Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 12:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215171 5 警告 アップル - Apple iOS および Apple TV のカーネルの mach_port_kobject インターフェースにおける ASLR 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-4496 2015-03-13 15:40 2015-01-27 Show GitHub Exploit DB Packet Storm
215172 5 警告 アップル - Apple iOS および Apple TV の MobileStorageMounter における任意のファイルシステムロケーションにフォルダを作成される脆弱性 CWE-Other
その他
CVE-2015-1062 2015-03-13 15:35 2015-03-9 Show GitHub Exploit DB Packet Storm
215173 7.8 危険 アップル - Apple iOS の CoreTelephony におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-1063 2015-03-13 15:35 2015-03-9 Show GitHub Exploit DB Packet Storm
215174 1.9 注意 アップル - Apple iOS の Springboard におけるアクティベーション要求を回避される脆弱性 CWE-200
情報漏えい
CVE-2015-1064 2015-03-13 15:35 2015-03-9 Show GitHub Exploit DB Packet Storm
215175 10 危険 アップル - Apple OS X の IOAcceleratorFamily における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2015-1066 2015-03-13 15:35 2015-03-9 Show GitHub Exploit DB Packet Storm
215176 4 警告 Fedora Project - 389 Directory Server における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-8112 2015-03-13 15:16 2014-10-10 Show GitHub Exploit DB Packet Storm
215177 5 警告 Fedora Project - 389 Directory Server における changelog から重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-8105 2015-03-13 15:16 2014-10-10 Show GitHub Exploit DB Packet Storm
215178 7.5 危険 SolarWinds - 複数の SolarWinds 製品で使用される Orion Platform の AccountManagement.asmx サービスの Manage アカウントページにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-9566 2015-03-13 15:06 2015-02-25 Show GitHub Exploit DB Packet Storm
215179 5 警告 Pivotal Software, Inc. - Pivotal Spring フレームワークの Java SockJS クライアントにおける他のセッションにメッセージを送信される脆弱性 CWE-Other
その他
CVE-2015-0201 2015-03-13 14:41 2015-03-6 Show GitHub Exploit DB Packet Storm
215180 4.3 警告 PHP Outburst - Ultimate PHP Board におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-2217 2015-03-13 14:27 2015-03-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3001 6.5 MEDIUM
Network
nextcloud nextcloud_server Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 32.0.0 to before 32.0.9, and 33.0.0 to before 33.0.3, an authenticated attacker can access attachments of… CWE-284
NVD-CWE-noinfo
Improper Access Control
CVE-2026-45282 2026-06-4 02:09 2026-06-2 Show GitHub Exploit DB Packet Storm
3002 7.5 HIGH
Network
prefect prefect In version 3.6.19 of prefecthq/prefect, an authentication bypass vulnerability exists due to the improper handling of URL path exemptions for health check probes. Specifically, the authentication mid… CWE-863
 Incorrect Authorization
CVE-2026-3514 2026-06-4 02:08 2026-06-2 Show GitHub Exploit DB Packet Storm
3003 6.5 MEDIUM
Network
lfprojects mlflow MLflow 3.9.0 with basic-auth (`--app-name basic-auth`) fails to enforce authorization checks for multiple Gateway API 'list' endpoints. Specifically, the `BEFORE_REQUEST_HANDLERS` dictionary in `mlfl… CWE-284
Improper Access Control
CVE-2026-3198 2026-06-4 02:07 2026-06-2 Show GitHub Exploit DB Packet Storm
3004 4.3 MEDIUM
Network
elabftw elabftw eLabFTW is an open source electronic lab notebook. Prior to version 5.4.2, in certain cases, an authenticated user performing a numeric reference/search can return results that include resources the … CWE-200
Information Exposure
CVE-2026-28511 2026-06-4 02:06 2026-06-2 Show GitHub Exploit DB Packet Storm
3005 4.3 MEDIUM
Network
nextcloud nextcloud_server Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 32.0.0 to before 32.0.2, and 33.0.0 to before 33.0.1, the files_lock app did not properly validate the ow… CWE-287
Improper Authentication
CVE-2026-45283 2026-06-4 02:02 2026-06-2 Show GitHub Exploit DB Packet Storm
3006 5.5 MEDIUM
Local
google android In applySimpleFieldMaxSize of DataRowHandler.java, there is a possible way to insert a large contact name due to improper input validation. This could lead to local denial of service with no addition… CWE-20
 Improper Input Validation 
CVE-2026-0085 2026-06-4 02:02 2026-06-2 Show GitHub Exploit DB Packet Storm
3007 8.0 HIGH
Adjacent
google android In l2c_fcr_clone_buf of l2c_fcr.cc, there is a possible way to trigger controlled heap corruption within the privileged Bluetooth process due to an integer overflow. This could lead to local escalati… CWE-190
 Integer Overflow or Wraparound
CVE-2026-0095 2026-06-4 02:00 2026-06-2 Show GitHub Exploit DB Packet Storm
3008 7.8 HIGH
Local
google android In getApplicationLabel of KeyChainActivity.java, there is a possible way to trick the user into approving access to certificates due to misleading or insufficient UI. This could lead to local escalat… CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-0094 2026-06-4 02:00 2026-06-2 Show GitHub Exploit DB Packet Storm
3009 7.8 HIGH
Local
google android In multiple locations, there is a possible misleading UI due to obfuscation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not n… CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-0093 2026-06-4 02:00 2026-06-2 Show GitHub Exploit DB Packet Storm
3010 7.8 HIGH
Local
google android In multiple locations, there is a possible way to execute code in the launcher process due to an over-privileged shell user. This could lead to local escalation of privilege with no additional execut… CWE-269
 Improper Privilege Management
CVE-2026-0091 2026-06-4 01:59 2026-06-2 Show GitHub Exploit DB Packet Storm