Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3261 5.7 警告
Network
Kimai project kimai Kimai projectのKimaiにおけるCSV ファイル内の数式要素の中和に関する脆弱性 CWE-1236
CSV ファイル内の数式要素の不適切な中和
CVE-2026-42267 2026-05-15 11:00 2026-05-8 Show GitHub Exploit DB Packet Storm
3262 7.5 重要
Network
The Go Project Go The Go ProjectのGoにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-42499 2026-05-15 11:00 2026-05-7 Show GitHub Exploit DB Packet Storm
3263 7.5 重要
Network
The Go Project Go The Go ProjectのGoにおけるデジタル署名の検証に関する脆弱性 CWE-347
デジタル署名の不適切な検証
CVE-2026-42501 2026-05-15 11:00 2026-05-7 Show GitHub Exploit DB Packet Storm
3264 9.1 緊急
Network
Grav CMS grav Grav CMSのgravにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-42608 2026-05-15 11:00 2026-05-11 Show GitHub Exploit DB Packet Storm
3265 5.4 警告
Network
Open edX openedx Open edXのopenedxにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-42857 2026-05-15 11:00 2026-05-11 Show GitHub Exploit DB Packet Storm
3266 9.9 緊急
Network
Open edX openedx Open edXのopenedxにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-42858 2026-05-15 11:00 2026-05-11 Show GitHub Exploit DB Packet Storm
3267 7.5 重要
Network
マイクロソフト Microsoft Outlook Microsoft Outlook for iOS の改ざんの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-42893 2026-05-15 11:00 2026-05-12 Show GitHub Exploit DB Packet Storm
3268 7.5 重要
Network
マイクロソフト .NET ASP.NET Core のサービス拒否の脆弱性 CWE-835
無限ループ
CVE-2026-42899 2026-05-15 11:00 2026-05-12 Show GitHub Exploit DB Packet Storm
3269 8.6 重要
Network
Linux Linux Kernel LinuxのLinux Kernelにおける初期化されていないリソースの使用に関する脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2026-43139 2026-05-15 11:00 2026-05-6 Show GitHub Exploit DB Packet Storm
3270 5.5 警告
Local
Linux Linux Kernel LinuxのLinux KernelにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-43140 2026-05-15 11:00 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306921 6.5 MEDIUM
Network
google blink The WebKit::WebPluginContainerImpl::handleEvent function in Google Chrome before Blink M11 allows an attacker to cause a denial of service (crash) via the htmlpluginelement.cpp plugin. CWE-400
 Uncontrolled Resource Consumption
CVE-2011-1459 2024-11-21 10:26 2019-11-6 Show GitHub Exploit DB Packet Storm
306922 8.2 HIGH
Network
ikiwiki
debian
ikiwiki
debian_linux
ikiwiki before 3.20110608 allows remote attackers to hijack root's tty and run symlink attacks. CWE-59
Link Following
CVE-2011-1408 2024-11-21 10:26 2019-10-30 Show GitHub Exploit DB Packet Storm
306923 - ibm openpages_grc_platform Unspecified vulnerability in IBM OpenPages GRC Platform 6.1.0.1 before IF4 allows remote attackers to bypass intended access restrictions via unknown vectors. CWE-264
NVD-CWE-noinfo
Permissions, Privileges, and Access Controls
CVE-2011-1381 2024-11-21 10:26 2014-06-28 Show GitHub Exploit DB Packet Storm
306924 - linux-nfs nfs-utils The nfs_addmntent function in support/nfs/nfs_mntent.c in the mount.nsf tool in nfs-utils before 1.2.4 attempts to append to the /etc/mtab file without first checking whether resource limits would in… CWE-20
 Improper Input Validation 
CVE-2011-1749 2024-11-21 10:26 2014-02-27 Show GitHub Exploit DB Packet Storm
306925 - redhat spacewalk
network_satellite
Open redirect vulnerability in Spacewalk 1.6, as used in Red Hat Network (RHN) Satellite, allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in th… CWE-20
 Improper Input Validation 
CVE-2011-1594 2024-11-21 10:26 2014-02-6 Show GitHub Exploit DB Packet Storm
306926 - xen xen The get_free_port function in Xen allows local authenticated DomU users to cause a denial of service or possibly gain privileges via unspecified vectors involving a new event channel port. NVD-CWE-noinfo
CVE-2011-1763 2024-11-21 10:26 2014-01-8 Show GitHub Exploit DB Packet Storm
306927 - redhat
hp
jboss_enterprise_application_platform
jboss_enterprise_portal_platform
jboss_enterprise_soa_platform
jboss_communications_platform
jboss_enterprise_brms_platform
jboss_enterprise_web_p…
wsf/common/DOMUtils.java in JBossWS Native in Red Hat JBoss Enterprise Application Platform 4.2.0.CP09, 4.3, and 5.1.1; JBoss Enterprise Portal Platform 4.3.CP06 and 5.1.1; JBoss Enterprise SOA Platf… NVD-CWE-noinfo
CVE-2011-1483 2024-11-21 10:26 2013-07-29 Show GitHub Exploit DB Packet Storm
306928 - linux
suse
linux_kernel
suse_linux_enterprise_server
The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS … CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-1585 2024-11-21 10:26 2013-06-8 Show GitHub Exploit DB Packet Storm
306929 - google android The PowerVR SGX driver in Android before 2.3.6 allows attackers to gain root privileges via an application that triggers kernel memory corruption using crafted user data to the pvrsrvkm device. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-1352 2024-11-21 10:26 2013-02-6 Show GitHub Exploit DB Packet Storm
306930 - google android The PowerVR SGX driver in Android before 2.3.6 allows attackers to obtain potentially sensitive information from kernel stack memory via an application that uses a crafted length parameter in a reque… CWE-200
Information Exposure
CVE-2011-1350 2024-11-21 10:26 2013-02-6 Show GitHub Exploit DB Packet Storm