脆弱性一覧

CVE / GHSA / KEV / OSV を統合監視。タグ・カテゴリで絞り込み可能。

ID タイトル
CVE-2026-53369 linux の脆弱性 (CVE-2026-53369)
linux に 脆弱性 (CVE-2026-53369) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-53368 linux の脆弱性 (CVE-2026-53368)
linux に 脆弱性 (CVE-2026-53368) が存在。データの不正な改ざんを許す可能性があります。
CVE-2026-16210 CVE-2026-16210 に 認証バイパス (CVE-2026-16210)
CVE-2026-16210 に 認証バイパス (CVE-2026-16210) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-16209 CVE-2026-16209 に 認証バイパス (CVE-2026-16209)
CVE-2026-16209 に 認証バイパス (CVE-2026-16209) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-16200 c の脆弱性 (CVE-2026-16200)
c に 脆弱性 (CVE-2026-16200) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-10130 CVE-2026-10130 に 認可不備 (CVE-2026-10130)
CVE-2026-10130 に 脆弱性 (CVE-2026-10130) が存在。機密情報が外部に流出する可能性があります。
CVE-2026-16154 sqli の脆弱性 (CVE-2026-16154)
sqli に 脆弱性 (CVE-2026-16154) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-16152 sqli の脆弱性 (CVE-2026-16152)
sqli に 脆弱性 (CVE-2026-16152) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-53994 dos の脆弱性 (CVE-2026-53994)
dos に 脆弱性 (CVE-2026-53994) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-16128 c に SSRF (サーバー側リクエスト偽造) (CVE-2026-16128)
c に SSRF (CVE-2026-16128) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-16126 c の脆弱性 (CVE-2026-16126)
c に 脆弱性 (CVE-2026-16126) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-16127 c に SSRF (サーバー側リクエスト偽造) (CVE-2026-16127)
c に SSRF (CVE-2026-16127) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-16125 c に SSRF (サーバー側リクエスト偽造) (CVE-2026-16125)
c に SSRF (CVE-2026-16125) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-9323 The urwid web display backend (urwid/display/web.py) generates web session identifiers (urwid_id)...
The urwid web display backend (urwid/display/web.py) generates web session identifiers (urwid_id)...
CVE-2026-11826 OpenPLC_v3 contains a heap-based buffer overflow in the getData() function in webserver/core...
OpenPLC_v3 contains a heap-based buffer overflow in the getData() function in webserver/core...
CVE-2025-71398 surrealdb に SSRF (サーバー側リクエスト偽造) (CVE-2025-71398)
surrealdb に SSRF (CVE-2025-71398) が存在。機密情報が外部に流出する可能性があります。
CVE-2025-71390 surrealdb に 認可不備 (CVE-2025-71390)
surrealdb に 脆弱性 (CVE-2025-71390) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2025-71392 privilege-escalation に コマンドインジェクション (CVE-2025-71392)
privilege-escalation に コマンドインジェクション (CVE-2025-71392) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2024-58368 SurrealDB versions before 1.1.0 fail to properly parse the ID, DB, and NS headers in HTTP REST...
SurrealDB versions before 1.1.0 fail to properly parse the ID, DB, and NS headers in HTTP REST...
CVE-2024-58362 SurrealDB before 1.5.5 (and 2.0.0-beta before 2.0.0-beta.3) accepts an arbitrary object in the...
SurrealDB before 1.5.5 (and 2.0.0-beta before 2.0.0-beta.3) accepts an arbitrary object in the...
CVE-2024-58366 SurrealDB before 1.1.1 contains a format string vulnerability in the rquickjs Exception:...
SurrealDB before 1.1.1 contains a format string vulnerability in the rquickjs Exception:...
CVE-2023-54366 SurrealDB before 1.0.1 sets default table permissions to FULL instead of NONE, allowing SELECT,...
SurrealDB before 1.0.1 sets default table permissions to FULL instead of NONE, allowing SELECT,...
CVE-2026-16158 Impact: @fastify/reply-from versions from 8.3.1 up to but not including 12.6.4 build the internal URL cache key by concatenating the destination and source path without a delimiter. Different destinat...
Impact: @fastify/reply-from versions from 8.3.1 up to but not including 12.6.4 build the internal URL cache key by concatenating the destination and source path without a delimiter. Different destination and source pairs can therefore produce the same key while resolving to different upstream URLs....
CVE-2026-9147 uproot dynamically generates Python class source code from ROOT TStreamerInfo records in a file...
uproot dynamically generates Python class source code from ROOT TStreamerInfo records in a file...
CVE-2026-59173 apache の脆弱性 (CVE-2026-59173)
