Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1 - - (複数のベンダ) (複数の製品) crypton-x509-validationにおける不適切な証明書検証の脆弱性 New - - 2026-06-15 15:34 2026-06-12 Show GitHub Exploit DB Packet Storm
2 - - (複数のベンダ) (複数の製品) CISA ICS Advisory / ICS Medical Advisory(2026年06月11日) New - - 2026-06-15 15:34 2026-06-12 Show GitHub Exploit DB Packet Storm
3 7.8 重要
Local
リコー (複数の製品) リコーおよびコニカミノルタジャパン製プリンタドライバーにおける権限昇格の脆弱性 New CWE-Other
その他
CVE-2026-50100 2026-06-15 14:26 2026-06-15 Show GitHub Exploit DB Packet Storm
4 7.5 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける競合状態に関する脆弱性 New CWE-362
競合状態
CVE-2026-1220 2026-06-15 11:22 2026-06-10 Show GitHub Exploit DB Packet Storm
5 7.8 重要
Local
マイクロソフト Microsoft PowerToys Microsoft PowerToys の特権昇格の脆弱性 New CWE-285
不適切な認可
CVE-2026-42902 2026-06-15 11:22 2026-06-9 Show GitHub Exploit DB Packet Storm
6 7.5 重要
Network
OpenVM OpenVM OpenVMにおける入力確認に関する脆弱性 New CWE-20
CWE-noinfo
CVE-2026-46669 2026-06-15 11:22 2026-06-10 Show GitHub Exploit DB Packet Storm
7 7.8 重要
Local
マイクロソフト Windows Narrator Braille Windows ナレーターの点字機能の特権昇格の脆弱性 New CWE-426
信頼性のない検索パス
CVE-2026-48565 2026-06-15 11:21 2026-06-9 Show GitHub Exploit DB Packet Storm
8 6.5 警告
Network
Apache Software Foundation Airflow Providers Samba (apache-airflow-providers-samba) Apache Software FoundationのAirflow Providers Samba (apache-airflow-providers-samba)におけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-49818 2026-06-15 11:21 2026-06-9 Show GitHub Exploit DB Packet Storm
9 5.5 警告
Local
- アップルのmacOSにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2025-24268 2026-06-15 11:21 2026-06-11 Show GitHub Exploit DB Packet Storm
10 8.8 重要
Local
- アップルのmacOSにおける保護メカニズムの不具合に関する脆弱性 New CWE-693
保護メカニズムの不具合
CVE-2025-24284 2026-06-15 11:21 2026-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2511 8.8 HIGH
Network
- - Inappropriate implementation in Google Lens in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: L… CWE-693
 Protection Mechanism Failure
CVE-2026-11248 2026-06-6 00:02 2026-06-5 Show GitHub Exploit DB Packet Storm
2512 4.7 MEDIUM
Network
- - Use after free in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory vi… CWE-416
 Use After Free
CVE-2026-11249 2026-06-6 00:02 2026-06-5 Show GitHub Exploit DB Packet Storm
2513 - - - In Arista’s EOS when in 802.1X mode, multi-auth unauthenticated hosts might be allowed access to a switch port if there exists an EAPOL capable device in the fallback VLAN. CWE-1287
 Improper Validation of Specified Type of Input
CVE-2024-6858 2026-06-6 00:02 2026-06-5 Show GitHub Exploit DB Packet Storm
2514 5.9 MEDIUM
Network
- - On affected platforms running Arista EOS with 802.1x authentication configured on the access/trunk ports, and routing enabled on the access VLAN of the ports, a malicious supplicant may be able to by… CWE-287
Improper Authentication
CVE-2023-5502 2026-06-6 00:02 2026-06-5 Show GitHub Exploit DB Packet Storm
2515 9.6 CRITICAL
Network
- - Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected. This can result in unexpected configuration being applied to the swi… CWE-306
Missing Authentication for Critical Function
CVE-2024-27890 2026-06-6 00:02 2026-06-5 Show GitHub Exploit DB Packet Storm
2516 5.3 MEDIUM
Network
- - On affected platforms running Arista EOS with MACsec and egress ACLs configured on the same interfaces, the ACL policies may not be enforced for packets egressing on those ports. This can cause outgo… CWE-284
Improper Access Control
CVE-2024-27891 2026-06-6 00:02 2026-06-5 Show GitHub Exploit DB Packet Storm
2517 9.6 CRITICAL
Network
- - Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected. This can result in unexpected configuration being applied to the swi… CWE-306
Missing Authentication for Critical Function
CVE-2024-27892 2026-06-6 00:02 2026-06-5 Show GitHub Exploit DB Packet Storm
2518 7.5 HIGH
Network
- - On affected platforms running Arista EOS with IPsec configured, a specially crafted packet can cause the dataplane to stop processing all IPsec traffic. The control plane may detect this condition, a… CWE-1286
 Improper Validation of Syntactic Correctness of Input
CVE-2025-8873 2026-06-6 00:02 2026-06-5 Show GitHub Exploit DB Packet Storm
2519 8.1 HIGH
Network
- - Use after free in Chromoting in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via malicious network traffic. (Chromium security severity: Critical) CWE-416
 Use After Free
CVE-2026-10887 2026-06-6 00:02 2026-06-5 Show GitHub Exploit DB Packet Storm
2520 8.8 HIGH
Adjacent
- - Use after free in Cast Streaming in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to execute arbitrary code via malicious network traffic. (Chromium security s… CWE-416
 Use After Free
CVE-2026-10888 2026-06-6 00:02 2026-06-5 Show GitHub Exploit DB Packet Storm