Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 12:21 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
221 6.5 警告
Network
struktur AG libheif struktur AGのlibheifにおける境界外読み取りに関する脆弱性 New CWE-125
境界外読み取り
CVE-2026-49271 2026-06-29 11:14 2026-06-19 Show GitHub Exploit DB Packet Storm
222 7.5 重要
Network
sunnyadn js-toml sunnyadnのjs-tomlにおける複数の脆弱性 New CWE-1333
CWE-400
CWE-407
CVE-2026-49293 2026-06-29 11:14 2026-06-19 Show GitHub Exploit DB Packet Storm
223 7.1 重要
Network
struktur AG libde265 struktur AGのlibde265における境界外書き込みに関する脆弱性 New CWE-787
境界外書き込み
CVE-2026-49295 2026-06-29 11:14 2026-06-19 Show GitHub Exploit DB Packet Storm
224 7.1 重要
Network
struktur AG libde265 struktur AGのlibde265における整数オーバーフローの脆弱性 New CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-49346 2026-06-29 11:14 2026-06-19 Show GitHub Exploit DB Packet Storm
225 3.6
Local
Babel Babel Babelにおける複数の脆弱性 New CWE-200
CWE-22
CVE-2026-49356 2026-06-29 11:14 2026-06-22 Show GitHub Exploit DB Packet Storm
226 8.4 重要
Local
Deno Land Deno Deno Land Inc.のDenoにおける複数の脆弱性 New CWE-176
CWE-41
CVE-2026-49401 2026-06-29 11:14 2026-06-23 Show GitHub Exploit DB Packet Storm
227 8.1 重要
Network
Deno Land Deno Deno Land Inc.のDenoにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-49402 2026-06-29 11:14 2026-06-23 Show GitHub Exploit DB Packet Storm
228 5.5 警告
Local
Deno Land Deno Deno Land Inc.のDenoにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-49406 2026-06-29 11:14 2026-06-23 Show GitHub Exploit DB Packet Storm
229 6.5 警告
Local
Deno Land Deno Deno Land Inc.のDenoにおけるアクセス制御に関する脆弱性 New CWE-284
CWE-noinfo
CVE-2026-49411 2026-06-29 11:14 2026-06-23 Show GitHub Exploit DB Packet Storm
230 7.4 重要
Network
Deno Land Deno Deno Land Inc.のDenoにおける暗号化処理の不備に関する脆弱性 New CWE-325
暗号化処理の不備
CVE-2026-49440 2026-06-29 11:14 2026-06-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 29, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
256841 6.5 MEDIUM
Network
codection clean_login CSRF in the Clean Login plugin before 1.8 for WordPress allows remote attackers to change the login redirect URL or logout redirect URL. CWE-352
 Origin Validation Error
CVE-2017-8875 2024-11-21 12:34 2017-05-10 Show GitHub Exploit DB Packet Storm
256842 8.8 HIGH
Network
acquia mautic Multiple cross-site request forgery (CSRF) vulnerabilities in Mautic 1.4.1 allow remote attackers to hijack the authentication of users for requests that (1) delete email campaigns or (2) delete cont… CWE-352
 Origin Validation Error
CVE-2017-8874 2024-11-21 12:34 2017-05-10 Show GitHub Exploit DB Packet Storm
256843 9.1 CRITICAL
Network
xmlsoft libxml2 The htmlParseTryOrFinish function in HTMLparser.c in libxml2 2.9.4 allows attackers to cause a denial of service (buffer over-read) or information disclosure. CWE-125
Out-of-bounds Read
CVE-2017-8872 2024-11-21 12:34 2017-05-10 Show GitHub Exploit DB Packet Storm
256844 7.5 HIGH
Network
flatcore flatcore-cms acp/core/files.browser.php in flatCore 1.4.7 allows file deletion via directory traversal in the delete parameter to acp/acp.php. The risk might be limited to requests submitted through CSRF. CWE-22
Path Traversal
CVE-2017-8868 2024-11-21 12:34 2017-05-10 Show GitHub Exploit DB Packet Storm
256845 9.8 CRITICAL
Network
veritas netbackup_appliance In Veritas NetBackup Appliance 3.0 and earlier, unauthenticated users can execute arbitrary commands as root. NVD-CWE-noinfo
CVE-2017-8859 2024-11-21 12:34 2017-05-10 Show GitHub Exploit DB Packet Storm
256846 9.8 CRITICAL
Network
veritas netbackup_appliance
netbackup
In Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier, there is unauthenticated privileged remote file write using the 'bprd' process. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-8858 2024-11-21 12:34 2017-05-10 Show GitHub Exploit DB Packet Storm
256847 9.8 CRITICAL
Network
veritas netbackup_appliance
netbackup
In Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier, there is unauthenticated file copy and arbitrary remote command execution using the 'bprd' process. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-8857 2024-11-21 12:34 2017-05-10 Show GitHub Exploit DB Packet Storm
256848 9.8 CRITICAL
Network
veritas netbackup_appliance
netbackup
In Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier, there is unauthenticated, arbitrary remote command execution using the 'bprd' process. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-8856 2024-11-21 12:34 2017-05-10 Show GitHub Exploit DB Packet Storm
256849 7.5 HIGH
Network
wolfssl wolfssl wolfSSL before 3.11.0 does not prevent wc_DhAgree from accepting a malformed DH key. NVD-CWE-noinfo
CVE-2017-8855 2024-11-21 12:34 2017-05-10 Show GitHub Exploit DB Packet Storm
256850 7.8 HIGH
Local
wolfssl wolfssl wolfSSL before 3.10.2 has an out-of-bounds memory access with loading crafted DH parameters, aka a buffer overflow triggered by a malformed temporary DH file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-8854 2024-11-21 12:34 2017-05-10 Show GitHub Exploit DB Packet Storm