Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215031 3.5 注意 マイクロソフト - Microsoft SharePoint Server 2013 および SharePoint Foundation 2013 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-1636 2015-03-12 17:30 2015-03-10 Show GitHub Exploit DB Packet Storm
215032 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルにおける権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-0075 2015-03-12 17:30 2015-03-10 Show GitHub Exploit DB Packet Storm
215033 3.5 注意 マイクロソフト - Microsoft SharePoint Foundation および Microsoft SharePoint Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-1633 2015-03-12 17:30 2015-03-10 Show GitHub Exploit DB Packet Storm
215034 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルの Windows レジストリの仮想化機能における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-0073 2015-03-12 17:30 2015-03-10 Show GitHub Exploit DB Packet Storm
215035 9.3 危険 マイクロソフト - 複数の Microsoft 製品における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-0097 2015-03-12 17:30 2015-03-10 Show GitHub Exploit DB Packet Storm
215036 4.3 警告 マイクロソフト - 複数の Microsoft Windows 製品におけるプロセスメモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-0080 2015-03-12 17:30 2015-03-10 Show GitHub Exploit DB Packet Storm
215037 9.3 危険 マイクロソフト - 複数の Microsoft 製品における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2015-0086 2015-03-12 17:30 2015-03-10 Show GitHub Exploit DB Packet Storm
215038 9.3 危険 マイクロソフト - 複数の Microsoft 製品における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-0085 2015-03-12 17:30 2015-03-10 Show GitHub Exploit DB Packet Storm
215039 2.1 注意 マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバにおけるカーネルメモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-0077 2015-03-12 16:34 2015-03-10 Show GitHub Exploit DB Packet Storm
215040 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバの win32k.sys における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-0078 2015-03-12 16:34 2015-03-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3061 8.0 HIGH
Adjacent
google android In multiple locations, there is a possible way to bypass user interaction when pairing an LE device due to a logic error. This could lead to remote (proximal/adjacent) escalation of privilege with no… CWE-693
 Protection Mechanism Failure
CVE-2026-0097 2026-06-3 22:41 2026-06-2 Show GitHub Exploit DB Packet Storm
3062 7.8 HIGH
Local
google android In getCallingPackageName of Shared.java, there is a possible way to bypass activity start restrictions due to a confused deputy. This could lead to local escalation of privilege with no additional ex… CWE-441
Confused Deputy
CVE-2026-0098 2026-06-3 22:40 2026-06-2 Show GitHub Exploit DB Packet Storm
3063 7.8 HIGH
Local
google android In onNullBinding of HostEmulationManager.java, there is a possible way to launch an activity from the background due to a logic error in the code. This could lead to local escalation of privilege wit… CWE-273
 Improper Check for Dropped Privileges
CVE-2026-0099 2026-06-3 22:40 2026-06-2 Show GitHub Exploit DB Packet Storm
3064 7.8 HIGH
Local
google android In Load of LoadedArsc.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User… CWE-122
Heap-based Buffer Overflow
CVE-2026-0100 2026-06-3 22:39 2026-06-2 Show GitHub Exploit DB Packet Storm
3065 5.5 MEDIUM
Local
google android In multiple functions of DevicePolicyManagerService.java, there is a possible desync from persistence due to improper input validation. This could lead to local denial of service with no additional e… CWE-20
 Improper Input Validation 
CVE-2026-28578 2026-06-3 22:35 2026-06-2 Show GitHub Exploit DB Packet Storm
3066 7.8 HIGH
Local
google android In multiple functions, there is a possible desync in persistence due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. Use… CWE-120
Classic Buffer Overflow
CVE-2026-28580 2026-06-3 22:35 2026-06-2 Show GitHub Exploit DB Packet Storm
3067 4.0 MEDIUM
Local
google android In fixInitiatingUserIfNecessary of CallIntentProcessor.java, there is a possible way to make an emergency call due to a logic error in the code. This could lead to local with null execution privileg… CWE-476
 NULL Pointer Dereference
CVE-2026-28581 2026-06-3 22:29 2026-06-2 Show GitHub Exploit DB Packet Storm
3068 3.3 LOW
Local
google android In multiple functions of AppOpsService.java, there is a possible missing permission check due to a permissions bypass. This could lead to local information disclosure with no additional execution pri… CWE-269
 Improper Privilege Management
CVE-2026-28586 2026-06-3 22:26 2026-06-2 Show GitHub Exploit DB Packet Storm
3069 8.0 HIGH
Adjacent
- - A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2026-3012 2026-06-3 15:16 2026-05-27 Show GitHub Exploit DB Packet Storm
3070 8.8 HIGH
Network
- - @pensar/apex <= 0.0.58 is vulnerable to OS command injection via the smart_enumerate tool. The createSmartEnumerateTool() function in src/core/agent/tools.ts constructs a shell command by concatenati… CWE-78
OS Command 
CVE-2026-36044 2026-06-3 13:17 2026-05-27 Show GitHub Exploit DB Packet Storm