Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
371 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-43084 2026-06-8 11:46 2026-05-6 Show GitHub Exploit DB Packet Storm
372 5.5 警告
Local
Zeit, Inc. Vercel CLI Vercel, Inc. (旧 Zeit, Inc.)のVercel CLIにおける複数の脆弱性 New CWE-200
CWE-532
CVE-2026-44479 2026-06-8 11:46 2026-05-13 Show GitHub Exploit DB Packet Storm
373 5.3 警告
Network
Open Quantum Safe liboqs Open Quantum Safeのliboqsにおける複数の脆弱性 New CWE-125
CWE-20
CVE-2026-44518 2026-06-8 11:46 2026-05-29 Show GitHub Exploit DB Packet Storm
374 5.4 警告
Adjacent
MacGregor Interschalt VDR G4e Firmware MacGregorのInterschalt VDR G4e Firmwareにおける強度が不十分なパスワードハッシュの使用に関する脆弱性 New CWE-916
強度が不十分なパスワードハッシュの使用
CVE-2026-44611 2026-06-8 11:46 2026-05-29 Show GitHub Exploit DB Packet Storm
375 6.5 警告
Network
librechat librechat LibreChatにおける送信データへの重要な情報の挿入に関する脆弱性 New CWE-201
CWE-noinfo
CVE-2026-44653 2026-06-8 11:46 2026-06-2 Show GitHub Exploit DB Packet Storm
376 8.1 重要
Network
librechat librechat LibreChatにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-44654 2026-06-8 11:46 2026-06-2 Show GitHub Exploit DB Packet Storm
377 8.1 重要
Network
Broadcom RabbitMQ Server BroadcomのRabbitMQ Serverにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-44838 2026-06-8 11:46 2026-05-27 Show GitHub Exploit DB Packet Storm
378 4.8 警告
Network
Broadcom RabbitMQ Server BroadcomのRabbitMQ Serverにおけるクロスサイトスクリプティングの脆弱性 New CWE-80
クロスサイトスクリプティング (Basic XSS)
CVE-2026-44839 2026-06-8 11:46 2026-05-27 Show GitHub Exploit DB Packet Storm
379 4.9 警告
Network
OpenStack OpenStack Ironic OpenStackのOpenStack Ironicにおける領域間での誤ったリソース移動に関する脆弱性 New CWE-669
領域間での誤ったリソース移動
CVE-2026-44917 2026-06-8 11:46 2026-06-4 Show GitHub Exploit DB Packet Storm
380 7.5 重要
Network
go-git project go-git go-git projectのgo-gitにおける複数の脆弱性 New CWE-180
CWE-345
CVE-2026-45022 2026-06-8 11:46 2026-05-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1581 5.5 MEDIUM
Local
google android In multiple functions of AccessibilityManagerService.java, there is a possible persistent denial of service due to improper input validation. This could lead to local denial of service with no additi… CWE-20
 Improper Input Validation 
CVE-2026-0018 2026-06-3 03:44 2026-06-2 Show GitHub Exploit DB Packet Storm
1582 7.1 HIGH
Network
ibm engineering_lifecycle_management IBM Engineering Lifecycle Management 7.0.3 Interim Fix 001 through  Interim Fix 021, 7.1.0  Interim Fix 001 through  Interim Fix 009, and 7.2.0 and 7.2.0 Interim Fix 001 is vulnerable to an XML exter… CWE-611
XXE
CVE-2026-3603 2026-06-3 03:44 2026-05-27 Show GitHub Exploit DB Packet Storm
1583 7.5 HIGH
Network
viewcomponent view_component view_component is a framework for building reusable, testable, and encapsulated view components in Ruby on Rails. From 3.0.0 to 4.9.0, the system test entrypoint canonicalizes a user-controlled file … CWE-187
 Partial String Comparison
CVE-2026-44837 2026-06-3 03:43 2026-05-27 Show GitHub Exploit DB Packet Storm
1584 3.3 LOW
Local
google android In updateProvidersWhenServiceRemoved of CredentialManagerService.java, there is a possible way to override settings across users due to a permissions bypass. This could lead to local information disc… CWE-269
 Improper Privilege Management
CVE-2026-0016 2026-06-3 03:41 2026-06-2 Show GitHub Exploit DB Packet Storm
1585 7.5 HIGH
Network
ibm websphere_application_server IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to HTTP request smuggl… CWE-444
HTTP Request Smuggling
CVE-2026-8620 2026-06-3 03:40 2026-05-27 Show GitHub Exploit DB Packet Storm
1586 9.8 CRITICAL
Network
shepherdwind velocity.js Velocity.js is a JavaScript implementation of the Apache Velocity template engine. In 2.1.5 and earlier, a prototype pollution vulnerability was discovered in velocityjs. This issue occurs during the… CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2026-44966 2026-06-3 03:40 2026-05-27 Show GitHub Exploit DB Packet Storm
1587 8.2 HIGH
Network
github enterprise_server A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to send crafted requests to internal services by exploiting insu… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-9312 2026-06-3 03:31 2026-05-27 Show GitHub Exploit DB Packet Storm
1588 7.5 HIGH
Network
osgeo mapserver MapServer is a system for developing web-based GIS applications. From 6.4.0 to before 8.6.3, msSLDParseUserStyle always calls _SLDApplyRuleValues(psRule, psLayer, 1); for any <Rule> carrying <ElseFil… CWE-129
CWE-476
 Improper Validation of Array Index
 NULL Pointer Dereference
CVE-2026-45104 2026-06-3 03:19 2026-05-28 Show GitHub Exploit DB Packet Storm
1589 5.5 MEDIUM
Local
google android In verifySignature of ApkChecksums.java, there is a possible way to cause a crash due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-0069 2026-06-3 03:06 2026-06-2 Show GitHub Exploit DB Packet Storm
1590 6.5 MEDIUM
Adjacent
qualcomm fastconnect_7800_firmware
qca7005_firmware
snapdragon_ar1_gen_1_platform_firmware
wcd9380_firmware
wcd9385_firmware
wsa8830_firmware
wsa8832_firmware
wsa8835_firmware
Information Disclosure when resetting device to factory default settings through powerline interface allows unauthorized access to device configuration. CWE-1230
 Exposure of Sensitive Information Through Metadata
CVE-2025-59601 2026-06-3 03:00 2026-06-2 Show GitHub Exploit DB Packet Storm