Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209691 10 危険 サン・マイクロシステムズ
日立
オラクル
- Oracle Java SE および Java SE Embedded における Serialization に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4805 2015-11-5 17:07 2015-10-20 Show GitHub Exploit DB Packet Storm
209692 5 警告 サン・マイクロシステムズ
日立
オラクル
- Oracle Java SE および Java SE Embedded における JGSS に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4734 2015-11-5 17:07 2015-10-20 Show GitHub Exploit DB Packet Storm
209693 7.6 危険 日立
オラクル
- 複数の Oracle Java 製品 における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4748 2015-11-5 17:03 2015-07-14 Show GitHub Exploit DB Packet Storm
209694 4.3 警告 日立
オラクル
- 複数の Oracle Java 製品 における JNDI に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4749 2015-11-5 17:03 2015-07-14 Show GitHub Exploit DB Packet Storm
209695 2.6 注意 日立
オラクル
- 複数の Oracle Java 製品 における JSSE に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-2625 2015-11-5 17:03 2015-07-14 Show GitHub Exploit DB Packet Storm
209696 5 警告 日立
オラクル
- Oracle Java SE および Java SE Embedded における JMX に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-2621 2015-11-5 17:03 2015-07-14 Show GitHub Exploit DB Packet Storm
209697 5 警告 日立
オラクル
- 複数の Oracle Java 製品における 2D に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-2619 2015-11-5 17:03 2015-07-14 Show GitHub Exploit DB Packet Storm
209698 5 警告 日立
オラクル
- Oracle Java SE および Java SE Embedded における JCE に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-2613 2015-11-5 17:03 2015-07-14 Show GitHub Exploit DB Packet Storm
209699 5 警告 日立
オラクル
- 複数の Oracle Java 製品 における JCE に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-2601 2015-11-5 17:03 2015-07-14 Show GitHub Exploit DB Packet Storm
209700 4.3 警告 日立
オラクル
- Oracle Java SE における Hotspot に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-2596 2015-11-5 17:03 2015-07-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
601 5.3 MEDIUM
Network
- - Hermes WebUI before version 0.51.270 contains a resource exhaustion vulnerability that allows unauthenticated remote attackers to degrade service availability by repeatedly calling the passkey option… New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-49955 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
602 6.5 MEDIUM
Network
- - The Apache Airflow Samba provider's `GCSToSambaOperator` joined GCS object names to the SMB destination path without a containment check, so an object named with `../` segments resolved a write path … New CWE-22
Path Traversal
CVE-2026-49818 2026-06-10 02:17 2026-06-9 Show GitHub Exploit DB Packet Storm
603 7.8 HIGH
Local
- - Improper access control in Microsoft PC Manager allows an authorized attacker to bypass a security feature locally. New CWE-284
Improper Access Control
CVE-2026-49161 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
604 7.1 HIGH
Local
- - Improper input validation in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally. New CWE-20
CWE-23
 Improper Input Validation 
 Relative Path Traversal
CVE-2026-48569 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
605 7.8 HIGH
Local
- - Untrusted search path in Windows Narrator Braille allows an authorized attacker to elevate privileges locally. New CWE-426
 Untrusted Search Path
CVE-2026-48565 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
606 4.6 MEDIUM
Network
- - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. New CWE-79
Cross-site Scripting
CVE-2026-48562 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
607 5.4 MEDIUM
Network
- - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. New CWE-502
 Deserialization of Untrusted Data
CVE-2026-48560 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
608 7.5 HIGH
Network
- - Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. New CWE-416
 Use After Free
CVE-2026-47654 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
609 8.8 HIGH
Network
- - Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. New CWE-416
 Use After Free
CVE-2026-47653 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
610 9.8 CRITICAL
Network
- - External control of file name or path in Azure Stack Edge allows an unauthorized attacker to execute code over a network. New CWE-73
 External Control of File Name or Path
CVE-2026-47643 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm