Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1981 8.1 重要
Adjacent
Linux Linux Kernel LinuxのLinux Kernelにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-31393 2026-05-28 14:42 2026-04-3 Show GitHub Exploit DB Packet Storm
1982 8.8 重要
Network
Linux Linux Kernel LinuxのLinux Kernelにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-31433 2026-05-28 14:42 2026-04-22 Show GitHub Exploit DB Packet Storm
1983 9.8 緊急
Network
lizardbyte sunshine lizardbyteのsunshineにおける複数の脆弱性 CWE-287
CWE-295
CVE-2026-32253 2026-05-28 14:42 2026-05-22 Show GitHub Exploit DB Packet Storm
1984 7.1 重要
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-3473 2026-05-28 14:42 2026-05-22 Show GitHub Exploit DB Packet Storm
1985 6.7 警告
Local
デル smartfabric storage software デルのsmartfabric storage softwareにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-35070 2026-05-28 14:42 2026-05-20 Show GitHub Exploit DB Packet Storm
1986 4.3 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-3636 2026-05-28 14:42 2026-05-22 Show GitHub Exploit DB Packet Storm
1987 6.5 警告
Network
The Go Project crypto The Go Projectのcryptoにおける通信チャネルで送信中のメッセージの整合性への不適切な強制に関する脆弱性 CWE-924
通信チャネルで送信中のメッセージの整合性への不適切な強制
CVE-2026-39827 2026-05-28 14:42 2026-05-22 Show GitHub Exploit DB Packet Storm
1988 3.3
Local
Artifex Software MuPDF Artifex SoftwareのMuPDFにおけるエスケープ、メタ、またはコントロールシーケンスの不適切な無効化に関する脆弱性 CWE-150
エスケープ、メタ、またはコントロールシーケンスの不適切な無効化
CVE-2026-40505 2026-05-28 14:42 2026-04-16 Show GitHub Exploit DB Packet Storm
1989 7.5 重要
Network
NLnet Labs unbound NLnet Labsのunboundにおける同一生成元ポリシー違反に関する脆弱性 CWE-346
同一生成元ポリシー違反
CVE-2026-40622 2026-05-28 14:42 2026-05-20 Show GitHub Exploit DB Packet Storm
1990 4.8 警告
Network
PowerDNS PowerDNS Authoritative Server PowerDNSのPowerDNS Authoritative Serverにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-41999 2026-05-28 14:42 2026-05-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2761 9.8 CRITICAL
Network
progress sitefinity CWE-284: Improper Access Control in web services in Progress Sitefinity 15.4.8623 before 15.4.8630 allows a remote unauthenticated attacker to access content that should be restricted, resulting in f… CWE-284
Improper Access Control
CVE-2026-7198 2026-06-4 21:43 2026-06-2 Show GitHub Exploit DB Packet Storm
2762 8.8 HIGH
Network
progress sitefinity CWE-639: Authorization Bypass Through User-Controlled Key in web services in Progress Sitefinity 15.2.x before 15.2.8441, 15.3.x before 15.3.8531, and 15.4.x before 15.4.8630 allows a remote authenti… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-7201 2026-06-4 21:42 2026-06-2 Show GitHub Exploit DB Packet Storm
2763 5.4 MEDIUM
Network
- - Wikidforum 2.20 contains a cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by submitting crafted HTML in the reply_text parameter. Attackers can pos… CWE-79
Cross-site Scripting
CVE-2018-25384 2026-06-4 12:16 2026-05-30 Show GitHub Exploit DB Packet Storm
2764 9.0 CRITICAL
Network
- - A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers and classic domain controllers that use the "check password script" feature. If this script is config… CWE-78
OS Command 
CVE-2026-4408 2026-06-4 09:16 2026-05-28 Show GitHub Exploit DB Packet Storm
2765 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2026-2596 2026-06-4 08:16 2026-06-4 Show GitHub Exploit DB Packet Storm
2766 7.8 HIGH
Local
google android In multiple locations, there is a possible way to reveal images across users due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges… NVD-CWE-noinfo
CWE-20
 Improper Input Validation 
CVE-2025-22424 2026-06-4 07:16 2026-06-2 Show GitHub Exploit DB Packet Storm
2767 8.4 HIGH
Local
- - Dräger Infinity Explorer C700 contains a privilege escalation vulnerability that allows attackers to break out of kiosk mode and access the underlying operating system through a specific dialog inter… CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2019-25718 2026-06-4 07:16 2026-06-2 Show GitHub Exploit DB Packet Storm
2768 6.5 MEDIUM
Adjacent
- - Dräger Infinity Delta, Delta XL, and Kappa patient monitors contain a denial-of-service vulnerability that allows remote attackers to cause the monitor to reboot by sending a malformed network packet… CWE-15
 External Control of System or Configuration Setting
CVE-2019-25716 2026-06-4 07:16 2026-06-2 Show GitHub Exploit DB Packet Storm
2769 9.1 CRITICAL
Network
github cli GitHub CLI (gh) is GitHub’s official command line tool. Prior to 2.93.0, GitHub CLI incorrectly includes authorization header in API requests to TUF repository mirrors via gh attestation, gh release … CWE-863
 Incorrect Authorization
CVE-2026-48501 2026-06-4 06:06 2026-05-30 Show GitHub Exploit DB Packet Storm
2770 4.9 MEDIUM
Network
macgregor interschalt_vdr_g4e_firmware The administrator account for the Danelec MacGregor Voyage Data Recorder web interface can directly edit sensitive files related to authentication, potentially changing the root password. CWE-552
 Files or Directories Accessible to External Parties
CVE-2026-40425 2026-06-4 05:54 2026-05-30 Show GitHub Exploit DB Packet Storm