Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
661 5.9 警告
Local
libexpat project libexpat libexpat projectのlibexpatにおける解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-50219 2026-06-8 11:45 2026-06-4 Show GitHub Exploit DB Packet Storm
662 5.3 警告
Network
morgan project morgan morgan projectのmorganにおける不適切なログ出力の無効化に関する脆弱性 New CWE-117
不適切なログ出力の無効化
CVE-2026-5078 2026-06-8 11:45 2026-06-3 Show GitHub Exploit DB Packet Storm
663 9.6 緊急
Network
huggingface transformers huggingfaceのtransformersにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 New CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-5241 2026-06-8 11:45 2026-06-3 Show GitHub Exploit DB Packet Storm
664 8.1 重要
Network
Progress Software Corporation Sitefinity Progress Software CorporationのSitefinityにおける入力確認に関する脆弱性 New CWE-20
不適切な入力確認
CVE-2026-7195 2026-06-8 11:45 2026-06-2 Show GitHub Exploit DB Packet Storm
665 9.8 緊急
Network
Progress Software Corporation Sitefinity Progress Software CorporationのSitefinityにおけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-7198 2026-06-8 11:44 2026-06-2 Show GitHub Exploit DB Packet Storm
666 8.8 重要
Network
Progress Software Corporation Sitefinity Progress Software CorporationのSitefinityにおけるユーザ制御の鍵による認証回避に関する脆弱性 New CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-7201 2026-06-8 11:44 2026-06-2 Show GitHub Exploit DB Packet Storm
667 5.4 警告
Network
appsmith appsmith appsmithにおけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-7299 2026-06-8 11:44 2026-06-2 Show GitHub Exploit DB Packet Storm
668 7.5 重要
Network
Progress Software Corporation Sitefinity Progress Software CorporationのSitefinityにおける認証情報の不十分な保護に関する脆弱性 New CWE-522
認証情報の不十分な保護
CVE-2026-7312 2026-06-8 11:44 2026-06-2 Show GitHub Exploit DB Packet Storm
669 4.9 警告
Network
Progress Software Corporation Sitefinity Progress Software CorporationのSitefinityにおける認証情報の不十分な保護に関する脆弱性 New CWE-522
認証情報の不十分な保護
CVE-2026-7313 2026-06-8 11:44 2026-06-2 Show GitHub Exploit DB Packet Storm
670 8.8 重要
Network
SmarterTools Inc. SmarterMail SmarterTools Inc.のSmarterMailにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-7807 2026-06-8 11:44 2026-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
171 - - - Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, all CRUD endpoints for OpenAI Assistants Vector Store have no authentication middlewar… New CWE-862
 Missing Authorization
CVE-2026-46444 2026-06-9 01:16 2026-06-9 Show GitHub Exploit DB Packet Storm
172 - - - Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, when credentials are fetched with a credentialName filter parameter, the encryptedData… New CWE-200
Information Exposure
CVE-2026-46443 2026-06-9 01:16 2026-06-9 Show GitHub Exploit DB Packet Storm
173 - - - Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, POST /api/v1/node-custom-function lacks route-level authorization, allowing any authen… New CWE-94
Code Injection
CVE-2026-46442 2026-06-9 01:16 2026-06-9 Show GitHub Exploit DB Packet Storm
174 7.5 HIGH
Network
- - Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, the checkBasicAuth endpoint validates credentials in plaintext without rate limiting a… New CWE-522
 Insufficiently Protected Credentials
CVE-2026-46440 2026-06-9 01:16 2026-06-9 Show GitHub Exploit DB Packet Storm
175 - - - In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths Vulnerabilities leading to Use-After-Free (UAF) and Nul… New - CVE-2026-46275 2026-06-9 01:16 2026-06-9 Show GitHub Exploit DB Packet Storm
176 - - - In the Linux kernel, the following vulnerability has been resolved: io-wq: check that the predecessor is hashed in io_wq_remove_pending() io_wq_remove_pending() needs to fix up wq->hash_tail[] if t… New - CVE-2026-46274 2026-06-9 01:16 2026-06-9 Show GitHub Exploit DB Packet Storm
177 - - - Buffer Underwrite vulnerability in Apache HTTP Server on crafted regular expressions in the configuration. This issue affects Apache HTTP Server: from 2.4.0 through 2.4.67. Users are recommended to… New CWE-124
Buffer Underflow
CVE-2026-44631 2026-06-9 01:16 2026-06-9 Show GitHub Exploit DB Packet Storm
178 - - - Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in the mod_proxy_ftp module in Apache HTTP Server with an attacker controlled backend FTP server. This issue affects undefined: f… New CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-44186 2026-06-9 01:16 2026-06-9 Show GitHub Exploit DB Packet Storm
179 - - - Buffer Over-read vulnerability in Apache HTTP Server via outbound OCSP requests to an attacker controlled OCSP server This issue affects Apache HTTP Server: from 2.4.0 through 2.4.67. Users are rec… New CWE-126
 Buffer Over-read
CVE-2026-44185 2026-06-9 01:16 2026-06-9 Show GitHub Exploit DB Packet Storm
180 - - - Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user. This issue affects Apache HTT… New CWE-269
 Improper Privilege Management
CVE-2026-44119 2026-06-9 01:16 2026-06-9 Show GitHub Exploit DB Packet Storm