脆弱性一覧

CVE / GHSA / KEV / OSV を統合監視。タグ・カテゴリで絞り込み可能。

フィルタ中: タグ: rce クリア
ID タイトル
CVE-2026-0132 google の脆弱性 (CVE-2026-0132)
google に 脆弱性 (CVE-2026-0132) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-0135 google に 境界外読み取り (CVE-2026-0135)
google に 脆弱性 (CVE-2026-0135) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-0126 google に 境界外書き込み (CVE-2026-0126)
google に 境界外書き込み (CVE-2026-0126) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-53866 OpenClaw: Shell inline-command parsing could miss an allowlist check
OpenClaw: Shell inline-command parsing could miss an allowlist check
CVE-2026-53857 OpenClaw: Zalo allowFrom could bind to mutable display names
OpenClaw: Zalo allowFrom could bind to mutable display names
CVE-2026-53855 OpenClaw: Shell positional parameters could weaken strict inline-eval checks
OpenClaw: Shell positional parameters could weaken strict inline-eval checks
CVE-2026-48519 langflow に コードインジェクション (CVE-2026-48519)
langflow に コードインジェクション (CVE-2026-48519) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。対策: `1.9.2` 以上に更新。
CVE-2024-24909 CVE-2024-24909 に コマンドインジェクション (CVE-2024-24909)
CVE-2024-24909 に コマンドインジェクション (CVE-2024-24909) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-12398 galaxy-ng に OSコマンドインジェクション (CVE-2026-12398)
galaxy-ng に OSコマンドインジェクション (CVE-2026-12398) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-10829 CVE-2026-10829 の脆弱性 (CVE-2026-10829)
CVE-2026-10829 に 脆弱性 (CVE-2026-10829) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-8442 wordpress に パストラバーサル (CVE-2026-8442)
wordpress に パストラバーサル (CVE-2026-8442) が存在。データの不正な改ざんを許す可能性があります。
CVE-2026-6933 wordpress に 危険なファイルアップロード (CVE-2026-6933)
wordpress に 脆弱性 (CVE-2026-6933) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-48853 grpc に 安全でないデシリアライゼーション (CVE-2026-48853)
grpc に 脆弱性 (CVE-2026-48853) が存在。不正な操作・情報露出のリスクがあります。``Enum.map`` 経由で攻撃可能。対策: `1.0.0` 以上に更新。
CVE-2026-48836 Unauthenticated Remote Code Execution (RCE) in Easy Invoice <= 2.1.19 versions.
Unauthenticated Remote Code Execution (RCE) in Easy Invoice <= 2.1.19 versions.
CVE-2026-39465 Editor Remote Code Execution (RCE) in Responsive Slider by MetaSlider <= 3.106.0 versions.
Editor Remote Code Execution (RCE) in Responsive Slider by MetaSlider <= 3.106.0 versions.
CVE-2026-53705 CVE-2026-53705 の脆弱性 (CVE-2026-53705)
CVE-2026-53705 に 脆弱性 (CVE-2026-53705) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-52720 CVE-2026-52720 の脆弱性 (CVE-2026-52720)
CVE-2026-52720 に 脆弱性 (CVE-2026-52720) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-47835 CVE-2026-47835 の脆弱性 (CVE-2026-47835)
CVE-2026-47835 に 脆弱性 (CVE-2026-47835) が存在。機密情報が外部に流出する可能性があります。
CVE-2026-38329 CVE-2026-38329 の脆弱性 (CVE-2026-38329)
CVE-2026-38329 に 脆弱性 (CVE-2026-38329) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。`POST /api/files/{key}` 経由で攻撃可能。
CVE-2026-30120 remotion に コードインジェクション (CVE-2026-30120)
remotion に コードインジェクション (CVE-2026-30120) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。対策: `4.0.410` 以上に更新。
CVE-2018-25436 wordpress に 危険なファイルアップロード (CVE-2018-25436)
wordpress に 脆弱性 (CVE-2018-25436) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-5482 CVE-2026-5482 に 危険なファイルアップロード (CVE-2026-5482)
CVE-2026-5482 に 脆弱性 (CVE-2026-5482) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-53787 path-traversal に 危険なファイルアップロード (CVE-2026-53787)
path-traversal に 脆弱性 (CVE-2026-53787) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-50632 org.apache.cxf:cxf-rt-transports-jms の脆弱性 (CVE-2026-50632)
org.apache.cxf:cxf-rt-transports-jms に 脆弱性 (CVE-2026-50632) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。対策: `4.1.7` 以上に更新。
CVE-2025-27511 org.geoserver.extension:gs-db2 の脆弱性 (CVE-2025-27511)
org.geoserver.extension:gs-db2 に 脆弱性 (CVE-2025-27511) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。対策: `2.27.0` 以上に更新。
CVE-2026-11774 An integer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base)....
An integer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base)....
CVE-2026-48546 CVE-2026-48546 の脆弱性 (CVE-2026-48546)
