Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3261 8.1 重要
Network
Weblate Weblate Weblateにおける複数の脆弱性 CWE-20
CWE-918
CVE-2026-41654 2026-05-13 10:24 2026-05-7 Show GitHub Exploit DB Packet Storm
3262 6.1 警告
Network
LangGenius Dify LangGeniusのDifyにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-42138 2026-05-13 10:24 2026-05-4 Show GitHub Exploit DB Packet Storm
3263 7.5 重要
Network
Prometheus Prometheus Prometheusにおける複数の脆弱性 CWE-200
CWE-312
CVE-2026-42151 2026-05-13 10:24 2026-05-4 Show GitHub Exploit DB Packet Storm
3264 7.5 重要
Network
Prometheus Prometheus Prometheusにおける複数の脆弱性 CWE-400
CWE-789
CVE-2026-42154 2026-05-13 10:24 2026-05-4 Show GitHub Exploit DB Packet Storm
3265 8.8 重要
Network
gitpython project gitpython gitpython projectのgitpythonにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-42215 2026-05-13 10:24 2026-05-7 Show GitHub Exploit DB Packet Storm
3266 7.5 重要
Network
osrg GoBGP osrgのGoBGPにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-42285 2026-05-13 10:24 2026-05-7 Show GitHub Exploit DB Packet Storm
3267 9.6 緊急
Network
argoproj argo cd Argo Project AuthorsのArgo CDにおける複数の脆弱性 CWE-200
CWE-212
CVE-2026-42880 2026-05-13 10:24 2026-05-7 Show GitHub Exploit DB Packet Storm
3268 7.5 重要
Network
Linux Linux Kernel LinuxのLinux KernelにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-43099 2026-05-13 10:24 2026-05-6 Show GitHub Exploit DB Packet Storm
3269 5.5 警告
Local
Linux Linux Kernel LinuxのLinux KernelにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-43100 2026-05-13 10:24 2026-05-6 Show GitHub Exploit DB Packet Storm
3270 7.5 重要
Network
Linux Linux Kernel LinuxのLinux KernelにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-43101 2026-05-13 10:24 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306891 - gnu glibc Integer overflow in posix/fnmatch.c in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows context-dependent attackers to cause a denial of service (application crash) via a long UTF8 stri… CWE-189
Numeric Errors
CVE-2011-1659 2024-11-21 10:26 2011-04-9 Show GitHub Exploit DB Packet Storm
306892 - gnu glibc ld.so in the GNU C Library (aka glibc or libc6) 2.13 and earlier expands the $ORIGIN dynamic string token when RPATH is composed entirely of this token, which might allow local users to gain privileg… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-1658 2024-11-21 10:26 2011-04-9 Show GitHub Exploit DB Packet Storm
306893 - roundcube webmail steps/utils/modcss.inc in Roundcube Webmail before 0.5.1 does not properly verify that a request is an expected request for an external Cascading Style Sheets (CSS) stylesheet, which allows remote au… CWE-20
 Improper Input Validation 
CVE-2011-1492 2024-11-21 10:26 2011-04-9 Show GitHub Exploit DB Packet Storm
306894 - roundcube webmail The login form in Roundcube Webmail before 0.5.1 does not properly handle a correctly authenticated but unintended login attempt, which makes it easier for remote authenticated users to obtain sensit… CWE-20
 Improper Input Validation 
CVE-2011-1491 2024-11-21 10:26 2011-04-9 Show GitHub Exploit DB Packet Storm
306895 - apache tomcat The HTTP BIO connector in Apache Tomcat 7.0.x before 7.0.12 does not properly handle HTTP pipelining, which allows remote attackers to read responses intended for other clients in opportunistic circu… CWE-20
 Improper Input Validation 
CVE-2011-1475 2024-11-21 10:26 2011-04-9 Show GitHub Exploit DB Packet Storm
306896 - microsoft windows_7 The default configuration of Microsoft Windows 7 immediately prefers a new IPv6 and DHCPv6 service over a currently used IPv4 and DHCPv4 service upon receipt of an IPv6 Router Advertisement (RA), and… CWE-16
Configuration
CVE-2011-1652 2024-11-21 10:26 2011-04-7 Show GitHub Exploit DB Packet Storm
306897 - realnetworks realplayer Heap-based buffer overflow in rvrender.dll in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.2, and RealPlayer SP 1.0 through 1.1.5, allows remote attackers to execute arbitrary co… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-1525 2024-11-21 10:26 2011-04-7 Show GitHub Exploit DB Packet Storm
306898 - douran portal download.aspx in Douran Portal 3.9.7.8 allows remote attackers to obtain source code of arbitrary files under the web root via (1) a trailing ".", (2) a trailing space, or (3) mixed case in the FileN… CWE-200
Information Exposure
CVE-2011-1569 2024-11-21 10:26 2011-04-6 Show GitHub Exploit DB Packet Storm
306899 - 7t igss Format string vulnerability in the logText function in shmemmgr9.dll in IGSSdataServer.exe 9.00.00.11074, and 9.00.00.11063 and earlier, in 7-Technologies Interactive Graphical SCADA System (IGSS) al… CWE-134
Use of Externally-Controlled Format String
CVE-2011-1568 2024-11-21 10:26 2011-04-6 Show GitHub Exploit DB Packet Storm
306900 - 7t igss Multiple stack-based buffer overflows in IGSSdataServer.exe 9.00.00.11063 and earlier in 7-Technologies Interactive Graphical SCADA System (IGSS) allow remote attackers to cause a denial of service (… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-1567 2024-11-21 10:26 2011-04-6 Show GitHub Exploit DB Packet Storm