Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188911 7.5 重要
Network
シスコシステムズ - Cisco NX-OS におけるリソース管理に関する脆弱性 CWE-400
リソースの枯渇
CVE-2018-0090 2018-02-22 14:45 2018-01-17 Show GitHub Exploit DB Packet Storm
188912 6.7 警告
Local
シスコシステムズ - Cisco Industrial Ethernet 4010 シリーズスイッチ上で稼動する Cisco IOS ソフトウェアにおける認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2018-0088 2018-02-22 14:45 2018-01-17 Show GitHub Exploit DB Packet Storm
188913 7.2 重要
Network
Moxa Inc. - Moxa SoftNVR-IA Live Viewer における制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2017-5170 2018-02-22 14:19 2017-08-8 Show GitHub Exploit DB Packet Storm
188914 6.5 警告
Network
libpam4j project
Debian
レッドハット
- libpam4j における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-12197 2018-02-22 14:19 2017-10-17 Show GitHub Exploit DB Packet Storm
188915 9.8 緊急
Network
Apache Software Foundation
レッドハット
- Apache Groovy における信頼性のないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2016-6814 2018-02-22 14:19 2016-08-12 Show GitHub Exploit DB Packet Storm
188916 7.8 重要
Local
インテル - インテル グラフィックス・ドライバーにおける信頼性のない検索パスに関する脆弱性 CWE-426
信頼性のない検索パス
CVE-2017-5696 2018-02-22 12:07 2017-02-1 Show GitHub Exploit DB Packet Storm
188917 4.8 警告
Network
パルスセキュア - Pulse Secure Pulse Connect Secure および Pulse Policy Secure におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-17947 2018-02-22 11:59 2017-12-28 Show GitHub Exploit DB Packet Storm
188918 6.1 警告
Network
BizLogic - BizLogic xnami におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2018-5370 2018-02-22 11:57 2018-01-11 Show GitHub Exploit DB Packet Storm
188919 7 重要
Local
Lenovo - Lenovo Enterprise Networking Operating System における認証に関する脆弱性 CWE-287
不適切な認証
CVE-2017-3765 2018-02-22 11:55 2018-01-9 Show GitHub Exploit DB Packet Storm
188920 8.1 重要
Network
Linux - Linux Kernel における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-15126 2018-02-22 11:53 2017-10-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1891 - - - In the Linux kernel, the following vulnerability has been resolved: drm/ttm: Fix ttm_bo_swapout() infinite LRU walk on swapout failure When ttm_tt_swapout() fails, the current code calls ttm_resour… - CVE-2026-52965 2026-06-25 02:17 2026-06-25 Show GitHub Exploit DB Packet Storm
1892 - - - In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Bound MIDI 2.0 endpoint descriptor scans The USB MIDI 2.0 endpoint parser has the same descriptor walking patter… - CVE-2026-52964 2026-06-25 02:17 2026-06-25 Show GitHub Exploit DB Packet Storm
1893 - - - In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Bound MIDI endpoint descriptor scans snd_usbmidi_get_ms_info() validates the internal MIDIStreaming endpoint des… - CVE-2026-52963 2026-06-25 02:17 2026-06-25 Show GitHub Exploit DB Packet Storm
1894 - - - In the Linux kernel, the following vulnerability has been resolved: ceph: fix BUG_ON in __ceph_build_xattrs_blob() due to stale blob size The generic/642 test-case can reproduce the kernel crash: … - CVE-2026-52961 2026-06-25 02:17 2026-06-25 Show GitHub Exploit DB Packet Storm
1895 - - - In the Linux kernel, the following vulnerability has been resolved: drm/ttm: Fix ttm_bo_shrink() infinite LRU walk on backup failure Apply the same fix as b2ed01e7ad ("drm/ttm: Fix ttm_bo_swapout()… - CVE-2026-52949 2026-06-25 02:17 2026-06-25 Show GitHub Exploit DB Packet Storm
1896 7.7 HIGH
Network
- - The Loki datasource plugin's callResource handler contains a path traversal vulnerability. An authenticated Viewer-role user can escape the plugin's resource sandbox and access administrative Loki en… CWE-22
Path Traversal
CVE-2026-42129 2026-06-25 02:17 2026-06-22 Show GitHub Exploit DB Packet Storm
1897 9.6 CRITICAL
Network
- - The Snowflake datasource allows for GET/PUT commands, which can allow any user with access to run queries against the data source to read/write files between the local grafana server and the connecte… CWE-284
Improper Access Control
CVE-2026-28381 2026-06-25 02:16 2026-06-22 Show GitHub Exploit DB Packet Storm
1898 9.0 CRITICAL
Network
- - In ManageEngine ADSelfService Plus, RecoveryManager Plus, M365 Manager Plus, and ADAudit Plus, the SSO tickets generated to authenticate that session could be predicted by an unauthenticated user, l… CWE-287
CWE-330
CWE-340
Improper Authentication
 Use of Insufficiently Random Values
 Generation of Predictable Numbers or Identifiers
CVE-2026-11374 2026-06-25 02:16 2026-06-23 Show GitHub Exploit DB Packet Storm
1899 5.9 MEDIUM
Network
- - IBM WebSphere Application Server and IBM WebSphere Application Server Liberty are vulnerable to denial of service in the WebSphere WebServer Plug-in component when an attacker can pass crafted reques… CWE-476
 NULL Pointer Dereference
CVE-2026-10852 2026-06-25 02:16 2026-06-23 Show GitHub Exploit DB Packet Storm
1900 5.4 MEDIUM
Network
- - The Tempo and Loki datasource plugins construct backend HTTP requests by interpolating user-supplied input into URL paths without sanitization, enabling path traversal. A Viewer-role user can: (1) ca… CWE-22
Path Traversal
CVE-2026-10601 2026-06-25 02:16 2026-06-22 Show GitHub Exploit DB Packet Storm