|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 18, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 6361 | 7.5 |
重要
Network |
RansomLook | RansomLook | RansomLookにおける情報漏えいに関する脆弱性 |
CWE-200
情報漏えい |
CVE-2026-40584 | 2026-04-30 12:13 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 6362 | 5.6 |
警告
Local |
Home Assistant Ecosystem | Home Assistant Command-line Interface (hass-cli) | Home Assistant EcosystemのHome Assistant Command-line Interface (hass-cli)における複数の脆弱性 |
CWE-1336 CWE-94 |
CVE-2026-40602 | 2026-04-30 12:13 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 6363 | 5.5 |
警告
Local |
Dayuan Jiang (DayuanJiang) | Next AI Draw.io | Dayuan Jiang (DayuanJiang)のNext AI Draw.ioにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 |
CWE-770
制限またはスロットリング無しのリソースの割り当て |
CVE-2026-40608 | 2026-04-30 12:12 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 6364 | 8.1 |
重要
Network |
Zcash Foundation |
Zebra-consensus Zebrad |
Zcash FoundationのZebra-consensus等の複数製品における誤った要素を使用した比較に関する脆弱性 |
CWE-1025
誤った要素を使用した比較 |
CVE-2026-40880 | 2026-04-30 12:12 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 6365 | 7.5 |
重要
Network |
Zcash Foundation |
zebra-network Zebrad |
Zcash Foundationのzebra-network等の複数製品における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 |
CWE-770
制限またはスロットリング無しのリソースの割り当て |
CVE-2026-40881 | 2026-04-30 12:12 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 6366 | 6.5 |
警告
Network |
Frappe | Frappe HR | FrappeのFrappe HRにおけるアクセス制御に関する脆弱性 |
CWE-284
不適切なアクセス制御 |
CVE-2026-40888 | 2026-04-30 12:12 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 6367 | 6.5 |
警告
Network |
Frappe | Frappe HR | FrappeのFrappe HRにおけるアクセス制御に関する脆弱性 |
CWE-284
不適切なアクセス制御 |
CVE-2026-40889 | 2026-04-30 12:12 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 6368 | 8.8 |
重要
Network |
Jos de Jong | math.js | Math.jsにおける動的に決定されたオブジェクト属性の不適切に制御された変更に関する脆弱性 |
CWE-915
動的に決定されたオブジェクト属性の不適切に制御された変更 |
CVE-2026-40897 | 2026-04-30 12:12 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 6369 | 8.8 |
重要
Network |
Paperclip | paperclipai | PaperclipのpaperclipaiにおけるOS コマンドインジェクションの脆弱性 |
CWE-78
OSコマンド・インジェクション |
CVE-2026-41208 | 2026-04-30 12:12 | 2026-04-23 | Show | GitHub Exploit DB Packet Storm |
| 6370 | 6.5 |
警告
Network |
Frappe | Frappe HR | FrappeのFrappe HRにおけるSQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2026-41320 | 2026-04-30 12:12 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 18, 2026, 4 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 357361 | - | openbsd | openbsd | Remote attackers can cause a system crash through ipintr() in ipq in OpenBSD. |
NVD-CWE-Other
|
CVE-1999-0485 | 2008-09-9 21:34 | 1999-02-19 | Show | GitHub Exploit DB Packet Storm | |
| 357362 | - | x.org | x11 | An X server's access control is disabled (e.g. through an "xhost +" command) and allows anyone to connect to the server. |
NVD-CWE-Other
|
CVE-1999-0526 | 2008-09-9 21:34 | 1997-07-1 | Show | GitHub Exploit DB Packet Storm | |
| 357363 | - |
netscape university_of_washington |
messaging_server imap |
Arbitrary command execution via IMAP buffer overflow in authenticate command. |
NVD-CWE-Other
|
CVE-1999-0005 | 2008-09-9 21:33 | 1998-07-20 | Show | GitHub Exploit DB Packet Storm | |
| 357364 | - |
cde hp ibm |
cde hp-ux vvos aix |
Unauthorized privileged access or denial of service via dtappgather program in CDE. |
NVD-CWE-Other
|
CVE-1999-0014 | 2008-09-9 21:33 | 1998-01-21 | Show | GitHub Exploit DB Packet Storm | |
| 357365 | - |
cisco gnu microsoft hp netbsd sun |
ios inet winsock hp-ux windows_95 windows_nt netbsd sunos |
Land IP denial of service. |
NVD-CWE-Other
|
CVE-1999-0016 | 2008-09-9 21:33 | 1997-12-1 | Show | GitHub Exploit DB Packet Storm | |
| 357366 | - |
data_general ncr sgi ibm nighthawk sco sun |
dg_ux mp-ras irix aix cx_ux powerux open_desktop openserver unixware sunos |
Delete or create a file via rpc.statd, due to invalid information. |
NVD-CWE-Other
|
CVE-1999-0019 | 2008-09-9 21:33 | 1996-04-24 | Show | GitHub Exploit DB Packet Storm | |
| 357367 | - | muhammad_a._muquit | wwwcount | Arbitrary command execution via buffer overflow in Count.cgi (wwwcount) cgi-bin program. |
NVD-CWE-Other
|
CVE-1999-0021 | 2008-09-9 21:33 | 1997-11-5 | Show | GitHub Exploit DB Packet Storm | |
| 357368 | - |
sgi bsdi freebsd next sun |
irix bsd_os freebsd nextstep sunos |
Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as root via a long -C (classification) command line option. |
NVD-CWE-Other
|
CVE-1999-0032 | 2008-09-9 21:33 | 1996-10-25 | Show | GitHub Exploit DB Packet Storm | |
| 357369 | - | sgi | irix | fsdump command in IRIX allows local users to obtain root access by modifying sensitive files. |
NVD-CWE-Other
|
CVE-1999-0044 | 2008-09-9 21:33 | 1996-12-3 | Show | GitHub Exploit DB Packet Storm | |
| 357370 | - |
eric_allman bsdi caldera |
sendmail bsd_os openlinux |
MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4. |
NVD-CWE-Other
|
CVE-1999-0047 | 2008-09-9 21:33 | 1997-01-28 | Show | GitHub Exploit DB Packet Storm |