Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3561 8.3 重要
Network
argoproj Argo Workflows Argo Project AuthorsのArgo Workflowsにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-42297 2026-05-18 11:30 2026-05-9 Show GitHub Exploit DB Packet Storm
3562 6.8 警告
Network
pyLoad-ng project pyLoad-ng pyLoad-ng projectのpyLoad-ngにおける複数の脆弱性 CWE-295
CWE-306
CWE-863
CVE-2026-42312 2026-05-18 11:30 2026-05-11 Show GitHub Exploit DB Packet Storm
3563 8.3 重要
Network
pyLoad-ng project pyLoad-ng pyLoad-ng projectのpyLoad-ngにおける複数の脆弱性 CWE-441
CWE-863
CWE-918
CVE-2026-42313 2026-05-18 11:30 2026-05-11 Show GitHub Exploit DB Packet Storm
3564 6.5 警告
Network
pyLoad-ng project pyLoad-ng pyLoad-ng projectのpyLoad-ngにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-42314 2026-05-18 11:30 2026-05-11 Show GitHub Exploit DB Packet Storm
3565 6.5 警告
Network
pyLoad-ng project pyLoad-ng pyLoad-ng projectのpyLoad-ngにおける複数の脆弱性 CWE-22
CWE-36
CVE-2026-42315 2026-05-18 11:30 2026-05-11 Show GitHub Exploit DB Packet Storm
3566 7.5 重要
Network
mongoosejs mongoose mongoosejsのmongooseにおけるインジェクションに関する脆弱性 CWE-74
インジェクション
CVE-2026-42334 2026-05-18 11:30 2026-05-14 Show GitHub Exploit DB Packet Storm
3567 7.5 重要
Network
Getarcane Arcane GetarcaneのArcaneにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-42461 2026-05-18 11:30 2026-05-9 Show GitHub Exploit DB Packet Storm
3568 8.1 重要
Network
FIT2CLOUD SQLBot FIT2CLOUDのSQLBotにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-42463 2026-05-18 11:30 2026-05-13 Show GitHub Exploit DB Packet Storm
3569 7.8 重要
Local
マイクロソフト Microsoft Office マイクロソフトのMicrosoft Officeにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-42831 2026-05-18 11:30 2026-05-12 Show GitHub Exploit DB Packet Storm
3570 5.5 警告
Local
マイクロソフト Microsoft Word
Microsoft Office
Microsoft Excel
マイクロソフトのMicrosoft Excel等の複数製品におけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-42832 2026-05-18 11:30 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307131 - icinga icinga Multiple cross-site scripting (XSS) vulnerabilities in config.c in config.cgi in Icinga before 1.4.1, when escape_html_tags is disabled, allow remote attackers to inject arbitrary web script or HTML … CWE-79
Cross-site Scripting
CVE-2011-2477 2024-11-21 10:28 2011-06-15 Show GitHub Exploit DB Packet Storm
307132 - coppermine-gallery coppermine_photo_gallery Cross-site scripting (XSS) vulnerability in Coppermine Photo Gallery (CPG) before 1.5.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerabil… CWE-79
Cross-site Scripting
CVE-2011-2476 2024-11-21 10:28 2011-06-15 Show GitHub Exploit DB Packet Storm
307133 - sybase onebridge_mobile_data_suite Format string vulnerability in ECTrace.dll in the iMailGateway service in the Internet Mail Gateway in OneBridge Server and DMZ Proxy in Sybase OneBridge Mobile Data Suite 5.5 and 5.6 allows remote a… CWE-134
Use of Externally-Controlled Format String
CVE-2011-2475 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307134 - sybase easerver Directory traversal vulnerability in the HTTP Server in Sybase EAServer 6.3.1 Developer Edition allows remote attackers to read arbitrary files via a /.\../\../\ sequence in a path. CWE-22
Path Traversal
CVE-2011-2474 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307135 - maynard_johnson oprofile The do_dump_data function in utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to create or overwrite arbitrary files via a crafted --session-dir argument in conjunction with a sy… CWE-59
Link Following
CVE-2011-2473 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307136 - maynard_johnson oprofile Directory traversal vulnerability in utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to overwrite arbitrary files via a .. (dot dot) in the --save argument, related to the --ses… CWE-22
Path Traversal
CVE-2011-2472 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307137 - maynard_johnson oprofile utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to gain privileges via shell metacharacters in the (1) --vmlinux, (2) --session-dir, or (3) --xen argument, related to the daemon… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-2471 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307138 - google chrome The DOM implementation in Google Chrome before 12.0.742.91 allows remote attackers to bypass the Same Origin Policy via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2011-2342 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307139 - google chrome Google V8, as used in Google Chrome before 12.0.742.91, allows remote attackers to bypass the Same Origin Policy via unspecified vectors. CWE-20
 Improper Input Validation 
CVE-2011-2332 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307140 - anymacro anymacro_mail_system Directory traversal vulnerability in the web interface in AnyMacro Mail System G4X allows remote attackers to read arbitrary files via directory traversal sequences in a request. CWE-22
Path Traversal
CVE-2011-2468 2024-11-21 10:28 2011-06-9 Show GitHub Exploit DB Packet Storm