Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194921 7.5 重要
Network
マイクロソフト - Microsoft Edge における現在のユーザのコンテキストで任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-8752 2017-09-21 14:33 2017-09-12 Show GitHub Exploit DB Packet Storm
194922 7.5 重要
Network
マイクロソフト - Microsoft Internet Explorer および Microsoft Edge における現在のユーザのコンテキストで任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-8748 2017-09-21 14:33 2017-09-12 Show GitHub Exploit DB Packet Storm
194923 7.5 重要
Network
マイクロソフト - Microsoft Internet Explorer および Microsoft Edge における現在のユーザのコンテキストで任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-8741 2017-09-21 14:33 2017-09-12 Show GitHub Exploit DB Packet Storm
194924 7.5 重要
Network
マイクロソフト - Microsoft Edge における現在のユーザのコンテキストで任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-8740 2017-09-21 14:33 2017-09-12 Show GitHub Exploit DB Packet Storm
194925 7.5 重要
Network
マイクロソフト - Microsoft Edge における現在のユーザのコンテキストで任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-8757 2017-09-21 13:53 2017-09-12 Show GitHub Exploit DB Packet Storm
194926 8.8 重要
Network
マイクロソフト - 複数の Microsoft Windows 製品の Windows Graphics におけるリモートでコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2017-8682 2017-09-21 13:53 2017-09-12 Show GitHub Exploit DB Packet Storm
194927 5.5 警告
Local
マイクロソフト - 複数の Microsoft Windows 製品の Windows Graphics におけるリモートでコードを実行される脆弱性 CWE-200
情報漏えい
CVE-2017-8683 2017-09-21 13:53 2017-09-12 Show GitHub Exploit DB Packet Storm
194928 4.3 警告
Network
マイクロソフト - Microsoft Edge における悪意のあるコンテンツを含むページを読み込まれる脆弱性 CWE-254
セキュリティ機能
CVE-2017-8723 2017-09-21 12:16 2017-09-12 Show GitHub Exploit DB Packet Storm
194929 7.5 重要
Network
マイクロソフト - Microsoft Edge および Internet Explorer における現在のユーザのコンテキストで任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-8750 2017-09-21 11:48 2017-09-12 Show GitHub Exploit DB Packet Storm
194930 7.5 重要
Network
マイクロソフト - Microsoft Edge における現在のユーザのコンテキストで任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-8751 2017-09-21 11:48 2017-09-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
961 7.1 HIGH
Network
traefik traefik Traefik is an HTTP reverse proxy and load balancer. Prior to 3.6.21 and 3.7.5, there is a high severity vulnerability in Traefik's Kubernetes Gateway provider affecting the crossProviderNamespaces al… CWE-284
CWE-863
Improper Access Control
 Incorrect Authorization
CVE-2026-54761 2026-06-27 01:37 2026-06-24 Show GitHub Exploit DB Packet Storm
962 8.6 HIGH
Network
traefik traefik Traefik is an HTTP reverse proxy and load balancer. From 3.7.0-ea.1 until 3.7.5, there is a medium severity vulnerability in Traefik's Kubernetes Ingress NGINX provider that causes affected routes to… CWE-636
CWE-693
 Not Failing Securely ('Failing Open')
 Protection Mechanism Failure
CVE-2026-54762 2026-06-27 01:37 2026-06-24 Show GitHub Exploit DB Packet Storm
963 7.5 HIGH
Network
- - Parse Server before 4.10.0 contains a supply chain vulnerability where incorrect version tags were pushed to the repository linking to unreviewed code in a personal fork. Attackers could exploit this… CWE-494
 Download of Code Without Integrity Check
CVE-2021-47986 2026-06-27 01:19 2026-06-26 Show GitHub Exploit DB Packet Storm
964 9.8 CRITICAL
Network
- - Flowise before 3.0.6 (affected versions 2.2.8 and earlier) contains an arbitrary file access vulnerability due to missing validation that the chatflowId and chatId parameters are UUIDs or numbers in … CWE-73
 External Control of File Name or Path
CVE-2025-71334 2026-06-27 01:19 2026-06-26 Show GitHub Exploit DB Packet Storm
965 8.1 HIGH
Network
- - Flowise before 3.0.10 (affected versions 3.0.7 and earlier) fails to invalidate existing sessions and session tokens after a user changes their password. An attacker who already holds an active sessi… CWE-613
 Insufficient Session Expiration
CVE-2025-71335 2026-06-27 01:19 2026-06-26 Show GitHub Exploit DB Packet Storm
966 9.8 CRITICAL
Network
- - Flowise before 3.0.6 (affected versions 2.2.7-patch.1 and earlier) contains an unsandboxed remote code execution vulnerability in the Custom MCP feature, which is designed to execute OS commands such… CWE-78
OS Command 
CVE-2025-71336 2026-06-27 01:19 2026-06-26 Show GitHub Exploit DB Packet Storm
967 10.0 CRITICAL
Network
- - Flowise contains a path traversal vulnerability in the /api/v1/document-store/loader/process endpoint that allows unauthenticated attackers to write arbitrary files to the filesystem. Attackers can e… CWE-73
 External Control of File Name or Path
CVE-2025-71338 2026-06-27 01:19 2026-06-26 Show GitHub Exploit DB Packet Storm
968 8.1 HIGH
Network
- - A flaw was found in Keycloak. This JWT algorithm confusion vulnerability in the JWT Authorization Grant flow allows an attacker with valid client credentials to bypass signature verification. By forg… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2026-11800 2026-06-27 01:19 2026-06-26 Show GitHub Exploit DB Packet Storm
969 8.5 HIGH
Network
- - A flaw was found in Apicurio Registry. The ContentTypeUtil.isParsableXml() method creates a SAXParserFactory without enabling secure processing features or disabling external entity resolution. An at… CWE-611
XXE
CVE-2026-12975 2026-06-27 01:19 2026-06-26 Show GitHub Exploit DB Packet Storm
970 7.4 HIGH
Network
- - A flaw was found in Apicurio Registry. The WSDLReaderAccessor creates a wsdl4j WSDLReader without disabling the javax.wsdl.importDocuments feature. When the VALIDITY rule is set to FULL, an attacker … CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-12992 2026-06-27 01:19 2026-06-26 Show GitHub Exploit DB Packet Storm