Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4981 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows プッシュ通知の特権昇格の脆弱性 CWE-362
CWE-416
CVE-2026-26167 2026-04-27 10:51 2026-04-14 Show GitHub Exploit DB Packet Storm
4982 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
WinSock 用 Windows Ancillary Function Driver の特権の昇格の脆弱性 CWE-362
CWE-416
CVE-2026-26168 2026-04-27 10:51 2026-04-14 Show GitHub Exploit DB Packet Storm
4983 6.1 警告
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows カーネル メモリの情報漏えいの脆弱性 CWE-126
バッファオーバーリード
CVE-2026-26169 2026-04-27 10:51 2026-04-14 Show GitHub Exploit DB Packet Storm
4984 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
PowerShell の特権の昇格の脆弱性 CWE-20
不適切な入力確認
CVE-2026-26170 2026-04-27 10:51 2026-04-14 Show GitHub Exploit DB Packet Storm
4985 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows 10 22h2
Microsoft Windows 10 21h2
Microsoft Windows&…
Windows プッシュ通知の特権昇格の脆弱性 CWE-362
CWE-416
CVE-2026-26172 2026-04-27 10:51 2026-04-14 Show GitHub Exploit DB Packet Storm
4986 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
WinSock 用 Windows Ancillary Function Driver の特権の昇格の脆弱性 CWE-362
CWE-416
CWE-476
CVE-2026-26173 2026-04-27 10:51 2026-04-14 Show GitHub Exploit DB Packet Storm
4987 8.2 重要
Network
FirebirdSQL Firebird FirebirdSQLのFirebirdにおける複数の脆弱性 CWE-119
CWE-787
CVE-2026-27890 2026-04-27 10:51 2026-04-17 Show GitHub Exploit DB Packet Storm
4988 7.5 重要
Network
FirebirdSQL Firebird FirebirdSQLのFirebirdにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-28212 2026-04-27 10:51 2026-04-17 Show GitHub Exploit DB Packet Storm
4989 6.5 警告
Network
FirebirdSQL Firebird FirebirdSQLのFirebirdにおける複数の脆弱性 CWE-190
CWE-835
CVE-2026-28214 2026-04-27 10:51 2026-04-17 Show GitHub Exploit DB Packet Storm
4990 8.2 重要
Network
FirebirdSQL Firebird FirebirdSQLのFirebirdにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-28224 2026-04-27 10:51 2026-04-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
161 4.3 MEDIUM
Network
- - JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 151.0.3. New CWE-843
Type Confusion
CVE-2026-10702 2026-06-4 01:16 2026-06-3 Show GitHub Exploit DB Packet Storm
162 6.3 MEDIUM
Network
- - A vulnerability was identified in wonderwhy-er DesktopCommanderMCP 0.2.37. This affects the function readFileFromUrl of the file src/tools/filesystem.ts of the component read_file. Such manipulation … New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-10690 2026-06-4 01:16 2026-06-3 Show GitHub Exploit DB Packet Storm
163 7.4 HIGH
Network
- - SIP signaling stack in Verizon IMS (unspecified version) implements SIP signaling without IPsec integrity protection (missing Security-Client/Security-Server headers and ESP traffic), which allows an… New - CVE-2026-10629 2026-06-4 01:16 2026-06-3 Show GitHub Exploit DB Packet Storm
164 7.3 HIGH
Network
- - A vulnerability was identified in DedeCMS 5.7.88. The impacted element is the function dede_htmlspecialchars of the file /plus/flink.php. The manipulation of the argument msg leads to sql injection. … New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10607 2026-06-4 01:16 2026-06-3 Show GitHub Exploit DB Packet Storm
165 7.3 HIGH
Network
- - A vulnerability was found in php-censor up to 2.1.6. This affects an unknown function of the file src/Model/Build/GitBuild.php of the component Webhook Endpoint. Performing a manipulation of the argu… New CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-10273 2026-06-4 01:16 2026-06-2 Show GitHub Exploit DB Packet Storm
166 7.3 HIGH
Network
- - A vulnerability has been found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d16d1. The affected element is an unknown function of the file add_user_check… New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10227 2026-06-4 01:16 2026-06-1 Show GitHub Exploit DB Packet Storm
167 7.8 HIGH
Local
google android In multiple locations, there is a possible tapjacking due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interacti… New CWE-269
 Improper Privilege Management
CVE-2026-0009 2026-06-4 01:16 2026-06-2 Show GitHub Exploit DB Packet Storm
168 - - - backpack/crud provides Create, Read, Update & Delete (CRUD) functions for Backpack, a collection of Laravel packages that help users build custom administration panels. Versions prior to 5.0.13, 4.1.… New CWE-79
Cross-site Scripting
CVE-2022-31114 2026-06-4 01:16 2026-06-4 Show GitHub Exploit DB Packet Storm
169 8.6 HIGH
Network
- - Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors running software versions VG4.1.1, VG4.0.3, and lower contain network message handling vulnerabilities that allow netwo… New CWE-924
 Improper Enforcement of Message Integrity During Transmission in a Communication Channel
CVE-2019-25719 2026-06-4 01:16 2026-06-2 Show GitHub Exploit DB Packet Storm
170 5.5 MEDIUM
Local
opentelemetry ebpf_instrumentation OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI's replacement ELF parser trusts section offsets, counts, and string o… New CWE-20
CWE-248
 Improper Input Validation 
 Uncaught Exception
CVE-2026-45676 2026-06-4 01:08 2026-06-3 Show GitHub Exploit DB Packet Storm