Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5001 6.5 警告
Network
Roxy-WI Roxy-WI Roxy-WIにおけるパストラバーサルの脆弱性 CWE-24
パストラバーサル (../filedir)
CVE-2026-33431 2026-04-27 10:50 2026-04-20 Show GitHub Exploit DB Packet Storm
5002 9.1 緊急
Network
Roxy-WI Roxy-WI Roxy-WIにおける認証に関する脆弱性 CWE-287
CWE-noinfo
CVE-2026-33432 2026-04-27 10:50 2026-04-20 Show GitHub Exploit DB Packet Storm
5003 7.5 重要
Network
PowerDNS dnsdist PowerDNSのdnsdistにおけるゼロ除算に関する脆弱性 CWE-369
ゼロ除算
CVE-2026-33593 2026-04-27 10:50 2026-04-22 Show GitHub Exploit DB Packet Storm
5004 7.5 重要
Network
PowerDNS dnsdist PowerDNSのdnsdistにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-33594 2026-04-27 10:50 2026-04-22 Show GitHub Exploit DB Packet Storm
5005 7.5 重要
Network
PowerDNS dnsdist PowerDNSのdnsdistにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-33595 2026-04-27 10:50 2026-04-22 Show GitHub Exploit DB Packet Storm
5006 6.5 警告
Adjacent
PowerDNS dnsdist PowerDNSのdnsdistにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-33596 2026-04-27 10:50 2026-04-22 Show GitHub Exploit DB Packet Storm
5007 7.5 重要
Network
PowerDNS dnsdist PowerDNSのdnsdistにおけるエンコードおよびエスケープに関する脆弱性 CWE-116
不適切なエンコード、または出力のエスケープ
CVE-2026-33597 2026-04-27 10:50 2026-04-22 Show GitHub Exploit DB Packet Storm
5008 9.1 緊急
Network
PowerDNS dnsdist PowerDNSのdnsdistにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-33598 2026-04-27 10:50 2026-04-22 Show GitHub Exploit DB Packet Storm
5009 8.1 重要
Adjacent
PowerDNS dnsdist PowerDNSのdnsdistにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-33599 2026-04-27 10:50 2026-04-22 Show GitHub Exploit DB Packet Storm
5010 8.2 重要
Network
PowerDNS dnsdist PowerDNSのdnsdistにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-33602 2026-04-27 10:50 2026-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
531 4.3 MEDIUM
Network
mintplexlabs anythingllm AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. Prior to 1.13.0, an approved mobile device token created in single-user mod… Update CWE-285
CWE-639
Improper Authorization
 Authorization Bypass Through User-Controlled Key
CVE-2026-47713 2026-06-4 01:51 2026-05-29 Show GitHub Exploit DB Packet Storm
532 7.5 HIGH
Network
opentelemetry ebpf_instrumentation OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI replays BPF probe hits into histogram observations by looping once pe… New CWE-400
CWE-834
 Uncontrolled Resource Consumption
 Excessive Iteration
CVE-2026-45680 2026-06-4 01:51 2026-06-3 Show GitHub Exploit DB Packet Storm
533 6.5 MEDIUM
Network
opentelemetry ebpf_instrumentation OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI exports raw Redis error text as the span status message. Because Redi… New CWE-117
CWE-532
 Improper Output Neutralization for Logs
 Inclusion of Sensitive Information in Log Files
CVE-2026-45679 2026-06-4 01:50 2026-06-3 Show GitHub Exploit DB Packet Storm
534 7.5 HIGH
Network
opentelemetry ebpf_instrumentation OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the Postgres protocol parser assumes BIND message payloads contain a vali… New CWE-20
CWE-754
 Improper Input Validation 
 Improper Check for Unusual or Exceptional Conditions
CVE-2026-45678 2026-06-4 01:50 2026-06-3 Show GitHub Exploit DB Packet Storm
535 9.8 CRITICAL
Network
- - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Update - CVE-2026-9642 2026-06-4 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm
536 7.4 HIGH
Network
- - SIP signaling stack in Verizon IMS (unspecified version) implements SIP signaling without IPsec integrity protection (missing Security-Client/Security-Server headers and ESP traffic), which allows an… New - CVE-2026-10629 2026-06-4 01:16 2026-06-3 Show GitHub Exploit DB Packet Storm
537 7.3 HIGH
Network
- - A vulnerability was found in php-censor up to 2.1.6. This affects an unknown function of the file src/Model/Build/GitBuild.php of the component Webhook Endpoint. Performing a manipulation of the argu… New CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-10273 2026-06-4 01:16 2026-06-2 Show GitHub Exploit DB Packet Storm
538 7.3 HIGH
Network
- - A vulnerability has been found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d16d1. The affected element is an unknown function of the file add_user_check… New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10227 2026-06-4 01:16 2026-06-1 Show GitHub Exploit DB Packet Storm
539 7.8 HIGH
Local
google android In multiple locations, there is a possible tapjacking due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interacti… New CWE-269
 Improper Privilege Management
CVE-2026-0009 2026-06-4 01:16 2026-06-2 Show GitHub Exploit DB Packet Storm
540 8.6 HIGH
Network
- - Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors running software versions VG4.1.1, VG4.0.3, and lower contain network message handling vulnerabilities that allow netwo… New CWE-924
 Improper Enforcement of Message Integrity During Transmission in a Communication Channel
CVE-2019-25719 2026-06-4 01:16 2026-06-2 Show GitHub Exploit DB Packet Storm