Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5481 10 緊急
Network
traefik traefik traefikにおける複数の脆弱性 CWE-290
CWE-306
CVE-2026-39858 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
5482 7.2 重要
Network
Progress Software Corporation ECS Connection Manager
loadmaster
Connection Manager for ObjectScale
Progress Software CorporationのConnection Manager for ObjectScale等の複数製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-4048 2026-05-7 12:05 2026-04-20 Show GitHub Exploit DB Packet Storm
5483 7.8 重要
Local
radare radare2 radareのradare2におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-40499 2026-05-7 12:05 2026-04-15 Show GitHub Exploit DB Packet Storm
5484 7.3 重要
Network
Apache Software Foundation HttpClient Apache Software FoundationのHttpClientにおける認証の重要なステップの欠如に関する脆弱性 CWE-304
認証の重要なステップの欠如
CVE-2026-40542 2026-05-7 12:05 2026-04-22 Show GitHub Exploit DB Packet Storm
5485 9.1 緊急
Network
goshs goshs goshsにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-40903 2026-05-7 12:05 2026-04-21 Show GitHub Exploit DB Packet Storm
5486 8.2 重要
Network
traefik traefik traefikにおける誤って解決された名前や参照の使用に関する脆弱性 CWE-706
誤って解決された名前や参照の使用
CVE-2026-40912 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
5487 5.9 警告
Network
Apache Software Foundation Apache Airflow Apache Software FoundationのApache Airflowにおける証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2026-41016 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
5488 6.4 警告
Network
traefik traefik traefikにおける複数の脆弱性 CWE-653
CWE-863
CVE-2026-41174 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
5489 3.7
Network
traefik traefik traefikにおけるタイミングの違いに起因する情報漏えいに関する脆弱性 CWE-208
タイミングの違いに起因する情報漏えい
CVE-2026-41263 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
5490 8.1 重要
Network
OpenClaw OpenClaw OpenClawにおける不変と仮定される Web パラメータの外部制御に関する脆弱性 CWE-472
不変と仮定される Web パラメータの外部制御
CVE-2026-41353 2026-05-7 12:05 2026-04-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1941 7.5 HIGH
Network
- - Shenzhen Tenda Technology Co., Ltd Tenda US_W3V1.0BR v1.0.0.3 was discovered to contain a stack overflow in the Go parameter of the ask_to_reboot function. This vulnerability allows attackers to caus… CWE-121
Stack-based Buffer Overflow
CVE-2026-36770 2026-06-10 05:16 2026-06-10 Show GitHub Exploit DB Packet Storm
1942 7.2 HIGH
Network
- - A flaw was found in Keycloak. A limited administrator can exploit an improper access control vulnerability in the POST /admin/realms/{realm}/partialImport endpoint. This allows them to bypass Fine-Gr… CWE-863
 Incorrect Authorization
CVE-2026-11577 2026-06-10 05:16 2026-06-8 Show GitHub Exploit DB Packet Storm
1943 9.8 CRITICAL
Network
- - Shenzhen Kangda Xin Intelligent Network Technology Company's router, model DR300, version 2.1.2.121, contains hardcoded login credentials and has telnet enabled by default on WAN and LAN interfaces. … - CVE-2026-10045 2026-06-10 05:16 2026-06-10 Show GitHub Exploit DB Packet Storm
1944 6.2 MEDIUM
Local
- - An issue was discovered in Malwarebytes 4.x and 5.x (and Nebula 2020-10-21 and later). A large number of Firefox preference files can cause the parser to ignore other browser configuration files, lea… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2023-43686 2026-06-10 05:16 2026-06-10 Show GitHub Exploit DB Packet Storm
1945 8.2 HIGH
Local
- - The utility functions used by Malwarebytes EDR 1.0.11 on Linux for calculating a cryptographic hash of data bytes truncate the hashed data if it exceeds 4GB. This leads to an integer wrap-around if t… CWE-190
 Integer Overflow or Wraparound
CVE-2023-29146 2026-06-10 05:16 2026-06-10 Show GitHub Exploit DB Packet Storm
1946 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: AppArmor: Allow apparmor to handle unaligned dfa tables The dfa tables can originate from kernel or userspace and 8-byte alignmen… NVD-CWE-noinfo
CVE-2026-46254 2026-06-10 05:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1947 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-edma: don't explicitly disable clocks in .remove() The clocks in fsl_edma_engine::muxclk are allocated and enabled… NVD-CWE-noinfo
CVE-2026-46255 2026-06-10 05:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1948 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: NFS/localio: prevent direct reclaim recursion into NFS via nfs_writepages LOCALIO is an NFS loopback mount optimization that avoi… CWE-667
 Improper Locking
CVE-2026-46256 2026-06-10 05:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1949 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: clocksource/drivers/timer-sp804: Fix an Oops when read_current_timer is called on ARM32 platforms where the SP804 is not registere… CWE-908
 Use of Uninitialized Resource
CVE-2026-46257 2026-06-10 05:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1950 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: gpio: cdev: Avoid NULL dereference in linehandle_create() In linehandle_create(), there is a statement like this: retain_and_nu… CWE-476
 NULL Pointer Dereference
CVE-2026-46258 2026-06-10 05:09 2026-06-4 Show GitHub Exploit DB Packet Storm