Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217471 10 危険 ヒューレット・パッカード - HP Helion Cloud Development Platform の Application Lifecycle Service における任意のコードを実行される脆弱性 CWE-310
暗号の問題
CVE-2014-7878 2014-11-17 14:24 2014-11-10 Show GitHub Exploit DB Packet Storm
217472 9 危険 Magmi project - Magento Community Edition 用 MAGMI プラグインの magmi/web/magmi.php における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-8770 2014-11-17 14:07 2014-10-24 Show GitHub Exploit DB Packet Storm
217473 5 警告 GNU Project - GnuTLS の gnutls_ecc.c 内の _gnutls_ecc_ansi_x963_expor 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-310
暗号の問題
CVE-2014-8564 2014-11-17 13:48 2014-11-10 Show GitHub Exploit DB Packet Storm
217474 4.3 警告 Jexperts - JExperts Channel Platform におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8557 2014-11-17 12:30 2014-10-27 Show GitHub Exploit DB Packet Storm
217475 7.5 危険 MantisBT Group - MantisBT の api/soap/mc_project_api.php の mc_project_get_attachments 関数における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-8554 2014-11-17 12:29 2014-10-30 Show GitHub Exploit DB Packet Storm
217476 2.1 注意 FreeBSD - FreeBSD の setlogin 関数におけるカーネルメモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-8476 2014-11-17 12:28 2014-11-4 Show GitHub Exploit DB Packet Storm
217477 5 警告 Open Atrium project - Drupal 用 Open Atrium Core モジュールにおけるアクセス制限を回避される脆弱性 CWE-200
情報漏えい
CVE-2014-8736 2014-11-14 16:30 2014-10-15 Show GitHub Exploit DB Packet Storm
217478 4 警告 Bad Behavior - Drupal 用 Bad Behavior モジュールにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-8735 2014-11-14 16:23 2014-10-21 Show GitHub Exploit DB Packet Storm
217479 3.5 注意 Gizra - Drupal 用 Organic Groups Menu モジュールにおけるモジュールの設定を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-8734 2014-11-14 16:19 2014-10-28 Show GitHub Exploit DB Packet Storm
217480 5 警告 Progress Software Corporation - Progress Software OpenEdge の report/reportViewAction.jsp におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-8555 2014-11-14 15:42 2014-10-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
141 8.8 HIGH
Network
google chrome Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: … New CWE-416
 Use After Free
CVE-2026-10952 2026-06-9 02:09 2026-06-5 Show GitHub Exploit DB Packet Storm
142 8.8 HIGH
Network
google chrome Use after free in Autofill in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a… New CWE-416
 Use After Free
CVE-2026-10951 2026-06-9 02:09 2026-06-5 Show GitHub Exploit DB Packet Storm
143 6.5 MEDIUM
Network
google chrome Insufficient policy enforcement in Autofill in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Hi… New CWE-693
 Protection Mechanism Failure
CVE-2026-10950 2026-06-9 02:08 2026-06-5 Show GitHub Exploit DB Packet Storm
144 8.1 HIGH
Network
google chrome Out of bounds read in WebGPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium) New CWE-125
Out-of-bounds Read
CVE-2026-11015 2026-06-9 02:07 2026-06-5 Show GitHub Exploit DB Packet Storm
145 6.5 MEDIUM
Network
google chrome Insufficient validation of untrusted input in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive inform… New CWE-20
 Improper Input Validation 
CVE-2026-11013 2026-06-9 02:07 2026-06-5 Show GitHub Exploit DB Packet Storm
146 6.5 MEDIUM
Network
google chrome Insufficient policy enforcement in Autofill in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Hi… New CWE-693
 Protection Mechanism Failure
CVE-2026-10944 2026-06-9 02:07 2026-06-5 Show GitHub Exploit DB Packet Storm
147 7.8 HIGH
Local
google chrome Inappropriate implementation in UI in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to perform privilege escalation via a malicious file. (Chromium security severity: High) New CWE-20
NVD-CWE-noinfo
 Improper Input Validation 
CVE-2026-10942 2026-06-9 02:04 2026-06-5 Show GitHub Exploit DB Packet Storm
148 8.3 HIGH
Network
google chrome Race in Codecs in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (… New CWE-362
Race Condition
CVE-2026-10940 2026-06-9 02:04 2026-06-5 Show GitHub Exploit DB Packet Storm
149 7.8 HIGH
Local
x.org
redhat
x_server
xwayland
enterprise_linux
A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. The X server has multiple stack buffers sized XkbMaxShiftLevel * XkbNumKbdGroups but CheckKeyTypes() does not verify o… New CWE-121
Stack-based Buffer Overflow
CVE-2026-50258 2026-06-9 01:46 2026-06-5 Show GitHub Exploit DB Packet Storm
150 7.8 HIGH
Local
x.org
redhat
x_server
xwayland
enterprise_linux
A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multiple fence triggers can trigger a use-after-free function pointer call. An attack… New CWE-416
 Use After Free
CVE-2026-50257 2026-06-9 01:45 2026-06-5 Show GitHub Exploit DB Packet Storm