Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3211 8.8 重要
Network
huggingface Diffusers huggingfaceのDiffusersにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-44513 2026-05-20 13:22 2026-05-14 Show GitHub Exploit DB Packet Storm
3212 8.8 重要
Network
huggingface Diffusers huggingfaceのDiffusersにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-44827 2026-05-20 13:22 2026-05-14 Show GitHub Exploit DB Packet Storm
3213 7.1 重要
Network
Peter Steinberger (steipete) Summarize Peter Steinberger (steipete)のSummarizeにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-45242 2026-05-20 13:22 2026-05-18 Show GitHub Exploit DB Packet Storm
3214 6.1 警告
Network
Peter Steinberger (steipete) Summarize Peter Steinberger (steipete)のSummarizeにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-45243 2026-05-20 13:22 2026-05-18 Show GitHub Exploit DB Packet Storm
3215 5.4 警告
Network
Peter Steinberger (steipete) Summarize Peter Steinberger (steipete)のSummarizeにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-45244 2026-05-20 13:22 2026-05-18 Show GitHub Exploit DB Packet Storm
3216 7.4 重要
Network
Peter Steinberger (steipete) Summarize Peter Steinberger (steipete)のSummarizeにおける複数の脆弱性 CWE-918
CWE-940
CVE-2026-45245 2026-05-20 13:22 2026-05-18 Show GitHub Exploit DB Packet Storm
3217 5.5 警告
Local
Peter Steinberger (steipete) Summarize Peter Steinberger (steipete)のSummarizeにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-45246 2026-05-20 13:22 2026-05-18 Show GitHub Exploit DB Packet Storm
3218 9.8 緊急
Network
IBM IBM Total Storage Service Console (TSSC)
TS4500 IMC
IBMのIBM Total Storage Service Console (TSSC)等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-5935 2026-05-20 13:21 2026-04-23 Show GitHub Exploit DB Packet Storm
3219 5.3 警告
Local
tonyc Imager::File::GIF TONYC (Tony Cook)のImager::File::GIFにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-8454 2026-05-20 13:21 2026-05-15 Show GitHub Exploit DB Packet Storm
3220 5.3 警告
Local
OALDERS (Olaf Alders) WWW::Mechanize::Cached OALDERS (Olaf Alders)のWWW::Mechanize::Cachedにおける複数の脆弱性 CWE-502
CWE-732
CVE-2026-8612 2026-05-20 13:21 2026-05-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307131 - icinga icinga Multiple cross-site scripting (XSS) vulnerabilities in config.c in config.cgi in Icinga before 1.4.1, when escape_html_tags is disabled, allow remote attackers to inject arbitrary web script or HTML … CWE-79
Cross-site Scripting
CVE-2011-2477 2024-11-21 10:28 2011-06-15 Show GitHub Exploit DB Packet Storm
307132 - coppermine-gallery coppermine_photo_gallery Cross-site scripting (XSS) vulnerability in Coppermine Photo Gallery (CPG) before 1.5.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerabil… CWE-79
Cross-site Scripting
CVE-2011-2476 2024-11-21 10:28 2011-06-15 Show GitHub Exploit DB Packet Storm
307133 - sybase onebridge_mobile_data_suite Format string vulnerability in ECTrace.dll in the iMailGateway service in the Internet Mail Gateway in OneBridge Server and DMZ Proxy in Sybase OneBridge Mobile Data Suite 5.5 and 5.6 allows remote a… CWE-134
Use of Externally-Controlled Format String
CVE-2011-2475 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307134 - sybase easerver Directory traversal vulnerability in the HTTP Server in Sybase EAServer 6.3.1 Developer Edition allows remote attackers to read arbitrary files via a /.\../\../\ sequence in a path. CWE-22
Path Traversal
CVE-2011-2474 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307135 - maynard_johnson oprofile The do_dump_data function in utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to create or overwrite arbitrary files via a crafted --session-dir argument in conjunction with a sy… CWE-59
Link Following
CVE-2011-2473 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307136 - maynard_johnson oprofile Directory traversal vulnerability in utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to overwrite arbitrary files via a .. (dot dot) in the --save argument, related to the --ses… CWE-22
Path Traversal
CVE-2011-2472 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307137 - maynard_johnson oprofile utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to gain privileges via shell metacharacters in the (1) --vmlinux, (2) --session-dir, or (3) --xen argument, related to the daemon… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-2471 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307138 - google chrome The DOM implementation in Google Chrome before 12.0.742.91 allows remote attackers to bypass the Same Origin Policy via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2011-2342 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307139 - google chrome Google V8, as used in Google Chrome before 12.0.742.91, allows remote attackers to bypass the Same Origin Policy via unspecified vectors. CWE-20
 Improper Input Validation 
CVE-2011-2332 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307140 - anymacro anymacro_mail_system Directory traversal vulnerability in the web interface in AnyMacro Mail System G4X allows remote attackers to read arbitrary files via directory traversal sequences in a request. CWE-22
Path Traversal
CVE-2011-2468 2024-11-21 10:28 2011-06-9 Show GitHub Exploit DB Packet Storm