Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
321 7.5 重要
Network
Schneider Electric EcoStruxure Machine Expert - HVAC Schneider Electric のEcoStruxure Machine Expert - HVACにおける重要な情報の平文保存に関する脆弱性 CWE-312
重要な情報の平文保存
CVE-2026-6332 2026-05-29 11:19 2026-05-14 Show GitHub Exploit DB Packet Storm
322 2.7
Network
GTranslate Inc. Gtranslate GTranslate Inc.のGtranslateにおける不変と仮定されるデータの変更に関する脆弱性 CWE-471
不変と仮定されるデータの変更
CVE-2026-8492 2026-05-29 11:19 2026-05-19 Show GitHub Exploit DB Packet Storm
323 5.4 警告
Network
Colorbox Inline Project Colorbox Inline Colorbox Inline ProjectのColorbox Inlineにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-8493 2026-05-29 11:19 2026-05-19 Show GitHub Exploit DB Packet Storm
324 9.8 緊急
Network
Date iCal Project Date iCal Date iCal ProjectのDate iCalにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-8495 2026-05-29 11:19 2026-05-19 Show GitHub Exploit DB Packet Storm
325 7.5 重要
Network
Archive::Tar project Archive::Tar Archive::Tar projectのArchive::Tarにおける過剰なサイズ値のメモリ割り当てに関する脆弱性 CWE-789
過剰なサイズ値のメモリ割り当て
CVE-2026-9538 2026-05-29 11:19 2026-05-26 Show GitHub Exploit DB Packet Storm
326 9.8 緊急
Network
Dolibarr ERP & CRM dolibarr erp/crm Dolibarr ERP & CRMのdolibarr erp/crmにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2018-25357 2026-05-29 11:19 2026-05-23 Show GitHub Exploit DB Packet Storm
327 6.1 警告
Network
Moodle Moodle Moodleにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2022-50943 2026-05-29 11:19 2026-05-10 Show GitHub Exploit DB Packet Storm
328 4.3 警告
Network
WSO2 WSO2 Identity Server
Identity Server as Key Manager
WSO2 Open Banking IAM
WSO2のWSO2 Identity Server等の複数製品におけるリクエストに対するレスポンス内容の違いに起因する情報漏えいに関する脆弱性 CWE-204
リクエストに対するレスポンス内容の違いに起因する情報漏えい
CVE-2024-0391 2026-05-29 11:19 2026-05-11 Show GitHub Exploit DB Packet Storm
329 8.6 重要
Network
WSO2 WSO2 Identity Server WSO2のWSO2 Identity Serverにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2025-10470 2026-05-29 11:19 2026-05-11 Show GitHub Exploit DB Packet Storm
330 7.3 重要
Network
WSO2 WSO2 Identity Server WSO2のWSO2 Identity Serverにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2025-10908 2026-05-29 11:18 2026-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1 7.5 HIGH
Network
oracle database_server Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are affected are 23.4.0-23.26.2. Easily exploitable vulnerability allows unauthenticated attacker with n… Update CWE-400
 Uncontrolled Resource Consumption
CVE-2026-46834 2026-06-4 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm
2 9.9 CRITICAL
Network
linuxfoundation cloudnativepg CloudNativePG is a platform designed to manage PostgreSQL databases within Kubernetes environments. Prior to 1.29.1 and 1.28.3, the CloudNativePG metrics exporter opens its PostgreSQL connection as t… Update CWE-250
CWE-271
CWE-426
 Execution with Unnecessary Privileges
 Privilege Dropping / Lowering Errors
 Untrusted Search Path
CVE-2026-44477 2026-06-4 03:56 2026-05-29 Show GitHub Exploit DB Packet Storm
3 8.0 HIGH
Network
microsoft sharepoint_server Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. New CWE-78
OS Command 
CVE-2026-47294 2026-06-4 03:42 2026-06-2 Show GitHub Exploit DB Packet Storm
4 6.3 MEDIUM
Network
vivotek fd8136_firmware A stack-based buffer overflow in the export_language.cgi binary in VIVOTEK FD8136 firmware FD8136-VVTK-0300a allows authenticated remote attackers to execute arbitrary code as root via a crafted POST… New CWE-121
Stack-based Buffer Overflow
CVE-2026-35717 2026-06-4 03:42 2026-06-2 Show GitHub Exploit DB Packet Storm
5 7.3 HIGH
Network
vivotek fd8136_firmware Buffer Overflow vulnerability in VIVOTEK INC FD8136-VVTK-0300a allows a remote attacker to execute arbitrary code via the set_getparam.cgi component New CWE-121
Stack-based Buffer Overflow
CVE-2026-30649 2026-06-4 03:41 2026-06-3 Show GitHub Exploit DB Packet Storm
6 8.8 HIGH
Network
vivotek fd8136_firmware A post-authentication remote buffer overflow vulnerability exists in the /cgi-bin/admin/eventtask.cgi endpoint of the admin interface of Vivotek FD8136 cameras running firmware version FD8136-VVTK-03… New CWE-120
Classic Buffer Overflow
CVE-2026-30650 2026-06-4 03:41 2026-06-3 Show GitHub Exploit DB Packet Storm
7 8.8 HIGH
Network
vivotek fd8136_firmware A remote buffer overflow vulnerability exists in the /cgi-bin/dido/setdo.cgi endpoint of the admin interface of Vivotek FD8136 cameras running firmware version FD8136-VVTK-0300a. This flaw allows an … New CWE-120
Classic Buffer Overflow
CVE-2026-30652 2026-06-4 03:40 2026-06-3 Show GitHub Exploit DB Packet Storm
8 6.3 MEDIUM
Network
vivotek fd8136_firmware A stack-based buffer overflow in the motion_privacy.cgi binary in VIVOTEK FD8136 firmware FD8136-VVTK-0300a allows authenticated remote attackers to execute arbitrary code as root via an oversized n1… New CWE-121
Stack-based Buffer Overflow
CVE-2026-35716 2026-06-4 03:40 2026-06-3 Show GitHub Exploit DB Packet Storm
9 6.5 MEDIUM
Network
vivotek fd8136_firmware A path traversal vulnerability in the /admin/downloadMedias.cgi endpoint of VIVOTEK INC FD8136-VVTK firmware 0300a allows authenticated attackers to read any file on the device via sending a crafted … New CWE-22
Path Traversal
CVE-2026-35718 2026-06-4 03:39 2026-06-3 Show GitHub Exploit DB Packet Storm
10 9.9 CRITICAL
Network
oracle rest_data_services Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerability allows low privileged attacker with network acc… Update CWE-400
CWE-284
 Uncontrolled Resource Consumption
Improper Access Control
CVE-2026-46775 2026-06-4 03:35 2026-05-29 Show GitHub Exploit DB Packet Storm