Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
211 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける不変と仮定される Web パラメータの外部制御に関する脆弱性 New CWE-472
不変と仮定される Web パラメータの外部制御
CVE-2026-10019 2026-06-3 17:03 2026-05-28 Show GitHub Exploit DB Packet Storm
212 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける入力確認に関する脆弱性 New CWE-20
CWE-noinfo
CVE-2026-10021 2026-06-3 17:03 2026-05-28 Show GitHub Exploit DB Packet Storm
213 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける型の取り違えに関する脆弱性 New CWE-843
型の取り違え
CVE-2026-10022 2026-06-3 17:03 2026-05-28 Show GitHub Exploit DB Packet Storm
214 6.1 警告
Network
サムスン account サムスンのaccountにおけるオープンリダイレクトの脆弱性 New CWE-601
オープンリダイレクト
CVE-2026-20994 2026-06-3 17:03 2026-03-16 Show GitHub Exploit DB Packet Storm
215 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける有効期限後のメモリの解放の欠如に関する脆弱性 New CWE-401
有効期限後のメモリの解放の欠如
CVE-2026-23258 2026-06-3 17:03 2026-03-18 Show GitHub Exploit DB Packet Storm
216 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 New CWE-noinfo
情報不足
CVE-2026-23259 2026-06-3 17:03 2026-03-18 Show GitHub Exploit DB Packet Storm
217 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける有効期限後のメモリの解放の欠如に関する脆弱性 New CWE-401
有効期限後のメモリの解放の欠如
CVE-2026-23260 2026-06-3 17:03 2026-03-18 Show GitHub Exploit DB Packet Storm
218 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 New CWE-noinfo
情報不足
CVE-2026-23264 2026-06-3 17:03 2026-03-18 Show GitHub Exploit DB Packet Storm
219 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 New CWE-noinfo
情報不足
CVE-2026-23265 2026-06-3 17:03 2026-03-18 Show GitHub Exploit DB Packet Storm
220 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおけるゼロ除算に関する脆弱性 New CWE-369
ゼロ除算
CVE-2026-23266 2026-06-3 17:03 2026-03-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1171 5.5 MEDIUM
Local
google android In multiple functions of DevicePolicyManagerService.java, there is a possible desync from persistence due to improper input validation. This could lead to local denial of service with no additional e… New CWE-20
 Improper Input Validation 
CVE-2026-28578 2026-06-3 22:35 2026-06-2 Show GitHub Exploit DB Packet Storm
1172 7.8 HIGH
Local
google android In multiple functions, there is a possible desync in persistence due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. Use… New CWE-120
Classic Buffer Overflow
CVE-2026-28580 2026-06-3 22:35 2026-06-2 Show GitHub Exploit DB Packet Storm
1173 4.0 MEDIUM
Local
google android In fixInitiatingUserIfNecessary of CallIntentProcessor.java, there is a possible way to make an emergency call due to a logic error in the code. This could lead to local with null execution privileg… New CWE-476
 NULL Pointer Dereference
CVE-2026-28581 2026-06-3 22:29 2026-06-2 Show GitHub Exploit DB Packet Storm
1174 3.3 LOW
Local
google android In multiple functions of AppOpsService.java, there is a possible missing permission check due to a permissions bypass. This could lead to local information disclosure with no additional execution pri… New CWE-269
 Improper Privilege Management
CVE-2026-28586 2026-06-3 22:26 2026-06-2 Show GitHub Exploit DB Packet Storm
1175 8.0 HIGH
Adjacent
- - A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and… Update CWE-345
 Insufficient Verification of Data Authenticity
CVE-2026-3012 2026-06-3 15:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1176 8.8 HIGH
Network
- - @pensar/apex <= 0.0.58 is vulnerable to OS command injection via the smart_enumerate tool. The createSmartEnumerateTool() function in src/core/agent/tools.ts constructs a shell command by concatenati… Update CWE-78
OS Command 
CVE-2026-36044 2026-06-3 13:17 2026-05-27 Show GitHub Exploit DB Packet Storm
1177 8.3 HIGH
Network
google chrome Use after free in Passwords in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafte… Update CWE-416
 Use After Free
CVE-2026-10000 2026-06-3 11:32 2026-05-29 Show GitHub Exploit DB Packet Storm
1178 6.5 MEDIUM
Network
google chrome Uninitialized Use in GPU in Google Chrome on Android prior to 148.0.7778.216 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromi… Update CWE-457
 Use of Uninitialized Variable
CVE-2026-10008 2026-06-3 11:31 2026-05-29 Show GitHub Exploit DB Packet Storm
1179 5.0 MEDIUM
Network
google chrome Inappropriate implementation in Input in Google Chrome on Android prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTM… Update CWE-346
 Origin Validation Error
CVE-2026-10010 2026-06-3 11:31 2026-05-29 Show GitHub Exploit DB Packet Storm
1180 3.1 LOW
Network
google chrome Inappropriate implementation in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Ch… Update CWE-200
Information Exposure
CVE-2026-10011 2026-06-3 11:30 2026-05-29 Show GitHub Exploit DB Packet Storm