Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
200471 5.9 警告
Network
mcabber - mcabber の複数の XMPP クライアントの "XEP-0280: Message Carbons" の実装における連絡先を含むユーザになりすまされる脆弱性 CWE-20
CWE-346
CVE-2017-5604 2017-03-8 15:04 2017-01-26 Show GitHub Exploit DB Packet Storm
200472 5.9 警告
Network
Jitsi - Jitsi の複数の XMPP クライアントの "XEP-0280: Message Carbons" の実装における連絡先を含むユーザになりすまされる脆弱性 CWE-20
CWE-346
CVE-2017-5603 2017-03-8 15:04 2017-01-27 Show GitHub Exploit DB Packet Storm
200473 5.9 警告
Network
Jappix - jappix の複数の XMPP クライアントの "XEP-0280: Message Carbons" の実装における連絡先を含むユーザになりすまされる脆弱性 CWE-20
CWE-346
CVE-2017-5602 2017-03-8 15:04 2017-01-27 Show GitHub Exploit DB Packet Storm
200474 5.9 警告
Network
Psi+ Dev Team - Psi+ の複数の XMPP クライアントの "XEP-0280: Message Carbons" の実装における連絡先を含むユーザになりすまされる脆弱性 CWE-20
CWE-346
CVE-2017-5593 2017-03-8 15:04 2017-01-25 Show GitHub Exploit DB Packet Storm
200475 5.9 警告
Network
profanity - profanity の複数の XMPP クライアントの "XEP-0280: Message Carbons" の実装における連絡先を含むユーザになりすまされる脆弱性 CWE-20
CWE-346
CVE-2017-5592 2017-03-8 15:04 2017-01-24 Show GitHub Exploit DB Packet Storm
200476 5.9 警告
Network
SleekXMPP project
Slixmpp project
- SleekXMPP および Slixmpp の複数の XMPP クライアントの "XEP-0280: Message Carbons" の実装における連絡先を含むユーザになりすまされる脆弱性 CWE-20
CWE-346
CVE-2017-5591 2017-03-8 15:04 2017-01-28 Show GitHub Exploit DB Packet Storm
200477 5.9 警告
Network
Georg Lukas - yaxim および Bruno の複数の XMPP クライアントの "XEP-0280: Message Carbons" の実装における連絡先を含むユーザになりすまされる脆弱性 CWE-20
CWE-346
CVE-2017-5589 2017-03-8 15:04 2017-01-30 Show GitHub Exploit DB Packet Storm
200478 6.1 警告
Network
Schneider Electric - Schneider Electric homeLYnk Controller におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-5157 2017-03-8 15:03 2017-01-18 Show GitHub Exploit DB Packet Storm
200479 9.8 緊急
Network
Schneider Electric - Schneider Electric PowerLogic PM8ECC におけるデバイスへのアクセスを許容される脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2016-5818 2017-03-8 15:03 2016-10-18 Show GitHub Exploit DB Packet Storm
200480 7.5 重要
Network
Mobile App Native project - WordPress 用 Mobile App Native プラグインにおけるリモートでファイルをアップロードされる脆弱性 CWE-254
セキュリティ機能
CVE-2017-6104 2017-03-8 14:30 2017-02-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3161 6.5 MEDIUM
Network
google android In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer overflow. This could lead to remote denial of service with no additional execut… CWE-190
 Integer Overflow or Wraparound
CVE-2026-0039 2026-06-3 03:44 2026-06-2 Show GitHub Exploit DB Packet Storm
3162 5.5 MEDIUM
Local
google android In multiple functions of AccessibilityManagerService.java, there is a possible persistent denial of service due to improper input validation. This could lead to local denial of service with no additi… CWE-20
 Improper Input Validation 
CVE-2026-0018 2026-06-3 03:44 2026-06-2 Show GitHub Exploit DB Packet Storm
3163 7.1 HIGH
Network
ibm engineering_lifecycle_management IBM Engineering Lifecycle Management 7.0.3 Interim Fix 001 through  Interim Fix 021, 7.1.0  Interim Fix 001 through  Interim Fix 009, and 7.2.0 and 7.2.0 Interim Fix 001 is vulnerable to an XML exter… CWE-611
XXE
CVE-2026-3603 2026-06-3 03:44 2026-05-27 Show GitHub Exploit DB Packet Storm
3164 7.5 HIGH
Network
viewcomponent view_component view_component is a framework for building reusable, testable, and encapsulated view components in Ruby on Rails. From 3.0.0 to 4.9.0, the system test entrypoint canonicalizes a user-controlled file … CWE-187
 Partial String Comparison
CVE-2026-44837 2026-06-3 03:43 2026-05-27 Show GitHub Exploit DB Packet Storm
3165 3.3 LOW
Local
google android In updateProvidersWhenServiceRemoved of CredentialManagerService.java, there is a possible way to override settings across users due to a permissions bypass. This could lead to local information disc… CWE-269
 Improper Privilege Management
CVE-2026-0016 2026-06-3 03:41 2026-06-2 Show GitHub Exploit DB Packet Storm
3166 7.5 HIGH
Network
ibm websphere_application_server IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to HTTP request smuggl… CWE-444
HTTP Request Smuggling
CVE-2026-8620 2026-06-3 03:40 2026-05-27 Show GitHub Exploit DB Packet Storm
3167 9.8 CRITICAL
Network
shepherdwind velocity.js Velocity.js is a JavaScript implementation of the Apache Velocity template engine. In 2.1.5 and earlier, a prototype pollution vulnerability was discovered in velocityjs. This issue occurs during the… CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2026-44966 2026-06-3 03:40 2026-05-27 Show GitHub Exploit DB Packet Storm
3168 8.2 HIGH
Network
github enterprise_server A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to send crafted requests to internal services by exploiting insu… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-9312 2026-06-3 03:31 2026-05-27 Show GitHub Exploit DB Packet Storm
3169 7.5 HIGH
Network
osgeo mapserver MapServer is a system for developing web-based GIS applications. From 6.4.0 to before 8.6.3, msSLDParseUserStyle always calls _SLDApplyRuleValues(psRule, psLayer, 1); for any <Rule> carrying <ElseFil… CWE-129
CWE-476
 Improper Validation of Array Index
 NULL Pointer Dereference
CVE-2026-45104 2026-06-3 03:19 2026-05-28 Show GitHub Exploit DB Packet Storm
3170 5.5 MEDIUM
Local
google android In verifySignature of ApkChecksums.java, there is a possible way to cause a crash due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-0069 2026-06-3 03:06 2026-06-2 Show GitHub Exploit DB Packet Storm