脆弱性一覧

CVE / GHSA / KEV / OSV を統合監視。タグ・カテゴリで絞り込み可能。

フィルタ中: タグ: cwe-862 クリア
ID タイトル
CVE-2024-37496 CVE-2024-37496 の脆弱性 (CVE-2024-37496)
CVE-2024-37496 に 脆弱性 (CVE-2024-37496) が存在。不正な操作・情報露出のリスクがあります。
CVE-2025-48640 google の脆弱性 (CVE-2025-48640)
google に 脆弱性 (CVE-2025-48640) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2025-48617 google の脆弱性 (CVE-2025-48617)
google に 脆弱性 (CVE-2025-48617) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2024-37210 CVE-2024-37210 の脆弱性 (CVE-2024-37210)
CVE-2024-37210 に 脆弱性 (CVE-2024-37210) が存在。機密情報が外部に流出する可能性があります。
CVE-2024-33909 CVE-2024-33909 の脆弱性 (CVE-2024-33909)
CVE-2024-33909 に 脆弱性 (CVE-2024-33909) が存在。不正な操作・情報露出のリスクがあります。
CVE-2024-24709 CVE-2024-24709 の脆弱性 (CVE-2024-24709)
CVE-2024-24709 に 脆弱性 (CVE-2024-24709) が存在。不正な操作・情報露出のリスクがあります。
CVE-2024-32949 CVE-2024-32949 の脆弱性 (CVE-2024-32949)
CVE-2024-32949 に 脆弱性 (CVE-2024-32949) が存在。不正な操作・情報露出のリスクがあります。
CVE-2024-33685 CVE-2024-33685 の脆弱性 (CVE-2024-33685)
CVE-2024-33685 に 脆弱性 (CVE-2024-33685) が存在。不正な操作・情報露出のリスクがあります。
CVE-2024-31435 CVE-2024-31435 の脆弱性 (CVE-2024-31435)
CVE-2024-31435 に 脆弱性 (CVE-2024-31435) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-54019 open-webui の脆弱性 (CVE-2026-54019)
open-webui に 脆弱性 (CVE-2026-54019) が存在。機密情報が外部に流出する可能性があります。`POST /api/v1/retrieval/query/collection` 経由で攻撃可能。対策: `0.9.6` 以上に更新。
CVE-2026-54012 open-webui の脆弱性 (CVE-2026-54012)
open-webui に 脆弱性 (CVE-2026-54012) が存在。機密情報が外部に流出する可能性があります。`GET /api/v1/files/{id}/content` 経由で攻撃可能。対策: `0.9.6` 以上に更新。
CVE-2026-54010 open-webui の脆弱性 (CVE-2026-54010)
open-webui に 脆弱性 (CVE-2026-54010) が存在。機密情報が外部に流出する可能性があります。`GET /api/v1/files/{id}/content` 経由で攻撃可能。対策: `>= 0.9.6` 以上に更新。
CVE-2026-48783 CVE-2026-48783 の脆弱性 (CVE-2026-48783)
CVE-2026-48783 に 脆弱性 (CVE-2026-48783) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-48797 backpropagate の脆弱性 (CVE-2026-48797)
backpropagate に 脆弱性 (CVE-2026-48797) が存在。不正な操作・情報露出のリスクがあります。``BACKPROPAGATE_UI_AUTH`` 経由で攻撃可能。対策: `1.2.0` 以上に更新。
CVE-2026-27783 code.gitea.io/gitea の脆弱性 (CVE-2026-27783)
code.gitea.io/gitea に 脆弱性 (CVE-2026-27783) が存在。不正な操作・情報露出のリスクがあります。`GET /repos/{owner}/{repo}/issue_templates` 経由で攻撃可能。対策: `1.26.2` 以上に更新。
CVE-2026-25714 code.gitea.io/gitea の脆弱性 (CVE-2026-25714)
code.gitea.io/gitea に 脆弱性 (CVE-2026-25714) が存在。不正な操作・情報露出のリスクがあります。対策: `1.26.2` 以上に更新。
CVE-2026-0145 google の脆弱性 (CVE-2026-0145)
google に 脆弱性 (CVE-2026-0145) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-0158 google の脆弱性 (CVE-2026-0158)
google に 脆弱性 (CVE-2026-0158) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-12105 devolutions の脆弱性 (CVE-2026-12105)
devolutions に 脆弱性 (CVE-2026-12105) が存在。機密情報が外部に流出する可能性があります。
CVE-2026-0133 c の脆弱性 (CVE-2026-0133)
c に 脆弱性 (CVE-2026-0133) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-54322 github.com/daytonaio/daytona の脆弱性 (CVE-2026-54322)
github.com/daytonaio/daytona に 脆弱性 (CVE-2026-54322) が存在。データの不正な改ざんを許す可能性があります。対策: `0.185.0` 以上に更新。
CVE-2026-53866 OpenClaw: Shell inline-command parsing could miss an allowlist check
OpenClaw: Shell inline-command parsing could miss an allowlist check
CVE-2026-53850 openclaw の脆弱性 (CVE-2026-53850)
openclaw に 脆弱性 (CVE-2026-53850) が存在。データの不正な改ざんを許す可能性があります。対策: `2026.4.25` 以上に更新。
CVE-2026-53851 openclaw の脆弱性 (CVE-2026-53851)
openclaw に 脆弱性 (CVE-2026-53851) が存在。不正な操作・情報露出のリスクがあります。対策: `2026.5.12` 以上に更新。
CVE-2026-53844 openclaw の脆弱性 (CVE-2026-53844)
openclaw に 脆弱性 (CVE-2026-53844) が存在。機密情報が外部に流出する可能性があります。対策: `2026.4.29` 以上に更新。
CVE-2025-14272 CVE-2025-14272 の脆弱性 (CVE-2025-14272)
CVE-2025-14272 に 脆弱性 (CVE-2025-14272) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-10831 CVE-2026-10831 の脆弱性 (CVE-2026-10831)
CVE-2026-10831 に 脆弱性 (CVE-2026-10831) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-52714 Unauthenticated Broken Access Control in SEO Plugin by Squirrly SEO <= 12.4.16 versions.
