|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 21, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 6221 | 5.3 |
警告
Network |
axios project | axios | axios projectのaxiosにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 |
CWE-770
制限またはスロットリング無しのリソースの割り当て |
CVE-2026-42034 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 6222 | 7.4 |
重要
Network |
axios project | axios | axios projectのaxiosにおける複数の脆弱性 |
CWE-113 CWE-1321 |
CVE-2026-42035 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 6223 | 5.3 |
警告
Network |
axios project | axios | axios projectのaxiosにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 |
CWE-770
制限またはスロットリング無しのリソースの割り当て |
CVE-2026-42036 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 6224 | 5.3 |
警告
Network |
axios project | axios | axios projectのaxiosにおけるCRLF インジェクションの脆弱性 |
CWE-93
CRLF インジェクション |
CVE-2026-42037 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 6225 | 7.5 |
重要
Network |
axios project | axios | axios projectのaxiosにおけるサーバサイドのリクエストフォージェリの脆弱性 |
CWE-918
サーバサイドリクエストフォージェリ |
CVE-2026-42038 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 6226 | 7.5 |
重要
Network |
axios project | axios | axios projectのaxiosにおける再帰制御に関する脆弱性 |
CWE-674
不適切な再帰制御 |
CVE-2026-42039 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 6227 | 3.7 |
低
Network |
axios project | axios | axios projectのaxiosにおける複数の脆弱性 |
CWE-116 CWE-626 |
CVE-2026-42040 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 6228 | 6.5 |
警告
Network |
axios project | axios | axios projectのaxiosにおける複数の脆弱性 |
CWE-1321 CWE-287 |
CVE-2026-42041 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 6229 | 5.4 |
警告
Network |
axios project | axios | axios projectのaxiosにおける複数の脆弱性 |
CWE-183 CWE-201 |
CVE-2026-42042 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 6230 | 10 |
緊急
Network |
axios project | axios | axios projectのaxiosにおける複数の脆弱性 |
CWE-183 CWE-441 CWE-918 |
CVE-2026-42043 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 22, 2026, 4 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 349061 | - | secure_elements | class_5_enterprise_vulnerability_management | Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 allows remote attackers to read portions of process memory via a modified size for (1) EM_GET_CE_PARAMETER and (2) EM_SET_CE_PARAMETER mes… |
NVD-CWE-Other
|
CVE-2006-2708 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
| 349062 | - | secure_elements | class_5_enterprise_vulnerability_management | Upgrade to version 2.8.1 |
NVD-CWE-Other
|
CVE-2006-2708 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
| 349063 | - | secure_elements | class_5_enterprise_vulnerability_management | Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 do not validate the source address of a message, which allows remote attackers to (1) execute arbitrary code on a client or (2) forge messages to… |
NVD-CWE-Other
|
CVE-2006-2709 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
| 349064 | - | secure_elements | class_5_enterprise_vulnerability_management | Upgrade to version 2.8.1 |
NVD-CWE-Other
|
CVE-2006-2709 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
| 349065 | - | secure_elements | class_5_enterprise_vulnerability_management | Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 uses the same invariant RSA key for all installations, which allows remote attackers with the key to decrypt communications. |
NVD-CWE-Other
|
CVE-2006-2710 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
| 349066 | - | secure_elements | class_5_enterprise_vulnerability_management | Upgrade to 2.8.1 |
NVD-CWE-Other
|
CVE-2006-2710 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
| 349067 | - | secure_elements | class_5_enterprise_vulnerability_management | Secure Elements Class 5 AVR (aka C5 EVM) 2.8.1 and earlier, and possibly later 2.8.x releases, uses the same initialization vector and key for each message session, which allows remote attackers to o… |
NVD-CWE-Other
|
CVE-2006-2711 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
| 349068 | - | secure_elements | class_5_enterprise_vulnerability_management | Upgrade to 2.8.1 |
NVD-CWE-Other
|
CVE-2006-2711 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
| 349069 | - | secure_elements | class_5_enterprise_vulnerability_management | Secure Elements Class 5 AVR (aka C5 EVM) client and server before 2.8.1 do not verify the integrity of a message digest, which allows remote attackers to modify and replay messages. |
NVD-CWE-Other
|
CVE-2006-2712 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
| 349070 | - | secure_elements | class_5_enterprise_vulnerability_management | Upgrade to version 2.8.1 |
NVD-CWE-Other
|
CVE-2006-2712 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm |