Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2171 - - 日立 Hitachi Virtual Storage Platform 日立ディスクアレイシステムにおけるSVP 脆弱性対策について (2026年3月分) - CVE-2026-23667
CVE-2026-23668
CVE-2026-23669
CVE-2026-23671
CVE-2026-23672
CVE-2026-23673
CVE-2026-23674
CVE-2026-24282
CVE-2026-24285
CVE-2026-24287
CVE-2026-24288
C…
2026-05-25 11:30 2026-05-20 Show GitHub Exploit DB Packet Storm
2172 5.5 警告
Local
Amazon.com, Inc. AWS API MCP Server Amazon.com, Inc.のAWS API MCP Serverにおける代替パスの保護に関する脆弱性 CWE-424
代替パスの不適切な保護
CVE-2026-4270 2026-05-25 10:26 2026-03-16 Show GitHub Exploit DB Packet Storm
2173 6.5 警告
Network
ベリタス Veritas InfoScale Operations Manager ベリタスのVeritas InfoScale Operations ManagerにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-44923 2026-05-25 10:26 2026-05-20 Show GitHub Exploit DB Packet Storm
2174 5.4 警告
Network
ベリタス Veritas InfoScale Operations Manager ベリタスのVeritas InfoScale Operations Managerにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-44924 2026-05-25 10:26 2026-05-20 Show GitHub Exploit DB Packet Storm
2175 8.8 重要
Adjacent
ベリタス Veritas InfoScale Operations Manager ベリタスのVeritas InfoScale Operations Managerにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-44925 2026-05-25 10:26 2026-05-20 Show GitHub Exploit DB Packet Storm
2176 6.1 警告
Network
SimpleSAMLphp simplesamlphp-casserver SimpleSAMLphpのsimplesamlphp-casserverにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2025-65954 2026-05-25 10:26 2026-05-18 Show GitHub Exploit DB Packet Storm
2177 5.3 警告
Network
LupinLin1 JiMeng Web MCP Server LupinLin1のJiMeng Web MCP Serverにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2025-70040 2026-05-25 10:25 2026-03-9 Show GitHub Exploit DB Packet Storm
2178 5.4 警告
Network
ERLANG Erlang/ssh
Erlang/OTP
ERLANGのErlang/OTP等の複数製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-23942 2026-05-25 10:25 2026-03-13 Show GitHub Exploit DB Packet Storm
2179 5.3 警告
Network
ERLANG Erlang/ssh
Erlang/OTP
ERLANGのErlang/OTP等の複数製品における高圧縮データの処理 (データ増幅)に関する脆弱性 CWE-409
高圧縮データの不適切な処理 (データ増幅)
CVE-2026-23943 2026-05-25 10:25 2026-03-13 Show GitHub Exploit DB Packet Storm
2180 7.8 重要
Local
Uderzo Software SpaceSniffer Uderzo SoftwareのSpaceSnifferにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-26738 2026-05-25 10:25 2026-03-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3101 7.8 HIGH
Local
qualcomm cologne_firmware
fastconnect_6700_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
iqx5121_firmware
iqx7181_firmware
qca0000_firmware
qcm5430_firmware
qcm6490_firm…
Memory corruption while processing multiple IOCTL command for escape operations. CWE-787
 Out-of-bounds Write
CVE-2026-25259 2026-06-3 00:22 2026-06-2 Show GitHub Exploit DB Packet Storm
3102 7.0 HIGH
Local
qualcomm cologne_firmware
fastconnect_6700_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
qcm5430_firmware
qcm6490_firmware
video_collaboration_vc3_platform_firmware
sc8380x…
Memory Corruption when accessing shared buffers without validation of concurrent user-mode input modifications. CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-25260 2026-06-3 00:22 2026-06-2 Show GitHub Exploit DB Packet Storm
3103 7.5 HIGH
Network
langflow langflow IBM Langflow OSS 1.0.0 through 1.9.0 could allow a denial of service due to uncontrolled resource consumption. CWE-400
 Uncontrolled Resource Consumption
CVE-2026-7528 2026-06-3 00:20 2026-05-27 Show GitHub Exploit DB Packet Storm
3104 8.8 HIGH
Network
ibm controller IBM Controller 11.0.1, 11.1.0, 11.1.1, and 11.1.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to… CWE-798
 Use of Hard-coded Credentials
CVE-2026-5065 2026-06-3 00:16 2026-05-27 Show GitHub Exploit DB Packet Storm
3105 8.8 HIGH
Local
qualcomm cq8750m_firmware
fastconnect_6700_firmware
fastconnect_6800_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
g3x_gen_2_firmware
pandeiro_firmware
qca6391_firmware
Memory corruption while using Strongbox due to missing bounds check. CWE-129
 Improper Validation of Array Index
CVE-2026-25276 2026-06-2 23:58 2026-06-2 Show GitHub Exploit DB Packet Storm
3106 8.8 HIGH
Local
qualcomm cq8750m_firmware
fastconnect_6700_firmware
fastconnect_6800_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
g3x_gen_2_firmware
pandeiro_firmware
qca6391_firmware
Memory corruption while using Strongbox due to buffer overflow. CWE-120
Classic Buffer Overflow
CVE-2026-25277 2026-06-2 23:57 2026-06-2 Show GitHub Exploit DB Packet Storm
3107 6.1 MEDIUM
Network
- - Cross-Site Scripting (XSS) in GeniexWebView component in Transsion AI Assistant Lifestyle application (com.transsion.aiassistantlifestyle) all versions on Android allows remote attacker to execute ar… CWE-79
Cross-site Scripting
CVE-2026-10510 2026-06-2 23:50 2026-06-2 Show GitHub Exploit DB Packet Storm
3108 6.5 MEDIUM
Network
- - D.Launcher 2 component of Slovak eID client ecosystem contains Improper URL Handler Processing vulnerability. Application registers multiple custom URL handlers that could be exploited to initiate fu… CWE-74
CWE-200
Injection
Information Exposure
CVE-2026-8993 2026-06-2 23:50 2026-06-2 Show GitHub Exploit DB Packet Storm
3109 5.7 MEDIUM
Network
- - A vulnerability has been identified in RUGGEDCOM RST2428P (6GK6242-6PA00) (All versions < V4.0). The affected applications stores sensitive information in the browser cache when an authenticated user… CWE-525
 Use of Web Browser Cache Containing Sensitive Information
CVE-2026-41918 2026-06-2 23:50 2026-06-2 Show GitHub Exploit DB Packet Storm
3110 - - - Use of default credentials vulnerability in Roche Diagnostics navify Digital Pathology (RabbitMQ Management interface modules) allows Default Usernames and Passwords. This issue affects navify Digita… CWE-1392
 Use of Default Credentials
CVE-2026-9844 2026-06-2 23:50 2026-06-2 Show GitHub Exploit DB Packet Storm