Unauthenticated Broken Access Control in SEO Plugin by Squirrly SEO <= 12.4.16 versions.
CVE-2026-54190 Unauthenticated Broken Access Control in Envira Photo Gallery <= 1.12.5 versions.
Unauthenticated Broken Access Control in Envira Photo Gallery <= 1.12.5 versions.
CVE-2026-39490 Unauthenticated Broken Access Control in JupiterX Core <= 4.14.1 versions.
Unauthenticated Broken Access Control in JupiterX Core <= 4.14.1 versions.
CVE-2026-40809 CVE-2026-40809 の脆弱性 (CVE-2026-40809)
CVE-2026-40809 に 脆弱性 (CVE-2026-40809) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-52711 Unauthenticated Broken Access Control in WooCommerce POS <= 1.8.14 versions.
Unauthenticated Broken Access Control in WooCommerce POS <= 1.8.14 versions.
CVE-2026-2381 wordpress の脆弱性 (CVE-2026-2381)
wordpress に 脆弱性 (CVE-2026-2381) が存在。不正な操作・情報露出のリスクがあります。``wc_stripe_pay_for_order`` 経由で攻撃可能。
CVE-2025-68045 Unauthenticated Broken Access Control in WP Event SOlution <= 4.1.12 versions.
Unauthenticated Broken Access Control in WP Event SOlution <= 4.1.12 versions.
CVE-2026-9187 wordpress の脆弱性 (CVE-2026-9187)
wordpress に 脆弱性 (CVE-2026-9187) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-6964 wordpress の脆弱性 (CVE-2026-6964)
wordpress に 脆弱性 (CVE-2026-6964) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-49775 Unauthenticated Broken Access Control in Welcart e-Commerce <= 2.11.28 versions.
Unauthenticated Broken Access Control in Welcart e-Commerce <= 2.11.28 versions.
CVE-2026-49065 Unauthenticated Broken Access Control in Hippoo Mobile App for WooCommerce <= 1.9.5 versions.
Unauthenticated Broken Access Control in Hippoo Mobile App for WooCommerce <= 1.9.5 versions.
CVE-2026-49070 Unauthenticated Broken Access Control in Knit Pay <= 9.4.0.0 versions.
Unauthenticated Broken Access Control in Knit Pay <= 9.4.0.0 versions.
CVE-2026-48883 Unauthenticated Broken Access Control in WPC Product Bundles for WooCommerce <= 8.5.3 versions.
Unauthenticated Broken Access Control in WPC Product Bundles for WooCommerce <= 8.5.3 versions.
CVE-2026-48835 Unauthenticated Broken Access Control in Contact Form by WPForms <= 1.10.0.4 versions.
Unauthenticated Broken Access Control in Contact Form by WPForms <= 1.10.0.4 versions.
CVE-2026-48887 Unauthenticated Broken Access Control in JS Help Desk <= 3.0.9 versions.
Unauthenticated Broken Access Control in JS Help Desk <= 3.0.9 versions.
CVE-2026-48873 Unauthenticated Broken Access Control in Montonio for WooCommerce <= 10.1.2 versions.
Unauthenticated Broken Access Control in Montonio for WooCommerce <= 10.1.2 versions.
CVE-2026-48881 Unauthenticated Broken Access Control in TrueBooker <= 1.1.9 versions.
Unauthenticated Broken Access Control in TrueBooker <= 1.1.9 versions.
CVE-2026-42659 Subscriber Broken Access Control in Advanced Form Integration <= 1.126.12 versions.
Subscriber Broken Access Control in Advanced Form Integration <= 1.126.12 versions.
CVE-2026-42640 Unauthenticated Broken Access Control in Classified Listing <= 5.3.8 versions.
Unauthenticated Broken Access Control in Classified Listing <= 5.3.8 versions.
CVE-2026-42664 CVE-2026-42664 の脆弱性 (CVE-2026-42664)
CVE-2026-42664 に 脆弱性 (CVE-2026-42664) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-42666 Unauthenticated Broken Access Control in Salon booking system <= 10.30.25 versions.
Unauthenticated Broken Access Control in Salon booking system <= 10.30.25 versions.
CVE-2026-42651 Subscriber Broken Access Control in Classified Listing <= 5.3.9 versions.
Subscriber Broken Access Control in Classified Listing <= 5.3.9 versions.
CVE-2026-40776 Unauthenticated Broken Access Control in WP Event SOlution <= 4.1.8 versions.
Unauthenticated Broken Access Control in WP Event SOlution <= 4.1.8 versions.

🍪 Cookie について

当サイトはログイン状態の保持・言語設定・サービス改善のために Cookie を使用します。詳細は下記リンクをご確認ください。

詳細 →