Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
237401 9.3 危険 マイクロソフト - Microsoft .NET Framework の Web プロキシ自動発見 (WPAD) 機能における任意の JavaScript コードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2012-4776 2012-11-16 15:35 2012-11-13 Show GitHub Exploit DB Packet Storm
237402 9.3 危険 マイクロソフト - Microsoft .NET Framework のリフレクション実装における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4777 2012-11-16 15:34 2012-11-13 Show GitHub Exploit DB Packet Storm
237403 4.3 警告 アップル
Google
- WebKit におけるクロスサイトスクリプティング (XSS) 保護メカニズムを回避される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5851 2012-11-16 14:34 2012-11-15 Show GitHub Exploit DB Packet Storm
237404 6.8 警告 Mozilla Foundation - Android 上で稼働する Mozilla Firefox における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-3979 2012-11-16 13:55 2012-08-28 Show GitHub Exploit DB Packet Storm
237405 2.6 注意 アシアル株式会社 - Android 版 Monacaデバッガーにおける情報管理不備の脆弱性 CWE-200
情報漏えい
CVE-2012-5172 2012-11-16 12:02 2012-11-16 Show GitHub Exploit DB Packet Storm
237406 10 危険 マイクロソフト
Google
- Google Chrome で使用される Microsoft Windows のカーネルモードドライバにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-2897 2012-11-16 11:09 2012-09-25 Show GitHub Exploit DB Packet Storm
237407 4.3 警告 OTRS プロジェクト - Open Technology Real Services にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2582 2012-11-16 10:19 2012-08-23 Show GitHub Exploit DB Packet Storm
237408 3.6 注意 Shlomi Fish - Perl 用 Config::IniFiles モジュールにおける任意のファイルを上書きされる脆弱性 CWE-DesignError
CVE-2012-2451 2012-11-16 10:18 2012-06-27 Show GitHub Exploit DB Packet Storm
237409 4.9 警告 Linux - Linux Kernel の mm/hugetlb.c におけるサービス運用妨害 (メモリ消費またはシステムクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2390 2012-11-16 10:16 2012-06-13 Show GitHub Exploit DB Packet Storm
237410 2.6 注意 Moodle - Moodle のブログの実装におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2362 2012-11-16 10:15 2012-07-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 26, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
4371 8.8 HIGH
Network
apache activemq
activemq_broker
Improper Input Validation, Improper Control of Generation of Code ('Code Injection') vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ. Non-parenthesized discovery wrapp… CWE-20
CWE-94
 Improper Input Validation 
Code Injection
CVE-2026-45505 2026-06-2 02:09 2026-06-1 Show GitHub Exploit DB Packet Storm
4372 6.5 MEDIUM
Network
apache airflow A bug in the GET `/api/v2/connections/{connection_id}` REST API endpoint in Apache Airflow allowed an authenticated UI/API user with Connection-read permission to retrieve secrets stored in a Connect… CWE-200
Information Exposure
CVE-2026-45192 2026-06-2 02:08 2026-06-1 Show GitHub Exploit DB Packet Storm
4373 6.5 MEDIUM
Network
apache mina_sshd Path traversal vulnerability in Apache MINA SSHD bundle sshd-git. Lack of path validation in git-upload-pack, git-receive-pack, and other git operations allows users authenticated over SSH access to … CWE-22
Path Traversal
CVE-2026-48827 2026-06-2 02:08 2026-06-1 Show GitHub Exploit DB Packet Storm
4374 9.1 CRITICAL
Network
- - The affected KMW CCTV Security Cameras are vulnerable to a critical unauthenticated password reset. This flaw allows an attacker to remotely reset the administrator password to a known value without … CWE-620
 Unverified Password Change
CVE-2026-5386 2026-06-2 02:07 2026-05-30 Show GitHub Exploit DB Packet Storm
4375 8.4 HIGH
Network
- - A stored cross-site scripting (XSS) vulnerability exists in certain 1xxx series NVR devices due to insufficient sanitization of user-supplied input in specific functional modules. Attackers can injec… CWE-79
Cross-site Scripting
CVE-2026-6824 2026-06-2 02:07 2026-05-30 Show GitHub Exploit DB Packet Storm
4376 9.8 CRITICAL
Network
- - Jinan USR IOT Technology Limited (PUSR) USR-W610 RS232/485 to Wi-Fi/Ethernet Converter device firmware contains plaintext administrative credentials embedded in the firmware image. These credentials … CWE-798
 Use of Hard-coded Credentials
CVE-2026-7786 2026-06-2 02:07 2026-05-30 Show GitHub Exploit DB Packet Storm
4377 8.8 HIGH
Adjacent
- - The Frontier X2 device allows unauthenticated BLE read/write access to critical GATT characteristics without enforcing pairing authentication or authorization. This allows attackers within BLE range … CWE-306
Missing Authentication for Critical Function
CVE-2026-5768 2026-06-2 02:07 2026-05-30 Show GitHub Exploit DB Packet Storm
4378 4.3 MEDIUM
Adjacent
- - Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a write of data outside the intended GPU memory. A logic error in the address… CWE-823
 Use of Out-of-range Pointer Offset
CVE-2026-34193 2026-06-2 02:07 2026-06-1 Show GitHub Exploit DB Packet Storm
4379 - - - In certain scenarios when the admin has enabled Interactive Connectivity Establishment (ICE), a buffer overflow could enable remote code execution on Poly Voice products on the Linux p… CWE-121
Stack-based Buffer Overflow
CVE-2026-0826 2026-06-2 02:07 2026-06-2 Show GitHub Exploit DB Packet Storm
4380 4.3 MEDIUM
Network
apache activemq
activemq_broker
Incomplete authorization by Apache ActiveMQ server before versions v6.2.6 and v5.19.7 allows authenticated connections to remove existing destinations with proper permissions. This issue affects Apa… CWE-285
Improper Authorization
CVE-2026-46605 2026-06-2 02:07 2026-06-1 Show GitHub Exploit DB Packet Storm