Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210621 9.3 危険 ASUSTeK Computer Inc. - ASUS TM-AC1900 ルータにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-6949 2015-09-17 15:41 2015-09-2 Show GitHub Exploit DB Packet Storm
210622 6.8 警告 コーレル株式会社 - Corel WordPerfect の Microsoft Word ドキュメント変換機能におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-6948 2015-09-17 15:40 2015-09-2 Show GitHub Exploit DB Packet Storm
210623 9.3 危険 Borland Software Corporation - Borland AccuRev の Reprise License Manager サービスの activate_doit 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-6947 2015-09-17 15:39 2015-09-2 Show GitHub Exploit DB Packet Storm
210624 9.3 危険 Borland Software Corporation - Borland AccuRev の Reprise License Manager サービスにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-6946 2015-09-17 15:39 2015-09-2 Show GitHub Exploit DB Packet Storm
210625 7.8 危険 Indian Bend Solutions - WordPress 用 IBS Mappro プラグインの lib/download.php における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-5472 2015-09-17 14:53 2015-07-8 Show GitHub Exploit DB Packet Storm
210626 4.3 警告 s9y - Serendipity の 2k11 テーマ内の js/2k11.min.js におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-6969 2015-09-17 14:40 2015-07-24 Show GitHub Exploit DB Packet Storm
210627 6.5 警告 s9y - Serendipity の include/functions_images.inc.php 内の serendipity_isActiveFile 関数における任意の PHP コードを実行される脆弱性 CWE-Other
その他
CVE-2015-6968 2015-09-17 14:40 2015-07-24 Show GitHub Exploit DB Packet Storm
210628 6 警告 s9y - Serendipity の include/functions_comments.inc.php 内の serendipity_checkCommentToken 関数における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-6943 2015-09-17 14:40 2015-07-24 Show GitHub Exploit DB Packet Storm
210629 5 警告 FreeType Project
Canonical
- FreeType の type1/t1load.c 内の parse_encoding 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-9745 2015-09-17 14:38 2014-02-19 Show GitHub Exploit DB Packet Storm
210630 4.3 警告 Manuel Fernandez Paradela Ledon - JSP/MySQL Administrador Web におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-6945 2015-09-17 14:36 2015-09-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
531 6.5 MEDIUM
Network
- - Insufficient validation of untrusted input in Extensions in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a cra… New CWE-20
 Improper Input Validation 
CVE-2026-11658 2026-06-9 23:16 2026-06-9 Show GitHub Exploit DB Packet Storm
532 6.5 MEDIUM
Network
- - Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page… New CWE-20
 Improper Input Validation 
CVE-2026-11653 2026-06-9 23:16 2026-06-9 Show GitHub Exploit DB Packet Storm
533 8.3 HIGH
Network
- - Integer overflow in libyuv in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.… New CWE-472
 External Control of Assumed-Immutable Web Parameter
CVE-2026-11640 2026-06-9 23:16 2026-06-9 Show GitHub Exploit DB Packet Storm
534 8.8 HIGH
Network
- - Versions of the package degit before 2.8.6, from 3.0.0 and before 3.3.1 are vulnerable to Command Injection due to improper sanitisation of user input for git shell commands directly invoked with exe… New CWE-78
CWE-77
OS Command 
Command Injection
CVE-2026-11572 2026-06-9 23:16 2026-06-9 Show GitHub Exploit DB Packet Storm
535 6.5 MEDIUM
Network
google chrome Insufficient policy enforcement in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low) Update CWE-693
 Protection Mechanism Failure
CVE-2026-11288 2026-06-9 22:59 2026-06-5 Show GitHub Exploit DB Packet Storm
536 6.5 MEDIUM
Network
google chrome Side-channel information leakage in Paint in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low) Update CWE-1300
CWE-203
 Improper Protection of Physical Side Channels
 Information Exposure Through Discrepancy
CVE-2026-11289 2026-06-9 22:58 2026-06-5 Show GitHub Exploit DB Packet Storm
537 7.5 HIGH
Network
- - Shenzhen Tenda Technology Co., Ltd Tenda AC1206 v15.03.06.23 was discovered to contain multiple stack overflows in the fromGstDhcpSetSer function via the username and password parameters. These vulne… New CWE-121
Stack-based Buffer Overflow
CVE-2026-36789 2026-06-9 22:57 2026-06-9 Show GitHub Exploit DB Packet Storm
538 6.5 MEDIUM
Network
- - OfflineIMAP before 8.0.3 trusts the server with their STARTTLS capability prior to authentication, which allows STRIPTLS/man-in-the-middle attacks, taking over the connection and extracting account c… New CWE-348
 Use of Less Trusted Source
CVE-2020-37248 2026-06-9 22:57 2026-06-9 Show GitHub Exploit DB Packet Storm
539 7.5 HIGH
Network
- - Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt kernel heap memory. By creating resources of certain types and presenting a set of parameters t… New CWE-122
Heap-based Buffer Overflow
CVE-2026-22164 2026-06-9 22:57 2026-06-9 Show GitHub Exploit DB Packet Storm
540 7.1 HIGH
Local
- - Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of a mapping state maintained for a sparse memory allocation. The product accidenta… New CWE-468
CVE-2026-34194 2026-06-9 22:57 2026-06-9 Show GitHub Exploit DB Packet Storm