Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5171 9 緊急
Network
Gitroom Postiz GitroomのPostizにおける複数の脆弱性 CWE-345
CWE-434
CWE-79
CVE-2026-40487 2026-04-24 11:41 2026-04-18 Show GitHub Exploit DB Packet Storm
5172 9.8 緊急
Network
FreeScout FreeScout FreeScoutにおける複数の脆弱性 CWE-200
CWE-284
CWE-770
CVE-2026-40498 2026-04-24 11:41 2026-04-21 Show GitHub Exploit DB Packet Storm
5173 6.1 警告
Network
FreeScout FreeScout FreeScoutにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-40565 2026-04-24 11:41 2026-04-21 Show GitHub Exploit DB Packet Storm
5174 7.1 重要
Network
OpenProject OpenProject OpenProjectにおける複数の脆弱性 CWE-367
CWE-639
CVE-2026-40896 2026-04-24 11:41 2026-04-20 Show GitHub Exploit DB Packet Storm
5175 7.1 重要
Network
WWBN AVideo WWBNのAVideoにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-40926 2026-04-24 11:41 2026-04-21 Show GitHub Exploit DB Packet Storm
5176 9.9 緊急
Network
flowiseai flowise flowiseaiのflowiseにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-40933 2026-04-24 11:41 2026-04-21 Show GitHub Exploit DB Packet Storm
5177 9.8 緊急
Network
protobufjs project protobufjs protobufjs projectのprotobufjsにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-41242 2026-04-24 11:41 2026-04-18 Show GitHub Exploit DB Packet Storm
5178 7.5 重要
Network
Junrar project Junrar Junrar projectのJunrarにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-41245 2026-04-24 11:41 2026-04-20 Show GitHub Exploit DB Packet Storm
5179 7.5 重要
Network
projectdiscovery nuclei ProjectDiscovery, Inc.のNucleiにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-41282 2026-04-24 11:41 2026-04-20 Show GitHub Exploit DB Packet Storm
5180 7.1 重要
Local
オートデスク株式会社 Autodesk Fusion オートデスク株式会社のAutodesk Fusionにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-4344 2026-04-24 11:41 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
231 8.0 HIGH
Adjacent
google android In multiple locations, there is a possible way to bypass user interaction when pairing an LE device due to a logic error. This could lead to remote (proximal/adjacent) escalation of privilege with no… New CWE-693
 Protection Mechanism Failure
CVE-2026-0097 2026-06-3 22:41 2026-06-2 Show GitHub Exploit DB Packet Storm
232 7.8 HIGH
Local
google android In getCallingPackageName of Shared.java, there is a possible way to bypass activity start restrictions due to a confused deputy. This could lead to local escalation of privilege with no additional ex… New CWE-441
Confused Deputy
CVE-2026-0098 2026-06-3 22:40 2026-06-2 Show GitHub Exploit DB Packet Storm
233 7.8 HIGH
Local
google android In onNullBinding of HostEmulationManager.java, there is a possible way to launch an activity from the background due to a logic error in the code. This could lead to local escalation of privilege wit… New CWE-273
 Improper Check for Dropped Privileges
CVE-2026-0099 2026-06-3 22:40 2026-06-2 Show GitHub Exploit DB Packet Storm
234 7.8 HIGH
Local
google android In Load of LoadedArsc.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User… New CWE-122
Heap-based Buffer Overflow
CVE-2026-0100 2026-06-3 22:39 2026-06-2 Show GitHub Exploit DB Packet Storm
235 5.5 MEDIUM
Local
google android In multiple functions of DevicePolicyManagerService.java, there is a possible desync from persistence due to improper input validation. This could lead to local denial of service with no additional e… New CWE-20
 Improper Input Validation 
CVE-2026-28578 2026-06-3 22:35 2026-06-2 Show GitHub Exploit DB Packet Storm
236 7.8 HIGH
Local
google android In multiple functions, there is a possible desync in persistence due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. Use… New CWE-120
Classic Buffer Overflow
CVE-2026-28580 2026-06-3 22:35 2026-06-2 Show GitHub Exploit DB Packet Storm
237 4.0 MEDIUM
Local
google android In fixInitiatingUserIfNecessary of CallIntentProcessor.java, there is a possible way to make an emergency call due to a logic error in the code. This could lead to local with null execution privileg… New CWE-476
 NULL Pointer Dereference
CVE-2026-28581 2026-06-3 22:29 2026-06-2 Show GitHub Exploit DB Packet Storm
238 3.3 LOW
Local
google android In multiple functions of AppOpsService.java, there is a possible missing permission check due to a permissions bypass. This could lead to local information disclosure with no additional execution pri… New CWE-269
 Improper Privilege Management
CVE-2026-28586 2026-06-3 22:26 2026-06-2 Show GitHub Exploit DB Packet Storm
239 8.8 HIGH
Network
- - A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root. New CWE-121
Stack-based Buffer Overflow
CVE-2026-35085 2026-06-3 22:16 2026-06-3 Show GitHub Exploit DB Packet Storm
240 8.8 HIGH
Network
- - A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root. New CWE-121
Stack-based Buffer Overflow
CVE-2026-35084 2026-06-3 22:16 2026-06-3 Show GitHub Exploit DB Packet Storm