Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223661 6.8 警告 Amos Benari - Ruby 用 rbovirt gem における中間者攻撃を実行される脆弱性 CWE-310
暗号の問題
CVE-2014-0036 2014-04-22 13:35 2014-02-24 Show GitHub Exploit DB Packet Storm
223662 7.5 危険 Nullsoft - Winamp の gen_jumpex.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4694 2014-04-22 11:07 2013-06-21 Show GitHub Exploit DB Packet Storm
223663 6.4 警告 strongSwan - strongSwan の IKEv2 における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-2338 2014-04-22 10:27 2014-04-14 Show GitHub Exploit DB Packet Storm
223664 4 警告 FreeBSD - FreeBSD の NFS サーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-1453 2014-04-22 09:57 2014-04-8 Show GitHub Exploit DB Packet Storm
223665 6.4 警告 レッドハット - Red Hat OpenStack の PackStack におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0071 2014-04-21 19:10 2014-03-4 Show GitHub Exploit DB Packet Storm
223666 6.5 警告 Katello Project
レッドハット
- Katello および Red Hat Satellite の users コントローラにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-2143 2014-04-21 19:10 2013-02-19 Show GitHub Exploit DB Packet Storm
223667 4.7 警告 DELL EMC (旧 EMC Corporation) - EMC Cloud Tiering Appliance および File Management Appliance における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-0645 2014-04-21 19:10 2014-04-1 Show GitHub Exploit DB Packet Storm
223668 7.8 危険 DELL EMC (旧 EMC Corporation) - EMC Cloud Tiering Appliance における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2014-0644 2014-04-21 19:09 2014-04-1 Show GitHub Exploit DB Packet Storm
223669 1.9 注意 Canonical - Ubuntu Update Manager の DistUpgrade/DistUpgradeViewKDE.py における XAUTHORITY ファイルコンテンツを取得される脆弱性 CWE-59
リンク解釈の問題
CVE-2011-3154 2014-04-21 19:07 2011-11-28 Show GitHub Exploit DB Packet Storm
223670 3.6 注意 Canonical - Ubuntu accountsservice パッケージにおける任意のファイルを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4406 2014-04-21 19:07 2011-11-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1841 4.8 MEDIUM
Physics
- - capacitor-native-biometric before 12.128.2 contains an authentication bypass vulnerability where the onAuthenticationSucceeded() method fails to validate CryptoObject parameters. Attackers can hook t… CWE-287
Improper Authentication
CVE-2026-56294 2026-06-23 06:14 2026-06-21 Show GitHub Exploit DB Packet Storm
1842 - - - In affected versions of Octopus Server with certain access levels it was possible to embed a Cross-Site Scripting Payload via artifacts. CWE-79
Cross-site Scripting
CVE-2026-8296 2026-06-23 05:44 2026-06-19 Show GitHub Exploit DB Packet Storm
1843 - - - Liquidfiles versions before 4.2.12 are affected by a broken access control vulnerability resulting in privilege escalation from an Admin in a secondary domain to a Sysadmin by modifying a group in th… CWE-285
Improper Authorization
CVE-2026-12673 2026-06-23 05:44 2026-06-20 Show GitHub Exploit DB Packet Storm
1844 9.1 CRITICAL
Network
- - Microsoft HEIF Image Extensions 1.2.22.0 has an out-of-bounds read because CHEIFItemInfoEntry_GetDataSize can return success while leaving the reported data size as 0. This causes a caller to make a … CWE-125
Out-of-bounds Read
CVE-2025-62821 2026-06-23 05:44 2026-06-19 Show GitHub Exploit DB Packet Storm
1845 7.5 HIGH
Network
- - GitHub Copilot 1.372.0 allows filesystem access outside of a workspace folder (without user approval) via a file-handler URI parameter to fetch_webpage. Therefore, exfiltration could occur if there i… CWE-552
 Files or Directories Accessible to External Parties
CVE-2025-66389 2026-06-23 05:44 2026-06-22 Show GitHub Exploit DB Packet Storm
1846 3.7 LOW
Network
- - GNU Savannah Administration Savane through 3.17 uses untrusted data as part of authorization. CWE-696
 Incorrect Behavior Order
CVE-2026-56355 2026-06-23 05:43 2026-06-21 Show GitHub Exploit DB Packet Storm
1847 6.3 MEDIUM
Local
- - The compose-rich-editor library (v1.0.0-rc14) used in HCL Verse for Android's rich text email composition fails to properly validate all HTML input thereby allowing malicious content to be executed i… CWE-20
CWE-79
 Improper Input Validation 
Cross-site Scripting
CVE-2026-21768 2026-06-23 05:42 2026-06-20 Show GitHub Exploit DB Packet Storm
1848 9.9 CRITICAL
Network
- - Prefect version 3.6.23 is vulnerable to remote code execution due to improper handling of user-controlled input in the `GitRepository` storage class. The `commit_sha` parameter, which is passed to gi… CWE-94
Code Injection
CVE-2026-5366 2026-06-23 05:41 2026-06-21 Show GitHub Exploit DB Packet Storm
1849 7.7 HIGH
Local
- - Software installed and run as a non-privileged user may conduct improper GPU system calls to cause an error path leading to UAF of GPU page tables. The vulnerability allows physical memory allocat… CWE-416
 Use After Free
CVE-2026-34192 2026-06-23 05:40 2026-06-19 Show GitHub Exploit DB Packet Storm
1850 7.7 HIGH
Local
- - Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of resources creating a write use after free scenario. A shared resource (memory pa… CWE-416
 Use After Free
CVE-2026-41156 2026-06-23 05:40 2026-06-19 Show GitHub Exploit DB Packet Storm