Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
238131 6.8 警告 オラクル - Oracle Industry Applications の Oracle Central Designer における脆弱性 CWE-noinfo
情報不足
CVE-2012-5066 2012-10-19 15:07 2012-10-16 Show GitHub Exploit DB Packet Storm
238132 4 警告 オラクル - Oracle Industry Applications の Oracle Clinical/Remote Data Capture における HTML Surround の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-1763 2012-10-19 15:07 2012-10-16 Show GitHub Exploit DB Packet Storm
238133 3.5 注意 オラクル - Oracle Financial Services の Oracle FLEXCUBE Direct Banking における BASE の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3157 2012-10-19 14:53 2012-10-16 Show GitHub Exploit DB Packet Storm
238134 1.5 注意 オラクル - Oracle Financial Services の Oracle FLEXCUBE Direct Banking における BASE の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3145 2012-10-19 14:52 2012-10-16 Show GitHub Exploit DB Packet Storm
238135 3.5 注意 オラクル - Oracle Financial Services の Oracle FLEXCUBE Direct Banking における BASE の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3142 2012-10-19 14:41 2012-10-16 Show GitHub Exploit DB Packet Storm
238136 4 警告 オラクル - Oracle Financial Services の Oracle FLEXCUBE Universal Banking における BASE の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3141 2012-10-19 14:40 2012-10-16 Show GitHub Exploit DB Packet Storm
238137 4.4 警告 オラクル - Oracle Solaris 10 における inetd の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-5095 2012-10-19 11:47 2012-10-16 Show GitHub Exploit DB Packet Storm
238138 1.7 注意 オラクル - Oracle Solaris 10 および 11 における Kernel の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3215 2012-10-19 11:47 2012-10-16 Show GitHub Exploit DB Packet Storm
238139 4.7 警告 オラクル - Oracle Solaris 10 および 11 における Kernel の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3212 2012-10-19 11:46 2012-10-16 Show GitHub Exploit DB Packet Storm
238140 4.6 警告 オラクル - Oracle Solaris 10 および 11 における Kernel/System Call の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3211 2012-10-19 11:45 2012-10-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 29, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
4421 - - - In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix nvkm_device leak on aperture removal failure When aperture_remove_conflicting_pci_devices() fails during probe, … - CVE-2026-52904 2026-06-9 23:16 2026-06-9 Show GitHub Exploit DB Packet Storm
4422 5.3 MEDIUM
Network
- - The WPForms WordPress plugin before 1.10.0.5 does not verify the authenticity of incoming PayPal webhook events before processing them, allowing unauthenticated attackers to forge webhook payloads a… CWE-862
 Missing Authorization
CVE-2026-4986 2026-06-9 23:16 2026-06-9 Show GitHub Exploit DB Packet Storm
4423 - - - In the Linux kernel, the following vulnerability has been resolved: erofs: handle end of filesystem properly for file-backed mounts I/O requests beyond the end of the filesystem should be zeroed ou… - CVE-2026-46329 2026-06-9 23:16 2026-06-9 Show GitHub Exploit DB Packet Storm
4424 6.1 MEDIUM
Network
- - Multiple reflected Cross-Site Scripting (XSS) vulnerabilities in damasac thaipalliative_lte through version 3.0 allow remote attackers to inject arbitrary web script or HTML via the idFormMain parame… CWE-79
Cross-site Scripting
CVE-2026-38579 2026-06-9 23:16 2026-06-6 Show GitHub Exploit DB Packet Storm
4425 - - - A vulnerability in the quarantine and restore workflow of the X-VPN macOS website versions 77.0 through 77.5 allow a local attacker to leverage a race condition and symlink manipulation to achieve pr… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-2638 2026-06-9 23:16 2026-06-9 Show GitHub Exploit DB Packet Storm
4426 8.3 HIGH
Network
- - Integer overflow in libyuv in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.… CWE-472
 External Control of Assumed-Immutable Web Parameter
CVE-2026-11640 2026-06-9 23:16 2026-06-9 Show GitHub Exploit DB Packet Storm
4427 8.8 HIGH
Network
- - Versions of the package degit before 2.8.6, from 3.0.0 and before 3.3.1 are vulnerable to Command Injection due to improper sanitisation of user input for git shell commands directly invoked with exe… CWE-78
CWE-77
OS Command 
Command Injection
CVE-2026-11572 2026-06-9 23:16 2026-06-9 Show GitHub Exploit DB Packet Storm
4428 6.5 MEDIUM
Network
google chrome Insufficient policy enforcement in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low) CWE-693
 Protection Mechanism Failure
CVE-2026-11288 2026-06-9 22:59 2026-06-5 Show GitHub Exploit DB Packet Storm
4429 6.5 MEDIUM
Network
google chrome Side-channel information leakage in Paint in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low) CWE-1300
CWE-203
 Improper Protection of Physical Side Channels
 Information Exposure Through Discrepancy
CVE-2026-11289 2026-06-9 22:58 2026-06-5 Show GitHub Exploit DB Packet Storm
4430 7.5 HIGH
Network
- - Shenzhen Tenda Technology Co., Ltd Tenda AC1206 v15.03.06.23 was discovered to contain multiple stack overflows in the fromGstDhcpSetSer function via the username and password parameters. These vulne… CWE-121
Stack-based Buffer Overflow
CVE-2026-36789 2026-06-9 22:57 2026-06-9 Show GitHub Exploit DB Packet Storm