Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
211871 4 警告 シスコシステムズ - Cisco Connected Grid Network Management System の Web GUI におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-6362 2015-11-11 12:10 2015-11-9 Show GitHub Exploit DB Packet Storm
211872 10 危険 オラクル - Debian openjdk-7 パッケージの .desktop ファイルにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-8873 2015-11-11 12:07 2014-11-14 Show GitHub Exploit DB Packet Storm
211873 2.1 注意 Net-SNMP - OpenBSD の net-snmp パッケージにおける重要なコミュニティ情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-8100 2015-11-11 12:04 2015-11-10 Show GitHub Exploit DB Packet Storm
211874 5 警告 Dan Wilga - Drupal 用 Monster Menus モジュールのゴミ箱機能における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-8095 2015-11-11 12:04 2015-11-4 Show GitHub Exploit DB Packet Storm
211875 10 危険 アドバンテック株式会社 - 複数の Advantech EKI デバイスのファームウェアにおけるアクセス権を取得される脆弱性 CWE-Other
その他
CVE-2015-6476 2015-11-10 17:48 2015-11-5 Show GitHub Exploit DB Packet Storm
211876 2.6 注意 IBM - IBM DataPower Gateways のソフトウェアの GatewayScript モジュールにおける平文データを取得される脆弱性 CWE-200
情報漏えい
CVE-2015-7412 2015-11-10 17:38 2015-10-27 Show GitHub Exploit DB Packet Storm
211877 7.2 危険 IBM - IBM Security Guardium の diag における root アクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-5043 2015-11-10 17:38 2015-10-19 Show GitHub Exploit DB Packet Storm
211878 5.5 警告 IBM - IBM Sterling Integrator および Sterling B2B Integrator におけるファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-5019 2015-11-10 17:38 2015-09-30 Show GitHub Exploit DB Packet Storm
211879 8.5 危険 IBM - AIX 上で稼動する IBM PowerHA SystemMirror の CSPOC における "su root" アクションを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-5005 2015-11-10 17:38 2015-09-11 Show GitHub Exploit DB Packet Storm
211880 7.5 危険 IBM - IBM Security Access Manager for Web における任意のファイルを読まれる脆弱性 CWE-Other
その他
CVE-2015-4963 2015-11-10 17:38 2015-10-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
651 6.9 MEDIUM
Network
- - A flaw was found in the Pen Drive report generator. Cluster-sourced data is rendered into HTML reports without proper escaping or sanitization. An attacker with cluster administrator privileges can i… New CWE-79
Cross-site Scripting
CVE-2026-13083 2026-06-27 13:17 2026-06-26 Show GitHub Exploit DB Packet Storm
652 - - - Flowise through 2.2.4 contains an unauthenticated arbitrary file upload vulnerability in the /api/v1/attachments endpoint when storageType is set to local. Attackers can exploit path traversal in the… New CWE-73
 External Control of File Name or Path
CVE-2025-71333 2026-06-27 13:17 2026-06-26 Show GitHub Exploit DB Packet Storm
653 - - - AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.32, there is a DoS vulnerability in AITextSummarizerBlock. Mali… New CWE-405
CWE-770
 Asymmetric Resource Consumption (Amplification)
 Allocation of Resources Without Limits or Throttling
CVE-2025-32394 2026-06-27 13:17 2026-06-27 Show GitHub Exploit DB Packet Storm
654 5.4 MEDIUM
Network
getgrav grav Grav before 1.6.30 contains a cross-site scripting vulnerability in the Admin plugin page editor default security configuration. Privileged users with page editing capabilities can inject malicious s… New CWE-79
Cross-site Scripting
CVE-2020-37256 2026-06-27 13:17 2026-06-26 Show GitHub Exploit DB Packet Storm
655 - - - A command injection vulnerability has been identified in the DHCP option processing logic in multiple TP-Link router models, due to insufficient validation of externally supplied DHCP option data. An… New CWE-78
OS Command 
CVE-2026-11834 2026-06-27 07:16 2026-06-23 Show GitHub Exploit DB Packet Storm
656 7.5 HIGH
Network
imagemagick imagemagick ImageMagick before 7.1.2-15 contains a memory leak vulnerability in multiple coders that write raw pixel data where allocated objects are not properly freed. Attackers can trigger this leak by proces… New CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2026-56368 2026-06-27 06:51 2026-06-24 Show GitHub Exploit DB Packet Storm
657 7.8 HIGH
Local
imagemagick imagemagick ImageMagick before 7.1.2-19 contains an out-of-bounds access vulnerability in ConnectedComponentsImage() when processing connected-components artifacts with invalid indices. Attackers can trigger acc… New CWE-125
Out-of-bounds Read
CVE-2026-56370 2026-06-27 06:50 2026-06-24 Show GitHub Exploit DB Packet Storm
658 7.5 HIGH
Network
angularjs angularjs Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.1, 21.2.17, and 20.3.25, a Denial of Service (DoS) vu… New CWE-400
CWE-1333
 Uncontrolled Resource Consumption
 Inefficient Regular Expression Complexity
CVE-2026-54268 2026-06-27 06:36 2026-06-23 Show GitHub Exploit DB Packet Storm
659 9.8 CRITICAL
Network
langflow langflow IBM Langflow OSS 1.0.0 through 1.8.4 could allow unauthenticated attackers to access protected MCP project resources and execute MCP operations due to improper authorization enforcement in the Stream… New CWE-287
NVD-CWE-noinfo
Improper Authentication
CVE-2026-7664 2026-06-27 06:29 2026-06-23 Show GitHub Exploit DB Packet Storm
660 6.1 MEDIUM
Network
ibm datacap
datacap_navigator
IBM Datacap 9.1.7, 9.1.8, and 9.1.9 and IBM Datacap Navigator 9.1.7, 9.1.8, and 9.1.9 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary J… New CWE-79
Cross-site Scripting
CVE-2026-8059 2026-06-27 06:27 2026-06-23 Show GitHub Exploit DB Packet Storm