Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 12:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3341 5.4 警告
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-44998 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
3342 5.3 警告
Network
OpenClaw OpenClaw OpenClawにおけるデータの信頼性についての不十分な検証に関する脆弱性 CWE-345
データの信頼性についての不十分な検証
CVE-2026-44999 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
3343 5 警告
Network
OpenClaw OpenClaw OpenClawにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-45000 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
3344 7.1 重要
Network
OpenClaw OpenClaw OpenClawにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-45001 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
3345 5.3 警告
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-45002 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
3346 5 警告
Local
OpenClaw OpenClaw OpenClawにおけるフィルタリングの回避に関する脆弱性 CWE-441
フィルタリング回避
CVE-2026-45003 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
3347 7.8 重要
Local
OpenClaw OpenClaw OpenClawにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-45004 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
3348 6 警告
Network
OpenClaw OpenClaw OpenClawにおける有効期限後または解放後のリソースの操作に関する脆弱性 CWE-672
有効期限後または解放後のリソースの操作
CVE-2026-45005 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
3349 8.8 重要
Network
OpenClaw OpenClaw OpenClawにおける不完全なブラックリストに関する脆弱性 CWE-184
不完全なブラックリスト
CVE-2026-45006 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
3350 7.5 重要
Network
protobufjs project protobufjs protobufjs projectのprotobufjsにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-45740 2026-05-15 10:56 2026-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307031 - smartertools smarterstats Multiple SQL injection vulnerabilities in the SmarterTools SmarterStats 6.0 web server allow remote attackers to execute arbitrary SQL commands via certain parameters to (1) Admin/frmSite.aspx, (2) D… CWE-89
SQL Injection
CVE-2011-2149 2024-11-21 10:27 2011-05-21 Show GitHub Exploit DB Packet Storm
307032 - openswan openswan Openswan 2.2.x does not properly restrict permissions for (1) /var/run/starter.pid, related to starter.c in the IPsec starter, and (2) /var/lock/subsys/ipsec, which allows local users to kill arbitra… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-2147 2024-11-21 10:27 2011-05-21 Show GitHub Exploit DB Packet Storm
307033 - tibco iprocess_engine
iprocess_workspace
Session fixation vulnerability in TIBCO iProcess Engine before 11.1.3 and iProcess Workspace before 11.3.1 allows remote attackers to hijack web sessions via unspecified vectors. NVD-CWE-Other
CVE-2011-2021 2024-11-21 10:27 2011-05-21 Show GitHub Exploit DB Packet Storm
307034 - tibco iprocess_engine
iprocess_workspace
Cross-site scripting (XSS) vulnerability in TIBCO iProcess Engine before 11.1.3 and iProcess Workspace before 11.3.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vec… CWE-79
Cross-site Scripting
CVE-2011-2020 2024-11-21 10:27 2011-05-21 Show GitHub Exploit DB Packet Storm
307035 - smartertools smarterstats Admin/frmSite.aspx in the SmarterTools SmarterStats 6.0 web server allows remote attackers to execute arbitrary commands via vectors involving a leading and trailing & (ampersand) character, and (1) … CWE-78
OS Command 
CVE-2011-2148 2024-11-21 10:27 2011-05-21 Show GitHub Exploit DB Packet Storm
307036 - twiki twiki Multiple cross-site scripting (XSS) vulnerabilities in TemplateLogin.pm in TWiki before 5.0.2 allow remote attackers to inject arbitrary web script or HTML via the origurl parameter to a (1) view scr… CWE-79
Cross-site Scripting
CVE-2011-1838 2024-11-21 10:27 2011-05-21 Show GitHub Exploit DB Packet Storm
307037 - keepalived keepalived The pidfile_write function in core/pidfile.c in keepalived 1.2.2 and earlier uses 0666 permissions for the (1) keepalived.pid, (2) checkers.pid, and (3) vrrp.pid files in /var/run/, which allows loca… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-1784 2024-11-21 10:27 2011-05-21 Show GitHub Exploit DB Packet Storm
307038 - ibm datacap_taskmaster_capture The eDocument Conversion Actions implementation in IBM Datacap Taskmaster Capture 8.0.1 FP1 and earlier allows remote attackers to cause a denial of service (batch abort) via a long subject line in a… CWE-399
 Resource Management Errors
CVE-2011-2144 2024-11-21 10:27 2011-05-17 Show GitHub Exploit DB Packet Storm
307039 - ibm datacap_taskmaster_capture IBM Datacap Taskmaster Capture 8.0.1 before FP1, when Windows Authentication is enabled, allows remote attackers to obtain login access by using an incorrect password in conjunction with an account n… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-2143 2024-11-21 10:27 2011-05-17 Show GitHub Exploit DB Packet Storm
307040 - ibm datacap_taskmaster_capture The Web Client Service in IBM Datacap Taskmaster Capture 8.0.1 before FP1 requires a cleartext password, which has unspecified impact and attack vectors. CWE-310
Cryptographic Issues
CVE-2011-2142 2024-11-21 10:27 2011-05-17 Show GitHub Exploit DB Packet Storm