Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
213671 7.5 危険 オラクル - Oracle JD Edwards Products の JD Edwards EnterpriseOne Tools における Portal SEC に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-6565 2015-01-22 13:54 2015-01-20 Show GitHub Exploit DB Packet Storm
213672 4.3 警告 オラクル - Oracle Fusion Middleware の Oracle Directory Server Enterprise Edition における Admin Console に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-6526 2015-01-22 12:31 2015-01-20 Show GitHub Exploit DB Packet Storm
213673 4.6 警告 オラクル - Oracle Fusion Middleware の Oracle SOA Suite における B2B Engine に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-6548 2015-01-22 12:31 2015-01-20 Show GitHub Exploit DB Packet Storm
213674 5 警告 オラクル - Oracle Fusion Middleware の Oracle WebLogic Server における CIE Related Components に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-6569 2015-01-22 12:31 2015-01-20 Show GitHub Exploit DB Packet Storm
213675 6.8 警告 オラクル - Oracle Fusion Middleware の Oracle HTTP Server における Web Listener に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-6571 2015-01-22 12:31 2015-01-20 Show GitHub Exploit DB Packet Storm
213676 5.5 警告 オラクル - Oracle Fusion Middleware の Oracle Adaptive Access Manager における OAM Integration に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-6576 2015-01-22 12:31 2015-01-20 Show GitHub Exploit DB Packet Storm
213677 4.3 警告 オラクル - Oracle Fusion Middleware の Oracle Reports Developer における脆弱性 CWE-noinfo
情報不足
CVE-2014-6580 2015-01-22 12:31 2015-01-20 Show GitHub Exploit DB Packet Storm
213678 3.5 注意 オラクル - Oracle Fusion Middleware の Oracle OpenSSO における SAML に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-6592 2015-01-22 12:31 2015-01-20 Show GitHub Exploit DB Packet Storm
213679 5 警告 オラクル - Oracle Fusion Middleware の BI Publisher における BI Publisher Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-0362 2015-01-22 12:31 2015-01-20 Show GitHub Exploit DB Packet Storm
213680 5 警告 オラクル - Oracle Fusion Middleware の Oracle Access Manager における SSO Engine に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-0367 2015-01-22 12:31 2015-01-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2571 5.9 MEDIUM
Network
vercel next.js Next.js is a React framework for building full-stack web applications. From 10.0.0 to before 15.5.16 and 16.2.5, when self-hosting Next.js with the default image loader, the Image Optimization API fe… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-44577 2026-05-14 05:00 2026-05-14 Show GitHub Exploit DB Packet Storm
2572 5.5 MEDIUM
Local
pengutronix barebox barebox version prior to 2026.04.0 contains a denial-of-service vulnerability in ext4 directory parsing in fs/ext4/ext4_common.c where the ext4fs_iterate_dir() function fails to validate that directo… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-34962 2026-05-14 04:58 2026-05-12 Show GitHub Exploit DB Packet Storm
2573 7.7 HIGH
Local
pengutronix barebox barebox prior to version 2026.04.0 contains out-of-bounds read vulnerabilities in ext4 extent parsing due to missing validation of the eh_entries field against buffer capacity in fs/ext4/ext4_common.… CWE-125
Out-of-bounds Read
CVE-2026-34961 2026-05-14 04:57 2026-05-12 Show GitHub Exploit DB Packet Storm
2574 7.8 HIGH
Local
pengutronix barebox barebox version prior to 2026.04.0 contains multiple memory-safety vulnerabilities in the EFI PE loader in efi/loader/pe.c where integer overflow in virtual image size computation using 32-bit arithm… CWE-190
 Integer Overflow or Wraparound
CVE-2026-34963 2026-05-14 04:44 2026-05-12 Show GitHub Exploit DB Packet Storm
2575 7.8 HIGH
Local
adobe after_effects After Effects versions 26.0, 25.6.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitat… CWE-121
Stack-based Buffer Overflow
CVE-2026-34690 2026-05-14 04:42 2026-05-13 Show GitHub Exploit DB Packet Storm
2576 7.8 HIGH
Local
adobe substance_3d_designer Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation … CWE-787
 Out-of-bounds Write
CVE-2026-34682 2026-05-14 04:40 2026-05-13 Show GitHub Exploit DB Packet Storm
2577 7.8 HIGH
Local
adobe substance_3d_designer Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation … CWE-787
 Out-of-bounds Write
CVE-2026-34681 2026-05-14 04:40 2026-05-13 Show GitHub Exploit DB Packet Storm
2578 6.3 MEDIUM
Local
adobe substance_3d_designer Substance3D - Designer versions 15.1.0 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrary file sy… CWE-22
Path Traversal
CVE-2026-34664 2026-05-14 04:40 2026-05-13 Show GitHub Exploit DB Packet Storm
2579 9.3 CRITICAL
Network
adobe connect_desktop_application Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. An … CWE-863
 Incorrect Authorization
CVE-2026-34660 2026-05-14 04:39 2026-05-13 Show GitHub Exploit DB Packet Storm
2580 9.6 CRITICAL
Network
adobe connect_desktop_application Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current … CWE-502
 Deserialization of Untrusted Data
CVE-2026-34659 2026-05-14 04:38 2026-05-13 Show GitHub Exploit DB Packet Storm