CVE-2026-48546 に 脆弱性 (CVE-2026-48546) が存在。機密情報が外部に流出する可能性があります。
CVE-2026-5497 vLLM is vulnerable to an Out-of-Memory (OOM) Denial of Service (DoS) attack due to unbounded frame count processing in the `VideoMediaIO.load_base64()` method
vLLM is vulnerable to an Out-of-Memory (OOM) Denial of Service (DoS) attack due to unbounded frame count processing in the `VideoMediaIO.load_base64()` method
CVE-2026-41699 org.springframework.graphql:spring-graphql に 安全でないデシリアライゼーション (CVE-2026-41699)
org.springframework.graphql:spring-graphql に 脆弱性 (CVE-2026-41699) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-10795 wordpress の脆弱性 (CVE-2026-10795)
wordpress に 脆弱性 (CVE-2026-10795) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-50223 apache に コードインジェクション (CVE-2026-50223)
apache に コードインジェクション (CVE-2026-50223) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-2049 CVE-2026-2049 の脆弱性 (CVE-2026-2049)
CVE-2026-2049 に 脆弱性 (CVE-2026-2049) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-46529 c に コマンドインジェクション (CVE-2026-46529)
c に コマンドインジェクション (CVE-2026-46529) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。``g_shell_quote`` 経由で攻撃可能。対策: `1.6.2` 以上に更新。
CVE-2026-20251 deserialization に 安全でないデシリアライゼーション (CVE-2026-20251)
deserialization に 脆弱性 (CVE-2026-20251) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-45558 c の脆弱性 (CVE-2026-45558)
c に 脆弱性 (CVE-2026-45558) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。`POST /api/service/haproxy/` 経由で攻撃可能。
CVE-2026-45556 nginx の脆弱性 (CVE-2026-45556)
nginx に 脆弱性 (CVE-2026-45556) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。`POST /waf/` 経由で攻撃可能。
CVE-2026-52751 deserialization に 安全でないデシリアライゼーション (CVE-2026-52751)
deserialization に 脆弱性 (CVE-2026-52751) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-11815 CVE-2026-11815 に 安全でないデシリアライゼーション (CVE-2026-11815)
CVE-2026-11815 に 脆弱性 (CVE-2026-11815) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-44963 CVE-2026-44963 に 安全でないデシリアライゼーション (CVE-2026-44963)
CVE-2026-44963 に 脆弱性 (CVE-2026-44963) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-48030 pheditor/pheditor に OSコマンドインジェクション (CVE-2026-48030)
pheditor/pheditor に OSコマンドインジェクション (CVE-2026-48030) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。``command`` 経由で攻撃可能。対策: `2.0.4` 以上に更新。
CVE-2026-48306 Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write...
Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write...
CVE-2026-48305 Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write...
Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write...
CVE-2026-47907 Dreamweaver Desktop versions 21.7 and earlier are affected by an Improper Access Control...
Dreamweaver Desktop versions 21.7 and earlier are affected by an Improper Access Control...
CVE-2026-47906 Dreamweaver Desktop versions 21.7 and earlier are affected by a Dependency on Vulnerable Third...
Dreamweaver Desktop versions 21.7 and earlier are affected by a Dependency on Vulnerable Third...
CVE-2026-47908 Dreamweaver Desktop versions 21.7 and earlier are affected by an Access of Uninitialized Pointer...
Dreamweaver Desktop versions 21.7 and earlier are affected by an Access of Uninitialized Pointer...
CVE-2026-34710 Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write...
Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write...
CVE-2026-34709 Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write...
Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write...
CVE-2026-36723 path-traversal に パストラバーサル (CVE-2026-36723)
path-traversal に パストラバーサル (CVE-2026-36723) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-45447 openssl に 解放後使用 (Use-After-Free) (CVE-2026-45447)
openssl に 脆弱性 (CVE-2026-45447) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-49959 CVE-2026-49959 に OSコマンドインジェクション (CVE-2026-49959)
CVE-2026-49959 に OSコマンドインジェクション (CVE-2026-49959) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。

🍪 Cookie について

当サイトはログイン状態の保持・言語設定・サービス改善のために Cookie を使用します。詳細は下記リンクをご確認ください。

詳細 →