Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5041 7.5 重要
Network
Nimiq Nimiq Proof of Stake (core-rs-albatross) NimiqのNimiq Proof of Stake (core-rs-albatross)における複数の脆弱性 CWE-252
CWE-755
CVE-2026-34065 2026-04-27 11:18 2026-04-22 Show GitHub Exploit DB Packet Storm
5042 5.3 警告
Network
Nimiq Nimiq Proof of Stake (core-rs-albatross) NimiqのNimiq Proof of Stake (core-rs-albatross)における複数の脆弱性 CWE-20
CWE-617
CWE-754
CVE-2026-34066 2026-04-27 11:18 2026-04-22 Show GitHub Exploit DB Packet Storm
5043 6.5 警告
Network
Nimiq Nimiq Proof of Stake (core-rs-albatross) NimiqのNimiq Proof of Stake (core-rs-albatross)における到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-34067 2026-04-27 11:18 2026-04-22 Show GitHub Exploit DB Packet Storm
5044 6.8 警告
Network
Nimiq Nimiq Proof of Stake (core-rs-albatross) NimiqのNimiq Proof of Stake (core-rs-albatross)におけるデジタル署名の検証に関する脆弱性 CWE-347
デジタル署名の不適切な検証
CVE-2026-34068 2026-04-27 11:18 2026-04-22 Show GitHub Exploit DB Packet Storm
5045 5.3 警告
Network
Nimiq Nimiq Proof of Stake (core-rs-albatross) NimiqのNimiq Proof of Stake (core-rs-albatross)における到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-34069 2026-04-27 11:18 2026-04-14 Show GitHub Exploit DB Packet Storm
5046 5.9 警告
Network
leancrypto leancrypto leancryptoにおける数値型間の変換の誤りに関する脆弱性 CWE-681
数値型間の変換の誤り
CVE-2026-34610 2026-04-27 11:18 2026-04-2 Show GitHub Exploit DB Packet Storm
5047 7.1 重要
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-35341 2026-04-27 11:18 2026-04-22 Show GitHub Exploit DB Packet Storm
5048 5.5 警告
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおけるキャッチされない例外に関する脆弱性 CWE-248
キャッチされない例外
CVE-2026-35348 2026-04-27 11:17 2026-04-22 Show GitHub Exploit DB Packet Storm
5049 6.6 警告
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおけるパーミッションの不適切な保持に関する脆弱性 CWE-281
パーミッションの不適切な保持
CVE-2026-35350 2026-04-27 11:17 2026-04-22 Show GitHub Exploit DB Packet Storm
5050 7 重要
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-35352 2026-04-27 11:17 2026-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1071 6.4 MEDIUM
Network
- - WordPress Popup Builder 3.49 contains a persistent cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by breaking out of option tags in the post_title … New CWE-79
Cross-site Scripting
CVE-2019-25744 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1072 8.2 HIGH
Network
- - WordPress Plugin Google Review Slider 6.1 contains a time-based blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through th… New CWE-89
SQL Injection
CVE-2019-25745 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1073 7.3 HIGH
Network
- - A vulnerability was detected in SourceCodester Pizzafy E-Commerce System 1.0. Affected by this vulnerability is the function Login of the file /admin/admin_class_novo.php of the component Administrat… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10704 2026-06-4 23:58 2026-06-3 Show GitHub Exploit DB Packet Storm
1074 7.3 HIGH
Network
- - A vulnerability was identified in DedeCMS 5.7.88. The impacted element is the function dede_htmlspecialchars of the file /plus/flink.php. The manipulation of the argument msg leads to sql injection. … CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10607 2026-06-4 23:56 2026-06-3 Show GitHub Exploit DB Packet Storm
1075 7.3 HIGH
Network
- - A security flaw has been discovered in DedeCMS 5.7.88. This affects the function RemoveXSS of the file /plus/carbuyaction.php. The manipulation of the argument postname/des results in sql injection. … CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10608 2026-06-4 23:56 2026-06-3 Show GitHub Exploit DB Packet Storm
1076 4.3 MEDIUM
Network
- - A weakness has been identified in nextlevelbuilder GoClaw up to 3.11.3. The impacted element is the function TeamTasksTool.executeComplete of the file internal/tools/team_tasks_lifecycle.go of the co… CWE-862
CWE-863
 Missing Authorization
 Incorrect Authorization
CVE-2026-10616 2026-06-4 23:56 2026-06-3 Show GitHub Exploit DB Packet Storm
1077 7.3 HIGH
Network
- - A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.11.3. This affects the function resolveAuth of the file internal/http/auth.go of the component Webhook Verification Handl… CWE-287
CWE-306
Improper Authentication
Missing Authentication for Critical Function
CVE-2026-10617 2026-06-4 23:56 2026-06-3 Show GitHub Exploit DB Packet Storm
1078 4.3 MEDIUM
Network
- - A vulnerability has been found in ahujasid blender-mcp up to 7636d13bded82eca58eb93c3f4cd8708dfdfbe8b. Impacted is the function Open of the file src/blender_mcp/server.py. The manipulation of the arg… CWE-74
CWE-707
Injection
 Improper Enforcement of Message or Data Structure
CVE-2026-10661 2026-06-4 23:56 2026-06-3 Show GitHub Exploit DB Packet Storm
1079 6.3 MEDIUM
Network
- - A vulnerability was found in ahujasid blender-mcp up to 7636d13bded82eca58eb93c3f4cd8708dfdfbe8b. The affected element is the function requests.get of the file src/blender_mcp/server.py of the compon… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-10662 2026-06-4 23:56 2026-06-3 Show GitHub Exploit DB Packet Storm
1080 5.5 MEDIUM
Network
- - A vulnerability was determined in ahujasid blender-mcp up to 7636d13bded82eca58eb93c3f4cd8708dfdfbe8b. The impacted element is the function execute_blender_code of the file /src/blender_mcp/server.py… CWE-74
CWE-94
Injection
Code Injection
CVE-2026-10688 2026-06-4 23:56 2026-06-3 Show GitHub Exploit DB Packet Storm