Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4461 9.8 緊急
Network
Kestra Kestra KestraにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-38428 2026-05-11 11:10 2026-05-5 Show GitHub Exploit DB Packet Storm
4462 7.2 重要
Network
Gotenberg, Inc. Gotenberg TheCodingMachineのGotenbergにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-39383 2026-05-11 11:10 2026-05-5 Show GitHub Exploit DB Packet Storm
4463 8.8 重要
Network
Apache Software Foundation Apache NiFi Apache Software FoundationのApache NiFiにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-39816 2026-05-11 11:10 2026-05-8 Show GitHub Exploit DB Packet Storm
4464 8.2 重要
Network
Quarkus Quarkus Quarkusにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-39852 2026-05-11 11:10 2026-05-5 Show GitHub Exploit DB Packet Storm
4465 4.8 警告
Network
Linux Containers Incus Linux ContainersのIncusにおける証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2026-40243 2026-05-11 11:10 2026-05-6 Show GitHub Exploit DB Packet Storm
4466 7.5 重要
Network
Gotenberg, Inc. Gotenberg TheCodingMachineのGotenbergにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-40280 2026-05-11 11:10 2026-05-5 Show GitHub Exploit DB Packet Storm
4467 8.8 重要
Network
Math.js Math.js Math.jsにおける動的に決定されたオブジェクト属性の不適切に制御された変更に関する脆弱性 CWE-915
動的に決定されたオブジェクト属性の不適切に制御された変更
CVE-2026-41139 2026-05-11 11:10 2026-05-7 Show GitHub Exploit DB Packet Storm
4468 8.8 重要
Network
OpenEXR OpenEXR OpenEXRにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-41142 2026-05-11 11:10 2026-05-7 Show GitHub Exploit DB Packet Storm
4469 7.7 重要
Network
Istio Istio Istioにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-41413 2026-05-11 11:09 2026-05-7 Show GitHub Exploit DB Packet Storm
4470 8.1 重要
Network
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAI等の複数製品におけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-41496 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345851 - ddskk
redhat
skk
ddskk
daredevil_skk
ddskk-xemacs
skk
skk (Simple Kana to Kanji conversion program) 12.1 and earlier, and the ddskk package which is based on skk, creates temporary files insecurely, which allows local users to overwrite arbitrary files. NVD-CWE-Other
CVE-2003-0539 2017-10-11 10:29 2003-08-18 Show GitHub Exploit DB Packet Storm
345852 - wietse_venema
conectiva
postfix
linux
The address parser code in Postfix 1.1.12 and earlier allows remote attackers to cause a denial of service (lock) via (1) a malformed envelope address to a local host that would generate a bounce and… NVD-CWE-Other
CVE-2003-0540 2017-10-11 10:29 2003-08-27 Show GitHub Exploit DB Packet Storm
345853 - gnome gtkhtml gtkhtml before 1.1.10, as used in Evolution, allows remote attackers to cause a denial of service (crash) via a malformed message that causes a null pointer dereference. NVD-CWE-Other
CVE-2003-0541 2017-10-11 10:29 2003-09-17 Show GitHub Exploit DB Packet Storm
345854 - redhat up2date up2date 3.0.7 and 3.1.23 does not properly verify RPM GPG signatures, which could allow remote attackers to cause unsigned packages to be installed from the Red Hat Network, if that network is compro… NVD-CWE-Other
CVE-2003-0546 2017-10-11 10:29 2003-08-27 Show GitHub Exploit DB Packet Storm
345855 - gnome
redhat
gdm
kdebase
GDM before 2.4.1.6, when using the "examine session errors" feature, allows local users to read arbitrary files via a symlink attack on the ~/.xsession-errors file. NVD-CWE-Other
CVE-2003-0547 2017-10-11 10:29 2003-08-27 Show GitHub Exploit DB Packet Storm
345856 - gnome
redhat
gdm
kdebase
enterprise_linux
linux_advanced_workstation
The X Display Manager Control Protocol (XDMCP) support for GDM before 2.4.1.6 allows attackers to cause a denial of service (daemon crash) when a chosen host expires, a different issue than CVE-2003-… NVD-CWE-Other
CVE-2003-0548 2017-10-11 10:29 2003-08-27 Show GitHub Exploit DB Packet Storm
345857 - gnome
redhat
gdm
kdebase
enterprise_linux
linux_advanced_workstation
The X Display Manager Control Protocol (XDMCP) support for GDM before 2.4.1.6 allows attackers to cause a denial of service (daemon crash) via a short authorization key name. NVD-CWE-Other
CVE-2003-0549 2017-10-11 10:29 2003-08-27 Show GitHub Exploit DB Packet Storm
345858 - redhat linux The STP protocol, as enabled in Linux 2.4.x, does not provide sufficient security by design, which allows attackers to modify the bridge topology. NVD-CWE-Other
CVE-2003-0550 2017-10-11 10:29 2003-08-27 Show GitHub Exploit DB Packet Storm
345859 - redhat linux The STP protocol implementation in Linux 2.4.x does not properly verify certain lengths, which could allow attackers to cause a denial of service. NVD-CWE-Other
CVE-2003-0551 2017-10-11 10:29 2003-08-27 Show GitHub Exploit DB Packet Storm
345860 - redhat linux Linux 2.4.x allows remote attackers to spoof the bridge Forwarding table via forged packets whose source addresses are the same as the target. NVD-CWE-Other
CVE-2003-0552 2017-10-11 10:29 2003-08-27 Show GitHub Exploit DB Packet Storm