Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
189281 4.8 警告
Network
日立
オラクル
- 複数の Oracle Java 製品における JNDI に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2018-2599 2018-02-13 14:18 2018-01-16 Show GitHub Exploit DB Packet Storm
189282 4.3 警告
Network
日立
オラクル
- 複数の Oracle Java 製品における LDAP に関する脆弱性 CWE-200
情報漏えい
CVE-2018-2588 2018-02-13 14:18 2018-01-16 Show GitHub Exploit DB Packet Storm
189283 6.5 警告
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における Hotspot に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2018-2582 2018-02-13 14:18 2018-01-16 Show GitHub Exploit DB Packet Storm
189284 3.7
Network
日立
オラクル
- 複数の Oracle Java 製品における Libraries に関する脆弱性 CWE-200
情報漏えい
CVE-2018-2579 2018-02-13 14:18 2018-01-16 Show GitHub Exploit DB Packet Storm
189285 4.3 警告
Network
日立
オラクル
- 複数の Oracle Java 製品における JNDI に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2018-2678 2018-02-13 14:18 2018-01-16 Show GitHub Exploit DB Packet Storm
189286 4.3 警告
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における AWT に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2018-2677 2018-02-13 14:18 2018-01-16 Show GitHub Exploit DB Packet Storm
189287 4.3 警告
Network
日立
オラクル
- 複数の Oracle Java 製品における Libraries に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2018-2663 2018-02-13 14:18 2018-01-16 Show GitHub Exploit DB Packet Storm
189288 5.3 警告
Network
日立
オラクル
- Oracle Java SE および JRockit における Serialization に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2018-2657 2018-02-13 14:18 2018-01-16 Show GitHub Exploit DB Packet Storm
189289 6.1 警告
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における AWT に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2018-2641 2018-02-13 14:18 2018-01-16 Show GitHub Exploit DB Packet Storm
189290 7.4 重要
Network
日立
オラクル
- 複数の Oracle Java 製品における JMX に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2018-2637 2018-02-13 14:18 2018-01-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 29, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2421 5.5 MEDIUM
Local
- - An attacker could cooperatively pass data from one secure GPU process to another secure GPU process through shared secure memory allocations in the kernel module. Additionally, an attacker could disr… CWE-653
 Improper Isolation or Compartmentalization
CVE-2026-41155 2026-06-17 00:40 2026-06-13 Show GitHub Exploit DB Packet Storm
2422 9.8 CRITICAL
Network
- - A web page that contains unusual WebGPU content loaded into the GPU GLES render process and can trigger an out-of-bound write in the GPU user-space driver, leading to memory corruption and possible b… CWE-787
 Out-of-bounds Write
CVE-2026-41157 2026-06-17 00:40 2026-06-13 Show GitHub Exploit DB Packet Storm
2423 7.8 HIGH
Local
- - Software installed and run as a non-privileged user may conduct GPU system calls to write to arbitrary freed physical pages. Physical memory allocated and freed, without the deferred free mechanis… CWE-416
 Use After Free
CVE-2026-41158 2026-06-17 00:40 2026-06-13 Show GitHub Exploit DB Packet Storm
2424 7.8 HIGH
Local
- - Multiple printer drivers provided by Ricoh Company, Ltd. and KONICA MINOLTA JAPAN, INC. contain a privilege escalation vulnerability. If this vulnerability is exploited, an attacker who can log in to… CWE-427
 Uncontrolled Search Path Element
CVE-2026-50100 2026-06-17 00:40 2026-06-15 Show GitHub Exploit DB Packet Storm
2425 6.7 MEDIUM
Local
- - Incorrect default permissions issue exists in Optical Disc Archive Software for Windows 5.5.3 and earlier. If this vulnerability is exploited, arbitrary code may be executed with SYSTEM privileges. CWE-276
Incorrect Default Permissions 
CVE-2026-50255 2026-06-17 00:40 2026-06-16 Show GitHub Exploit DB Packet Storm
2426 9.8 CRITICAL
Network
- - Naxclow devices use a uniform request-signing scheme based on a hard-coded, platform-wide salt embedded in every firmware image. Once this salt is recovered from any device, an attacker can generate … CWE-321
 Use of Hard-coded Cryptographic Key
CVE-2026-28742 2026-06-17 00:37 2026-06-13 Show GitHub Exploit DB Packet Storm
2427 5.3 MEDIUM
Network
- - Naxclow device identifiers use fixed manufacturing prefixes combined with sequential counters, producing a fully predictable and enumerable identifier space. Because the platform also exposes an endp… CWE-340
 Generation of Predictable Numbers or Identifiers
CVE-2026-42932 2026-06-17 00:37 2026-06-13 Show GitHub Exploit DB Packet Storm
2428 8.8 HIGH
Network
- - A flaw in Naxclow's platform’s onboarding workflow allows an attacker to replay a confirm-then-bind sequence to silently reassign a device to an arbitrary account. Because the affected endpoints vali… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-42947 2026-06-17 00:37 2026-06-13 Show GitHub Exploit DB Packet Storm
2429 4.6 MEDIUM
Physics
- - During WiFi association, Naxclow device firmware prints the host network’s SSID, PSK, and negotiated WPA keys in cleartext to an exposed UART console on production hardware. The UART pads are labeled… CWE-538
 File and Directory Information Exposure
CVE-2026-50099 2026-06-17 00:37 2026-06-13 Show GitHub Exploit DB Packet Storm
2430 8.1 HIGH
Network
- - Naxclow devices use a server-side, per-device relay credential that never rotates and is re-issued to the device on each boot. Because this credential remains valid indefinitely and cannot be reset o… CWE-262
 Not Using Password Aging
CVE-2026-50101 2026-06-17 00:37 2026-06-13 Show GitHub Exploit DB Packet Storm