NVD-CWE-noinfo
SQL Injection
CVE-2011-3130 2024-11-21 10:29 2011-08-11 Show GitHub Exploit DB Packet Storm
306400 - wordpress wordpress The file upload functionality in WordPress 3.1 before 3.1.3 and 3.2 before Beta 2, when running "on hosts with dangerous security settings," has unknown impact and attack vectors, possibly related to… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-3129 2024-11-21 10:29 2011-08-11 Show GitHub Exploit DB Packet Storm