Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4861 8.8 重要
Network
Nextcloud
windmill project
windmill
Nextcloud Flow
Nextcloud等の複数ベンダの製品における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-22683 2026-04-27 11:18 2026-04-7 Show GitHub Exploit DB Packet Storm
4862 7.5 重要
Network
XiangShan NEMU XiangShanのNEMUにおける複数の脆弱性 CWE-1287
CWE-131
CVE-2026-29645 2026-04-27 11:18 2026-04-20 Show GitHub Exploit DB Packet Storm
4863 9.8 緊急
Network
XiangShan NEMU XiangShanのNEMUにおける保護メカニズムの不具合に関する脆弱性 CWE-693
保護メカニズムの不具合
CVE-2026-29649 2026-04-27 11:18 2026-04-20 Show GitHub Exploit DB Packet Storm
4864 7.5 重要
Network
Nimiq Nimiq Proof of Stake (core-rs-albatross) NimiqのNimiq Proof of Stake (core-rs-albatross)における複数の脆弱性 CWE-125
CWE-193
CVE-2026-32605 2026-04-27 11:18 2026-04-13 Show GitHub Exploit DB Packet Storm
4865 9.6 緊急
Network
Nimiq Nimiq Proof of Stake (core-rs-albatross) NimiqのNimiq Proof of Stake (core-rs-albatross)における複数の脆弱性 CWE-1284
CWE-190
CWE-20
CWE-345
CVE-2026-33471 2026-04-27 11:18 2026-04-22 Show GitHub Exploit DB Packet Storm
4866 9.8 緊急
Network
PowerDNS PowerDNS Authoritative Server PowerDNSのPowerDNS Authoritative Serverにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-33608 2026-04-27 11:18 2026-04-22 Show GitHub Exploit DB Packet Storm
4867 6.5 警告
Network
PowerDNS PowerDNS Authoritative Server PowerDNSのPowerDNS Authoritative ServerにおけるLDAP インジェクションの脆弱性 CWE-90
LDAP インジェクション
CVE-2026-33609 2026-04-27 11:18 2026-04-22 Show GitHub Exploit DB Packet Storm
4868 7.5 重要
Network
PowerDNS PowerDNS Authoritative Server PowerDNSのPowerDNS Authoritative Serverにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-33610 2026-04-27 11:18 2026-04-22 Show GitHub Exploit DB Packet Storm
4869 5.3 警告
Network
Nimiq Nimiq Proof of Stake (core-rs-albatross) NimiqのNimiq Proof of Stake (core-rs-albatross)における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-34062 2026-04-27 11:18 2026-04-22 Show GitHub Exploit DB Packet Storm
4870 7.5 重要
Network
Nimiq Nimiq Proof of Stake (core-rs-albatross) NimiqのNimiq Proof of Stake (core-rs-albatross)における到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-34063 2026-04-27 11:18 2026-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
361 8.0 HIGH
Network
- - React Router is a router for React. In versions 7.7.0 through 7.13.1, when using React Router's unstable React Server Components (RSC) APIs, there is a potential client-side Cross-Site Scripting (XSS… New CWE-79
Cross-site Scripting
CVE-2026-33245 2026-06-3 05:16 2026-06-3 Show GitHub Exploit DB Packet Storm
362 8.2 HIGH
Network
- - SolarWinds Web Help Desk is found to be affected by a denial-of-service vulnerability, which when exploited, could cause the Web Help Desk server to crash due to insufficient memory. New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-28299 2026-06-3 05:16 2026-06-3 Show GitHub Exploit DB Packet Storm
363 8.8 HIGH
Network
- - The Content Visibility for Divi Builder plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.02 via the 'et_pb_text' shortcode 'cvdb_content_visibility_… New CWE-94
Code Injection
CVE-2026-1829 2026-06-3 05:16 2026-06-3 Show GitHub Exploit DB Packet Storm
364 - - - Incorrect boundary conditions in the Graphics: Text component. This vulnerability was fixed in Firefox 151.0.3. New - CVE-2026-10701 2026-06-3 05:16 2026-06-3 Show GitHub Exploit DB Packet Storm
365 7.3 HIGH
Network
- - A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.11.3. This affects the function resolveAuth of the file internal/http/auth.go of the component Webhook Verification Handl… New CWE-287
CWE-306
Improper Authentication
Missing Authentication for Critical Function
CVE-2026-10617 2026-06-3 05:16 2026-06-3 Show GitHub Exploit DB Packet Storm
366 4.3 MEDIUM
Network
- - A weakness has been identified in nextlevelbuilder GoClaw up to 3.11.3. The impacted element is the function TeamTasksTool.executeComplete of the file internal/tools/team_tasks_lifecycle.go of the co… New CWE-862
CWE-863
 Missing Authorization
 Incorrect Authorization
CVE-2026-10616 2026-06-3 05:16 2026-06-3 Show GitHub Exploit DB Packet Storm
367 5.9 MEDIUM
Network
- - Proxy server in Graph Explorer before 3.0.1 falls back to HTTP when certificate files are missing, which might allow remote threat actors to obtain sensitive information via interception of requests … New CWE-319
Cleartext Transmission of Sensitive Information
CVE-2026-10584 2026-06-3 05:16 2026-06-3 Show GitHub Exploit DB Packet Storm
368 4.0 MEDIUM
Network
- - Dräger Atlan A350 software versions 1.00 through 1.01 contains an improper input handling vulnerability that allows attackers to cause a denial of service by sending specifically crafted non-Medibus-… New CWE-1286
 Improper Validation of Syntactic Correctness of Input
CVE-2021-4479 2026-06-3 05:16 2026-06-3 Show GitHub Exploit DB Packet Storm
369 8.2 HIGH
Local
- - Dräger CC-Vision Basic before 7.5.3 and Dräger CC-Vision E-Cal before 7.2.5.0 contain an out-of-bounds write vulnerability when loading .gdt files. A crafted .gdt file can trigger a buffer overflow d… New CWE-787
 Out-of-bounds Write
CVE-2021-4478 2026-06-3 05:16 2026-06-3 Show GitHub Exploit DB Packet Storm
370 6.5 MEDIUM
Adjacent
- - Dräger Infinity M300 patient worn monitors with software version VG2.x and earlier contain a network-based denial of service vulnerability that allows attackers with access to the hospital or Infinit… New CWE-400
 Uncontrolled Resource Consumption
CVE-2019-25724 2026-06-3 05:16 2026-06-3 Show GitHub Exploit DB Packet Storm