Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
213171 4 警告 DELL EMC (旧 EMC Corporation) - EMC Documentum D2 の D2DownloadService.getDownloadUrls サービスメソッドにおける DQL インジェクション攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2015-0548 2015-07-10 16:28 2015-07-1 Show GitHub Exploit DB Packet Storm
213172 4 警告 DELL EMC (旧 EMC Corporation) - EMC Documentum D2 の D2CenterstageService.getComments サービスメソッドにおける DQL インジェクション攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2015-0547 2015-07-10 16:24 2015-07-1 Show GitHub Exploit DB Packet Storm
213173 3.5 注意 DELL EMC (旧 EMC Corporation) - 複数の EMC Documentum 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-0551 2015-07-10 15:44 2015-07-1 Show GitHub Exploit DB Packet Storm
213174 6.5 警告 DELL EMC (旧 EMC Corporation) - 複数の EMC Documentum 製品における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-4524 2015-07-10 15:44 2015-07-1 Show GitHub Exploit DB Packet Storm
213175 9 危険 DELL EMC (旧 EMC Corporation) - EMC Isilon OneFS の Web 管理インターフェースのログ収集の実装における root 権限で任意のコマンドを実行される脆弱性 CWE-Other
その他
CVE-2015-4525 2015-07-10 15:43 2015-07-1 Show GitHub Exploit DB Packet Storm
213176 7.5 危険 Grandstream Networks - Grandstream GXV3611_HD カメラに SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-2866 2015-07-10 15:37 2015-07-7 Show GitHub Exploit DB Packet Storm
213177 4.3 警告 OpenSSL Project
レッドハット
- 複数の Red Hat Enterprise Linux 製品の openssl-1.0.1e-25.el7 で配布される OpenSSL におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
CWE-362
CVE-2015-3216 2015-07-10 14:23 2015-05-28 Show GitHub Exploit DB Packet Storm
213178 5.1 警告 LINE株式会社 - LINE@ における意図しないアプリ内関数が呼び出される脆弱性 CWE-DesignError
CVE-2015-2968 2015-07-10 14:04 2015-07-10 Show GitHub Exploit DB Packet Storm
213179 4.3 警告 ANTlabs - 複数の ANTlabs デバイス上で稼動する ANTlabs InnGate ファームウェアの index-login.ant におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-2850 2015-07-10 14:02 2015-07-6 Show GitHub Exploit DB Packet Storm
213180 7.5 危険 ANTlabs - 複数の ANTlabs デバイス上で稼動する ANTlabs InnGate ファームウェアの main.ant における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-2849 2015-07-10 13:59 2015-07-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3611 7.8 HIGH
Local
google android In Load of LoadedArsc.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User… CWE-122
Heap-based Buffer Overflow
CVE-2026-0100 2026-06-3 22:39 2026-06-2 Show GitHub Exploit DB Packet Storm
3612 5.5 MEDIUM
Local
google android In multiple functions of DevicePolicyManagerService.java, there is a possible desync from persistence due to improper input validation. This could lead to local denial of service with no additional e… CWE-20
 Improper Input Validation 
CVE-2026-28578 2026-06-3 22:35 2026-06-2 Show GitHub Exploit DB Packet Storm
3613 7.8 HIGH
Local
google android In multiple functions, there is a possible desync in persistence due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. Use… CWE-120
Classic Buffer Overflow
CVE-2026-28580 2026-06-3 22:35 2026-06-2 Show GitHub Exploit DB Packet Storm
3614 4.0 MEDIUM
Local
google android In fixInitiatingUserIfNecessary of CallIntentProcessor.java, there is a possible way to make an emergency call due to a logic error in the code. This could lead to local with null execution privileg… CWE-476
 NULL Pointer Dereference
CVE-2026-28581 2026-06-3 22:29 2026-06-2 Show GitHub Exploit DB Packet Storm
3615 3.3 LOW
Local
google android In multiple functions of AppOpsService.java, there is a possible missing permission check due to a permissions bypass. This could lead to local information disclosure with no additional execution pri… CWE-269
 Improper Privilege Management
CVE-2026-28586 2026-06-3 22:26 2026-06-2 Show GitHub Exploit DB Packet Storm
3616 8.0 HIGH
Adjacent
- - A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2026-3012 2026-06-3 15:16 2026-05-27 Show GitHub Exploit DB Packet Storm
3617 8.8 HIGH
Network
- - @pensar/apex <= 0.0.58 is vulnerable to OS command injection via the smart_enumerate tool. The createSmartEnumerateTool() function in src/core/agent/tools.ts constructs a shell command by concatenati… CWE-78
OS Command 
CVE-2026-36044 2026-06-3 13:17 2026-05-27 Show GitHub Exploit DB Packet Storm
3618 8.3 HIGH
Network
google chrome Use after free in Passwords in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafte… CWE-416
 Use After Free
CVE-2026-10000 2026-06-3 11:32 2026-05-29 Show GitHub Exploit DB Packet Storm
3619 6.5 MEDIUM
Network
google chrome Uninitialized Use in GPU in Google Chrome on Android prior to 148.0.7778.216 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromi… CWE-457
 Use of Uninitialized Variable
CVE-2026-10008 2026-06-3 11:31 2026-05-29 Show GitHub Exploit DB Packet Storm
3620 5.0 MEDIUM
Network
google chrome Inappropriate implementation in Input in Google Chrome on Android prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTM… CWE-346
 Origin Validation Error
CVE-2026-10010 2026-06-3 11:31 2026-05-29 Show GitHub Exploit DB Packet Storm