|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 13, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 5611 | 6.8 |
警告
Network |
oauth2_proxy project | oauth2_proxy | oauth2_proxy projectのoauth2_proxyにおける不正な認証に関する脆弱性 |
CWE-863
不正な認証 |
CVE-2026-40574 | 2026-04-30 12:28 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 5612 | 9.1 |
緊急
Network |
oauth2_proxy project | oauth2_proxy | oauth2_proxy projectのoauth2_proxyにおけるスプーフィングによる認証回避に関する脆弱性 |
CWE-290
スプーフィングによる認証回避 |
CVE-2026-40575 | 2026-04-30 12:28 | 2026-04-22 | Show | GitHub Exploit DB Packet Storm |
| 5613 | 4.8 |
警告
Network |
pyLoad-ng project | pyLoad-ng | pyLoad-ng projectのpyLoad-ngにおける同一生成元ポリシー違反に関する脆弱性 |
CWE-346
同一生成元ポリシー違反 |
CVE-2026-40594 | 2026-04-30 12:28 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 5614 | 8.1 |
重要
Network |
The Kyverno Authors | Kyverno | The Kyverno AuthorsのKyvernoにおける重要な情報のセキュアでない格納に関する脆弱性 |
CWE-922
重要な情報のセキュアでない格納 |
CVE-2026-40868 | 2026-04-30 12:28 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 5615 | 8.1 |
重要
Network |
goshs | goshs | goshsにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2026-40883 | 2026-04-30 12:28 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 5616 | 9.8 |
緊急
Network |
goshs | goshs | goshsにおける重要な機能に対する認証の欠如に関する脆弱性 |
CWE-306
重要な機能に対する認証の欠如 解説 |
CVE-2026-40884 | 2026-04-30 12:28 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 5617 | 8.8 |
重要
Network |
goshs | goshs | goshsにおける情報漏えいに関する脆弱性 |
CWE-200 CWE-noinfo |
CVE-2026-40885 | 2026-04-30 12:28 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 5618 | 7.5 |
重要
Network |
gomarkdown | markdown | gomarkdownのMarkdownにおける境界外読み取りに関する脆弱性 |
CWE-125
境界外読み取り |
CVE-2026-40890 | 2026-04-30 12:28 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 5619 | 10 |
緊急
Network |
WWBN | AVideo | WWBNのAVideoにおけるコードインジェクションの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2026-40911 | 2026-04-30 12:28 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 5620 | 5.4 |
警告
Network |
Linux Foundation | tekton pipelines | Linux Foundationのtekton pipelinesにおけるパストラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2026-40923 | 2026-04-30 12:27 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 13, 2026, 4:20 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 351701 | - | apple |
darwin_streaming_server quicktime_streaming_server mac_os_x mac_os_x_server |
Apache for Apple Mac OS X 10.2.8 and 10.3.6 allows remote attackers to read files and resource fork content via HTTP requests to certain special file names related to multiple data streams in HFS+, w… |
NVD-CWE-Other
|
CVE-2004-1084 | 2017-07-11 10:30 | 2004-12-2 | Show | GitHub Exploit DB Packet Storm | |
| 351702 | - | apple |
darwin_streaming_server quicktime_streaming_server mac_os_x mac_os_x_server |
Human Interface Toolbox (HIToolBox) for Apple Mac 0S X 10.3.6 allows local users to exit applications via the force-quit key combination, even when the system is running in kiosk mode. |
NVD-CWE-Other
|
CVE-2004-1085 | 2017-07-11 10:30 | 2004-12-2 | Show | GitHub Exploit DB Packet Storm | |
| 351703 | - | apple |
darwin_streaming_server quicktime_streaming_server mac_os_x mac_os_x_server |
Buffer overflow in PSNormalizer for Apple Mac OS X 10.3.6 allows remote attackers to execute arbitrary code via a crafted PostScript input file. |
NVD-CWE-Other
|
CVE-2004-1086 | 2017-07-11 10:30 | 2004-12-2 | Show | GitHub Exploit DB Packet Storm | |
| 351704 | - | apple |
darwin_streaming_server quicktime_streaming_server mac_os_x mac_os_x_server |
Terminal for Apple Mac OS X 10.3.6 may indicate that "Secure Keyboard Entry" is enabled even when it is not, which could result in a false sense of security for the user. |
NVD-CWE-Other
|
CVE-2004-1087 | 2017-07-11 10:30 | 2004-12-2 | Show | GitHub Exploit DB Packet Storm | |
| 351705 | - | apple |
darwin_streaming_server quicktime_streaming_server mac_os_x mac_os_x_server |
Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote attackers to send mail without authentication by replaying authentication information. |
NVD-CWE-Other
|
CVE-2004-1088 | 2017-07-11 10:30 | 2004-12-2 | Show | GitHub Exploit DB Packet Storm | |
| 351706 | - | apple |
darwin_streaming_server quicktime_streaming_server mac_os_x mac_os_x_server |
Unknown vulnerability in Apple Mac OS X 10.3.6 server, when using Kerberos authentication and Cyrus IMAP allows local users to access mailboxes of other users. |
NVD-CWE-Other
|
CVE-2004-1089 | 2017-07-11 10:30 | 2004-12-2 | Show | GitHub Exploit DB Packet Storm | |
| 351707 | - |
midnight_commander debian gentoo redhat suse turbolinux |
midnight_commander debian_linux linux enterprise_linux linux_advanced_workstation suse_linux turbolinux_server turbolinux_workstation |
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service via "a corrupt section header." |
NVD-CWE-Other
|
CVE-2004-1090 | 2017-07-11 10:30 | 2005-04-14 | Show | GitHub Exploit DB Packet Storm | |
| 351708 | - |
midnight_commander debian gentoo redhat suse turbolinux |
midnight_commander debian_linux linux enterprise_linux linux_advanced_workstation suse_linux turbolinux_server turbolinux_workstation |
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service by triggering a null dereference. |
NVD-CWE-Other
|
CVE-2004-1091 | 2017-07-11 10:30 | 2005-04-14 | Show | GitHub Exploit DB Packet Storm | |
| 351709 | - |
midnight_commander debian gentoo redhat suse turbolinux |
midnight_commander debian_linux linux enterprise_linux linux_advanced_workstation suse_linux turbolinux_server turbolinux_workstation |
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service by causing mc to free unallocated memory. |
NVD-CWE-Other
|
CVE-2004-1092 | 2017-07-11 10:30 | 2005-04-14 | Show | GitHub Exploit DB Packet Storm | |
| 351710 | - |
midnight_commander debian gentoo redhat suse turbolinux |
midnight_commander debian_linux linux enterprise_linux linux_advanced_workstation suse_linux turbolinux_server turbolinux_workstation |
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service via "use of already freed memory." |
NVD-CWE-Other
|
CVE-2004-1093 | 2017-07-11 10:30 | 2005-04-14 | Show | GitHub Exploit DB Packet Storm |