Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218761 5 警告 IBM - IBM WebSphere Portal におけるファイル名の有効性を決定される脆弱性 CWE-200
情報漏えい
CVE-2014-4821 2014-10-30 16:06 2014-10-24 Show GitHub Exploit DB Packet Storm
218762 3.5 注意 IBM - IBM WebSphere Portal におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-4814 2014-10-30 16:05 2014-10-24 Show GitHub Exploit DB Packet Storm
218763 6.5 警告 IBM - IBM WebSphere Portal における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-4808 2014-10-30 16:05 2014-10-24 Show GitHub Exploit DB Packet Storm
218764 6 警告 IBM - IBM TRIRIGA Application Platform の birtviewer.query におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-4839 2014-10-30 15:52 2014-10-8 Show GitHub Exploit DB Packet Storm
218765 5 警告 シスコシステムズ - ASR901 デバイス上で稼働する Cisco IOS におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-3293 2014-10-30 14:52 2014-10-27 Show GitHub Exploit DB Packet Storm
218766 4.3 警告 F5 Networks - 複数の F5 BIG-IP 製品の Configuration ユーティリティの tmui/dashboard/echo.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4023 2014-10-30 14:40 2014-08-25 Show GitHub Exploit DB Packet Storm
218767 7.8 危険 openarena
ioquake3
tremulous
- ioquake3 などで使用される Quake3 Arena の server/sv_main.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-5077 2014-10-30 14:20 2010-01-3 Show GitHub Exploit DB Packet Storm
218768 7.5 危険 WordPress.org - WordPress の wp-links/links.all.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2003-1599 2014-10-30 13:51 2003-06-2 Show GitHub Exploit DB Packet Storm
218769 4 警告 Oliver Eglseder - TYPO3 用 fal_sftp エクステンションにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2014-8327 2014-10-30 13:43 2014-09-15 Show GitHub Exploit DB Packet Storm
218770 5 警告 FreeBSD - FreeBSD の routed におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3955 2014-10-29 18:27 2014-10-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
481 8.7 HIGH
Network
gitlab gitlab GitLab has remediated an issue in GitLab EE affecting all versions from 15.5 before 18.10.8, 18.11 before 18.11.5, and 19.0 before 19.0.2 that under certain conditions could have allowed an authentic… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-6552 2026-06-12 02:36 2026-06-11 Show GitHub Exploit DB Packet Storm
482 4.6 MEDIUM
Adjacent
espressif esp-idf ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.3, and 6.0, an out-of-bounds read exists in the BlueDroid AVRCP vendor-command parser (av… New CWE-125
Out-of-bounds Read
CVE-2026-46532 2026-06-12 02:36 2026-06-10 Show GitHub Exploit DB Packet Storm
483 9.8 CRITICAL
Network
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Stack-based buffer overflow in Windows DHCP Client allows an unauthorized attacker to execute code over a network. Update CWE-121
Stack-based Buffer Overflow
CVE-2026-44815 2026-06-12 02:35 2026-06-10 Show GitHub Exploit DB Packet Storm
484 3.7 LOW
Network
gitlab gitlab GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.9 before 18.10.8, 18.11 before 18.11.5, and 19.0 before 19.0.2 that under certain conditions could have allowed an authen… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-6976 2026-06-12 02:34 2026-06-11 Show GitHub Exploit DB Packet Storm
485 7.5 HIGH
Network
gitlab gitlab GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.10 before 18.10.8, 18.11 before 18.11.5, and 19.0 before 19.0.2 that under certain conditions could have allowed an unaut… New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-7250 2026-06-12 02:34 2026-06-11 Show GitHub Exploit DB Packet Storm
486 4.3 MEDIUM
Network
gitlab gitlab GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.9 before 18.10.8, 18.11 before 18.11.5, and 19.0 before 19.0.2 that under certain conditions, could have allowed an unaut… New CWE-153
 Improper Neutralization of Substitution Characters
CVE-2026-9694 2026-06-12 02:32 2026-06-11 Show GitHub Exploit DB Packet Storm
487 6.1 MEDIUM
Network
adobe experience_manager Adobe Experience Manager Forms JEE versions LTS SP1, 6.5.24.0 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scr… Update CWE-79
Cross-site Scripting
CVE-2026-34691 2026-06-12 02:29 2026-06-10 Show GitHub Exploit DB Packet Storm
488 6.5 MEDIUM
Network
gitlab gitlab GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.10 before 18.10.8, 18.11 before 18.11.5, and 19.0 before 19.0.2 that under certain conditions could have allowed an authe… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-9204 2026-06-12 02:28 2026-06-11 Show GitHub Exploit DB Packet Storm
489 8.7 HIGH
Network
gitlab gitlab GitLab has remediated an issue in GitLab EE affecting all versions from 13.1.4 before 18.10.8, 18.11 before 18.11.5, and 19.0 before 19.0.2 that under certain conditions could have allowed an authent… New CWE-79
Cross-site Scripting
CVE-2026-8589 2026-06-12 02:28 2026-06-11 Show GitHub Exploit DB Packet Storm
490 4.7 MEDIUM
Network
adobe experience_manager Adobe Experience Manager Forms JEE versions LTS SP1, 6.5.24.0 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject … Update CWE-79
Cross-site Scripting
CVE-2026-34693 2026-06-12 02:22 2026-06-10 Show GitHub Exploit DB Packet Storm