Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
199061 7.8 重要
Local
アドビシステムズ - Adobe Reader および Acrobat のレンダラ機能におけるメモリを破損される脆弱性 CWE-119
バッファエラー
CVE-2017-3018 2017-04-19 16:55 2017-04-6 Show GitHub Exploit DB Packet Storm
199062 7.8 重要
Local
アドビシステムズ - Adobe Reader および Acrobat におけるメモリを破損される脆弱性 CWE-119
バッファエラー
CVE-2017-3017 2017-04-19 16:55 2017-04-6 Show GitHub Exploit DB Packet Storm
199063 7.8 重要
Local
アドビシステムズ - Adobe Reader および Acrobat の JBIG2 解析機能におけるメモリを破損される脆弱性 CWE-119
バッファエラー
CVE-2017-3015 2017-04-19 16:55 2017-04-6 Show GitHub Exploit DB Packet Storm
199064 7.8 重要
Local
アドビシステムズ - Adobe Reader および Acrobat の XML Forms Architecture における任意のコードを実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-3014 2017-04-19 16:55 2017-04-6 Show GitHub Exploit DB Packet Storm
199065 7.8 重要
Local
アドビシステムズ - Adobe Reader および Acrobat の DLL における安全でないライブラリを読み込まれる脆弱性 CWE-254
セキュリティ機能
CVE-2017-3013 2017-04-19 16:55 2017-04-6 Show GitHub Exploit DB Packet Storm
199066 7.8 重要
Local
アドビシステムズ - Adobe Reader および Acrobat の OCR プラグインにおける安全でないライブラリを読み込まれる脆弱性 CWE-254
セキュリティ機能
CVE-2017-3012 2017-04-19 16:55 2017-04-6 Show GitHub Exploit DB Packet Storm
199067 7.8 重要
Local
アドビシステムズ - Adobe Reader および Acrobat の CCITT fax PDF フィルタにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2017-3011 2017-04-19 16:55 2017-04-6 Show GitHub Exploit DB Packet Storm
199068 9.8 緊急
Network
アドビシステムズ - Adobe Reader および Acrobat のレンダリングエンジンにおけるメモリを破損される脆弱性 CWE-119
バッファエラー
CVE-2017-3010 2017-04-19 16:39 2017-03-30 Show GitHub Exploit DB Packet Storm
199069 7.5 重要
Network
アドビシステムズ - Adobe Reader および Acrobat の JPEG2000 パーサにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-3009 2017-04-19 16:39 2017-03-30 Show GitHub Exploit DB Packet Storm
199070 7.3 重要
Local
Amazon.com, Inc. - Amazon Kindle for PC における任意のコードを実行される脆弱性 CWE-426
信頼性のない検索パス
CVE-2017-6189 2017-04-19 15:42 2017-02-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3571 6.2 MEDIUM
Local
- - go-ipld-prime is an implementation of the InterPlanetary Linked Data (IPLD) spec interfaces, a batteries-included codec implementations of IPLD for CBOR and JSON, and tooling for basic operations on … CWE-674
 Uncontrolled Recursion
CVE-2026-42328 2026-06-2 03:23 2026-05-28 Show GitHub Exploit DB Packet Storm
3572 8.8 HIGH
Network
- - elFinder is an open-source file manager for web, written in JavaScript using jQuery UI. Prior to 2.1.68, an authenticated SQL injection vulnerability in the elFinder MySQL volume driver (elFinderVolu… CWE-89
SQL Injection
CVE-2026-44521 2026-06-2 03:23 2026-05-28 Show GitHub Exploit DB Packet Storm
3573 - - - Cinny is a Matrix client. Prior to 4.10.3, A remote authenticated attacker who shares a room with a victim and has permissions to create room emotes (for example in a DM) can cause the victim's clien… CWE-20
 Improper Input Validation 
CVE-2026-42553 2026-06-2 03:23 2026-05-28 Show GitHub Exploit DB Packet Storm
3574 6.5 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.4.29 contains an SSRF policy bypass vulnerability in browser debug and export routes that allows reuse of already-open blocked tabs. Attackers with access to these routes can byp… CWE-863
 Incorrect Authorization
CVE-2026-35673 2026-06-2 03:23 2026-05-30 Show GitHub Exploit DB Packet Storm
3575 5.0 MEDIUM
Network
google chrome Insufficient validation of untrusted input in Printing in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a craft… CWE-20
NVD-CWE-noinfo
 Improper Input Validation 
CVE-2026-9980 2026-06-2 03:23 2026-05-29 Show GitHub Exploit DB Packet Storm
3576 8.8 HIGH
Network
openclaw openclaw OpenClaw before 2026.5.18 contains a scope bypass vulnerability in the Gateway chat.send route that allows scoped clients to execute privileged commands. Attackers with operator.write scope can deliv… CWE-863
 Incorrect Authorization
CVE-2026-35674 2026-06-2 03:22 2026-05-30 Show GitHub Exploit DB Packet Storm
3577 6.5 MEDIUM
Network
google chrome Inappropriate implementation in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chrom… CWE-200
Information Exposure
CVE-2026-9981 2026-06-2 03:22 2026-05-29 Show GitHub Exploit DB Packet Storm
3578 6.5 MEDIUM
Network
- - view_component is a framework for building reusable, testable, and encapsulated view components in Ruby on Rails. From 3.0.0 to 4.9.0, the preview route derives an example name from the URL and calls… CWE-749
 Exposed Dangerous Method or Function
CVE-2026-44836 2026-06-2 03:22 2026-05-27 Show GitHub Exploit DB Packet Storm
3579 - - - eml_parser serves as a python module for parsing eml files and returning various information found in the e-mail as well as computed information. Prior to 3.0.1, EmlParser.get_raw_body_text() recurse… CWE-674
 Uncontrolled Recursion
CVE-2026-44844 2026-06-2 03:22 2026-05-27 Show GitHub Exploit DB Packet Storm
3580 - - - GitLab MCP Server lets an AI agent talk directly to GitLab. Prior to 0.6.0, the HTTP transport in src/transport.ts ships with no authentication layer at all and a wildcard Access-Control-Allow-Origin… CWE-306
CWE-942
Missing Authentication for Critical Function
 Permissive Cross-domain Policy with Untrusted Domains
CVE-2026-44895 2026-06-2 03:22 2026-05-27 Show GitHub Exploit DB Packet Storm