Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
196861 7.2 重要
Network
CMS Made Simple - CMS Made Simple における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2017-8912 2017-06-9 16:25 2017-05-11 Show GitHub Exploit DB Packet Storm
196862 9.8 緊急
Network
tnef project - tnef における整数アンダーフローの脆弱性 CWE-191
整数アンダーフロー
CVE-2017-8911 2017-06-9 16:25 2017-05-10 Show GitHub Exploit DB Packet Storm
196863 5.5 警告
Local
Artifex Software - Artifex Ghostscript の gxscanc.c の mark_line_tr 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2017-8908 2017-06-9 16:25 2017-04-29 Show GitHub Exploit DB Packet Storm
196864 6.1 警告
Network
Opsview - Opsview Monitor Pro におけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2016-10368 2017-06-9 16:09 2016-09-1 Show GitHub Exploit DB Packet Storm
196865 7.5 重要
Network
Rapid7 - Rapid7 AppSpider Pro におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-5240 2017-06-9 15:51 2017-04-26 Show GitHub Exploit DB Packet Storm
196866 8.8 重要
Network
トレンドマイクロ - Trend Micro OfficeScan における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-5481 2017-06-9 15:46 2017-04-25 Show GitHub Exploit DB Packet Storm
196867 9.1 緊急
Network
Vaultive, Inc. - Vaultive Office 365 Security における暗号強度に関する脆弱性 CWE-326
不適切な暗号強度
CVE-2017-7229 2017-06-9 15:37 2017-05-4 Show GitHub Exploit DB Packet Storm
196868 5.9 警告
Network
ゲインキャピタル - iOS 用 FOREXTrader の iPhone 版アプリケーションにおけるサーバになりすまされる脆弱性 CWE-295
不正な証明書検証
CVE-2017-5912 2017-06-9 15:29 2017-05-5 Show GitHub Exploit DB Packet Storm
196869 5.5 警告
Local
NVIDIA - NVIDIA の Windows GPU Display Driver における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-0355 2017-06-9 15:17 2017-05-9 Show GitHub Exploit DB Packet Storm
196870 4.7 警告
Local
NVIDIA - NVIDIA の Windows GPU Display Driver における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-0354 2017-06-9 15:17 2017-05-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2971 4.3 MEDIUM
Network
redhat build_of_keycloak A flaw was found in Keycloak. An authenticated user with existing organization membership can exploit this flaw by accessing user-facing APIs, such as the account API or by requesting an OpenID Conne… CWE-863
 Incorrect Authorization
CVE-2026-9791 2026-06-4 03:28 2026-05-28 Show GitHub Exploit DB Packet Storm
2972 7.5 HIGH
Network
redhat build_of_keycloak A flaw was found in Keycloak. When a JSON Web Encryption (JWE) encrypted request object is submitted, Keycloak may incorrectly process unsigned claims if the decrypted content is raw JSON, bypassing … CWE-347
 Improper Verification of Cryptographic Signature
CVE-2026-9793 2026-06-4 03:26 2026-05-28 Show GitHub Exploit DB Packet Storm
2973 7.5 HIGH
Adjacent
tp-link tapo_l535e_firmware
tapo_p300_firmware
tapo_d100c_firmware
TP-Link has identified a vulnerability in Tapo L535E v1.0 and v3.0, Tapo P300 v1.0, and Tapo D100C v1.0, where Bluetooth communication during the initial setup phase is transmitted in cleartext witho… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2026-34126 2026-06-4 03:18 2026-05-29 Show GitHub Exploit DB Packet Storm
2974 7.3 HIGH
Network
- - A vulnerability was identified in NousResearch hermes-agent up to 0.12.0. Affected by this vulnerability is the function _compress_context of the file run_agent.py. The manipulation leads to injectio… CWE-74
CWE-707
Injection
 Improper Enforcement of Message or Data Structure
CVE-2026-10221 2026-06-4 03:16 2026-06-1 Show GitHub Exploit DB Packet Storm
2975 8.8 HIGH
Adjacent
tp-link archer_c64_firmware Due to improper enforcement of authentication rate-limiting on a debug SSH service in Archer C64 v1, the SSH service allows unlimited authentication attempts and uses the same credentials as the web … CWE-288
CWE-306
Authentication Bypass Using an Alternate Path or Channel
Missing Authentication for Critical Function
CVE-2026-8697 2026-06-4 03:14 2026-05-29 Show GitHub Exploit DB Packet Storm
2976 5.3 MEDIUM
Network
oracle rest_data_services Vulnerability in Oracle REST Data Services (component: Mongoapi). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerability allows unauthenticated attacker with networ… CWE-200
Information Exposure
CVE-2026-46830 2026-06-4 03:12 2026-05-29 Show GitHub Exploit DB Packet Storm
2977 9.0 CRITICAL
Network
oracle database_server Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are affected are 23.4.0-23.26.2. Difficult to exploit vulnerability allows unauthenticated attacker with… NVD-CWE-noinfo
CVE-2026-46833 2026-06-4 03:12 2026-05-29 Show GitHub Exploit DB Packet Storm
2978 8.1 HIGH
Network
oracle rest_data_services Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerability allows low privileged attacker with network acc… CWE-400
CWE-284
 Uncontrolled Resource Consumption
Improper Access Control
CVE-2026-35277 2026-06-4 03:03 2026-05-29 Show GitHub Exploit DB Packet Storm
2979 7.9 HIGH
Network
oracle rest_data_services Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. Difficult to exploit vulnerability allows low privileged attacker with network a… CWE-400
CWE-352
 Uncontrolled Resource Consumption
 Origin Validation Error
CVE-2026-35266 2026-06-4 03:03 2026-05-29 Show GitHub Exploit DB Packet Storm
2980 7.5 HIGH
Network
hkuds deepcode DeepCode through commit c991dc2 contains a path traversal vulnerability in the SPA catch-all route in new_ui/backend/main.py that allows unauthenticated attackers to read arbitrary files by supplying… CWE-22
Path Traversal
CVE-2026-32847 2026-06-4 03:02 2026-05-29 Show GitHub Exploit DB Packet Storm