apache に 脆弱性 (CVE-2026-59173) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-15631 Impact: @fastify/http-proxy versions from 9.4.0 up to and including 11.5.0 fail to validate the resolved WebSocket destination path against the configured rewrite prefix. The WebSocket routing path in...
Impact: @fastify/http-proxy versions from 9.4.0 up to and including 11.5.0 fail to validate the resolved WebSocket destination path against the configured rewrite prefix. The WebSocket routing path in WebSocketProxy.findUpstream resolves the destination via the WHATWG URL constructor, which collapse...
CVE-2026-16097 CVE-2026-16097 に バッファオーバーフロー (CVE-2026-16097)
CVE-2026-16097 に 脆弱性 (CVE-2026-16097) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-16096 CVE-2026-16096 に バッファオーバーフロー (CVE-2026-16096)
CVE-2026-16096 に 脆弱性 (CVE-2026-16096) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-16095 CVE-2026-16095 に バッファオーバーフロー (CVE-2026-16095)
CVE-2026-16095 に 脆弱性 (CVE-2026-16095) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-47871 path-traversal に パストラバーサル (CVE-2026-47871)
path-traversal に パストラバーサル (CVE-2026-47871) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。対策: `32.1.2` 以上に更新。
CVE-2026-47868 privilege-escalation に 権限昇格 (CVE-2026-47868)
privilege-escalation に 脆弱性 (CVE-2026-47868) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。対策: `32.1.2` 以上に更新。
CVE-2026-47869 broadcom に コードインジェクション (CVE-2026-47869)
broadcom に コードインジェクション (CVE-2026-47869) が存在。機密情報が外部に流出する可能性があります。対策: `32.1.2` 以上に更新。
CVE-2026-47870 privilege-escalation に 権限昇格 (CVE-2026-47870)
privilege-escalation に 脆弱性 (CVE-2026-47870) が存在。機密情報が外部に流出する可能性があります。対策: `32.1.2` 以上に更新。
CVE-2026-47866 broadcom に 認可不備 (CVE-2026-47866)
broadcom に 脆弱性 (CVE-2026-47866) が存在。機密情報が外部に流出する可能性があります。対策: `32.1.2` 以上に更新。
CVE-2026-16084 CVE-2026-16084 に SSRF (サーバー側リクエスト偽造) (CVE-2026-16084)
CVE-2026-16084 に SSRF (CVE-2026-16084) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-47867 broadcom に コードインジェクション (CVE-2026-47867)
broadcom に コードインジェクション (CVE-2026-47867) が存在。機密情報が外部に流出する可能性があります。対策: `32.1.2` 以上に更新。
CVE-2026-56740 org.jline:jline-remote-telnet の脆弱性 (CVE-2026-56740)
org.jline:jline-remote-telnet に 脆弱性 (CVE-2026-56740) が存在。不正な操作・情報露出のリスクがあります。``HashMap`` 経由で攻撃可能。対策: `4.2.1` 以上に更新。
CVE-2026-56741 org.jline:jline-remote-telnet の脆弱性 (CVE-2026-56741)
org.jline:jline-remote-telnet に 脆弱性 (CVE-2026-56741) が存在。不正な操作・情報露出のリスクがあります。``Telnet`` 経由で攻撃可能。対策: `4.2.1` 以上に更新。
CVE-2026-56171 microsoft の脆弱性 (CVE-2026-56171)
microsoft に 脆弱性 (CVE-2026-56171) が存在。機密情報が外部に流出する可能性があります。
CVE-2026-52584 CVE-2026-52584 の脆弱性 (CVE-2026-52584)
CVE-2026-52584 に 脆弱性 (CVE-2026-52584) が存在。機密情報が外部に流出する可能性があります。
CVE-2026-52203 CVE-2026-52203 に 情報漏洩 (CVE-2026-52203)
CVE-2026-52203 に 脆弱性 (CVE-2026-52203) が存在。機密情報が外部に流出する可能性があります。
CVE-2026-13445 langflow の脆弱性 (CVE-2026-13445)
langflow に 脆弱性 (CVE-2026-13445) が存在。機密情報が外部に流出する可能性があります。
CVE-2026-8056 IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to override component parameters...
IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to override component parameters...
CVE-2026-7755 IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow remote code execution due to...
IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow remote code execution due to...
CVE-2026-7872 IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files...
IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files...
CVE-2026-7754 IBM Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery ...
IBM Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery ...
CVE-2026-7667 IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to create a malicious flow...
IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to create a malicious flow...
CVE-2026-51833 ssrf に SSRF (サーバー側リクエスト偽造) (CVE-2026-51833)
ssrf に SSRF (CVE-2026-51833) が存在。機密情報が外部に流出する可能性があります。
CVE-2026-48373 adobe の脆弱性 (CVE-2026-48373)
adobe に 脆弱性 (CVE-2026-48373) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-16118 c の脆弱性 (CVE-2026-16118)
c に 脆弱性 (CVE-2026-16118) が存在。データの不正な改ざんを許す可能性があります。

🍪 Cookie について

当サイトはログイン状態の保持・言語設定・サービス改善のために Cookie を使用します。詳細は下記リンクをご確認ください。

詳細 →