Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
189621 7.5 重要
Network
Matthew Eernisse - nodejs ejs における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-1000189 2017-12-6 13:47 2017-12-2 Show GitHub Exploit DB Packet Storm
189622 6.1 警告
Network
Matthew Eernisse - nodejs ejs におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-1000188 2017-12-6 13:47 2017-12-2 Show GitHub Exploit DB Packet Storm
189623 7.5 重要
Network
マイクロソフト - ASP.NET Core におけるサービス運用妨害 (DoS) の脆弱性 CWE-19
データ処理
CVE-2017-11883 2017-12-6 11:39 2017-11-14 Show GitHub Exploit DB Packet Storm
189624 7.5 重要
Network
ウェブセンス - TRITON AP-EMAIL における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-11177 2017-12-5 18:56 2017-11-6 Show GitHub Exploit DB Packet Storm
189625 7.8 重要
Local
HashiCorp - HashiCorp Vagrant VMware Fusion プラグインにおける認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-16001 2017-12-5 18:54 2017-11-3 Show GitHub Exploit DB Packet Storm
189626 8.1 重要
Network
PrivateAddressCheck project - private_address_check ruby gem におけるセキュリティ機能に関する脆弱性 CWE-254
セキュリティ機能
CVE-2017-0904 2017-12-5 17:22 2017-11-9 Show GitHub Exploit DB Packet Storm
189627 9.8 緊急
Network
thoughtbot - Paperclip ruby gem におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2017-0889 2017-12-5 17:22 2017-04-22 Show GitHub Exploit DB Packet Storm
189628 7.8 重要
Local
assp project - Gentoo mail-filter/assp パッケージにおける認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-16659 2017-12-5 17:05 2017-08-31 Show GitHub Exploit DB Packet Storm
189629 7.5 重要
Network
The PHP Group - PHP における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2017-16642 2017-12-5 17:05 2017-10-26 Show GitHub Exploit DB Packet Storm
189630 9.8 緊急
Network
Ingenious School Management System project - Ingenious School Management System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-16561 2017-12-5 17:05 2017-11-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
711 5.4 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject ma… New CWE-79
Cross-site Scripting
CVE-2026-47958 2026-06-10 22:05 2026-06-10 Show GitHub Exploit DB Packet Storm
712 5.4 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject ma… New CWE-79
Cross-site Scripting
CVE-2026-47957 2026-06-10 22:04 2026-06-10 Show GitHub Exploit DB Packet Storm
713 5.4 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject ma… New CWE-79
Cross-site Scripting
CVE-2026-47956 2026-06-10 22:04 2026-06-10 Show GitHub Exploit DB Packet Storm
714 5.4 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject ma… New CWE-79
Cross-site Scripting
CVE-2026-47954 2026-06-10 22:04 2026-06-10 Show GitHub Exploit DB Packet Storm
715 5.4 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject ma… New CWE-79
Cross-site Scripting
CVE-2026-47953 2026-06-10 22:04 2026-06-10 Show GitHub Exploit DB Packet Storm
716 7.8 HIGH
Local
adobe incopy InCopy versions 21.3, 20.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of t… New CWE-122
Heap-based Buffer Overflow
CVE-2026-34707 2026-06-10 22:01 2026-06-10 Show GitHub Exploit DB Packet Storm
717 7.8 HIGH
Local
adobe incopy InCopy versions 21.3, 20.5.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this is… New CWE-787
 Out-of-bounds Write
CVE-2026-34706 2026-06-10 22:01 2026-06-10 Show GitHub Exploit DB Packet Storm
718 5.5 MEDIUM
Local
adobe indesign InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability… New CWE-125
Out-of-bounds Read
CVE-2026-34705 2026-06-10 22:01 2026-06-10 Show GitHub Exploit DB Packet Storm
719 5.5 MEDIUM
Local
adobe indesign InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit this vulne… New CWE-476
 NULL Pointer Dereference
CVE-2026-34704 2026-06-10 22:01 2026-06-10 Show GitHub Exploit DB Packet Storm
720 5.5 MEDIUM
Local
adobe indesign InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit this vulne… New CWE-476
 NULL Pointer Dereference
CVE-2026-34703 2026-06-10 22:01 2026-06-10 Show GitHub Exploit DB Packet Storm