Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188951 6.1 警告
Network
python-markdown2 project - markdown2 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2018-5773 2018-02-21 17:25 2018-01-18 Show GitHub Exploit DB Packet Storm
188952 4.8 警告
Network
F5 Networks - F5 BIG-IP Advanced Firewall Manager における証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2017-6142 2018-02-21 17:25 2017-02-21 Show GitHub Exploit DB Packet Storm
188953 5.7 警告
Adjacent
Google - Android における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-17860 2018-02-21 17:25 2017-12-23 Show GitHub Exploit DB Packet Storm
188954 3.7
Network
PowerDNS - PowerDNS における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2018-1000003 2018-02-21 17:09 2018-01-22 Show GitHub Exploit DB Packet Storm
188955 3.7
Network
CZ.NIC - Knot Resolver における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2018-1000002 2018-02-21 17:09 2018-01-22 Show GitHub Exploit DB Packet Storm
188956 9.8 緊急
Network
LabF - LabF nfsAxe におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-18047 2018-02-21 16:59 2017-05-15 Show GitHub Exploit DB Packet Storm
188957 6.5 警告
Network
Apache Software Foundation - Apache Hadoop における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-15713 2018-02-21 16:59 2017-10-21 Show GitHub Exploit DB Packet Storm
188958 7.5 重要
Network
Parity Technologies - Parity Ethereum client におけるパーミッションに関する脆弱性 CWE-275
パーミッションの問題
CVE-2017-14460 2018-02-21 16:59 2017-12-22 Show GitHub Exploit DB Packet Storm
188959 9.1 緊急
Network
Ethereum Foundation - CPP-Ethereum の libevm (Ethereum Virtual Machine) における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2017-14457 2018-02-21 16:59 2017-11-3 Show GitHub Exploit DB Packet Storm
188960 7.5 重要
Network
tinysvcmdns project - tinysvcmdns ライブラリにおける NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2017-12130 2018-02-21 16:59 2017-11-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 29, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1921 - - - gin-vue-admin is an AI-assisted basic development platform. In version 2.9.1, an authenticated attacker with access to the code-generation feature and MCP management interface can exploit this vulner… CWE-78
OS Command 
CVE-2026-48787 2026-06-24 00:42 2026-06-20 Show GitHub Exploit DB Packet Storm
1922 - - - Untrusted user data was passed verbatim to Excel exports for administrators. This allowed formula injection which can be used to compromise the environment of the user loading the file or other data … CWE-148
CVE-2026-12862 2026-06-24 00:42 2026-06-22 Show GitHub Exploit DB Packet Storm
1923 - - - An unvalidated redirect was contained in Venueless' social login functionality and could be exploited for phishing using trusted domains. CWE-601
Open Redirect
CVE-2026-12863 2026-06-24 00:42 2026-06-22 Show GitHub Exploit DB Packet Storm
1924 7.5 HIGH
Network
- - WebP Server Go through 0.14.4 contains a path traversal vulnerability on Windows that allows unauthenticated attackers to read files outside the configured IMG_PATH directory by sending requests with… CWE-22
Path Traversal
CVE-2026-53779 2026-06-24 00:42 2026-06-23 Show GitHub Exploit DB Packet Storm
1925 9.8 CRITICAL
Network
- - All versions of the package expr-eval are vulnerable to Code Execution via the toJSFunction() API. An attacker can execute arbitrary JavaScript by supplying crafted expressions that are compiled into… CWE-94
Code Injection
CVE-2026-12866 2026-06-24 00:42 2026-06-23 Show GitHub Exploit DB Packet Storm
1926 7.8 HIGH
Local
- - AVAST Antivirus 25.11 contains an unquoted service path vulnerability in the SecureLine service that allows local non-privileged users to execute code with elevated SYSTEM privileges. Attackers can e… CWE-428
 Unquoted Search Path or Element
CVE-2025-71326 2026-06-24 00:37 2026-06-20 Show GitHub Exploit DB Packet Storm
1927 5.9 MEDIUM
Local
libexpat_project libexpat libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking for various calls from within handlers in cases of a policy violation. Thus, a … CWE-416
 Use After Free
CVE-2026-56412 2026-06-24 00:31 2026-06-22 Show GitHub Exploit DB Packet Storm
1928 7.8 HIGH
Local
- - Punto Switcher through 4.5.0.583 contains an unquoted search path element vulnerability that allows local attackers to execute arbitrary code by exploiting the application's call to WinExec without a… CWE-428
 Unquoted Search Path or Element
CVE-2026-25865 2026-06-24 00:29 2026-06-19 Show GitHub Exploit DB Packet Storm
1929 7.8 HIGH
Local
- - NetDrive 2.6.12 contains an unquoted service path vulnerability in the Netdrive2_Service_Netdrive2 service that allows local users to execute arbitrary code with SYSTEM privileges. Attackers can inse… CWE-428
 Unquoted Search Path or Element
CVE-2016-20092 2026-06-24 00:29 2026-06-20 Show GitHub Exploit DB Packet Storm
1930 7.8 HIGH
Local
- - Wise Care 365 4.27 and Wise Disk Cleaner 9.29 contain unquoted service path vulnerabilities in the WiseBootAssistant and SpyHunter 4 Service respectively, allowing local users to execute arbitrary co… CWE-428
 Unquoted Search Path or Element
CVE-2016-20093 2026-06-24 00:29 2026-06-20 Show GitHub Exploit DB Packet Storm