Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241791 7.5 危険 Google - Android 上で稼働する Google Chrome における同一生成元ポリシーを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4908 2012-09-18 15:13 2012-09-12 Show GitHub Exploit DB Packet Storm
241792 9.3 危険 Google - Android 上で稼働する Google Chrome における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4907 2012-09-18 15:12 2012-09-12 Show GitHub Exploit DB Packet Storm
241793 5 警告 Google - Android 上で稼働する Google Chrome における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4906 2012-09-18 15:06 2012-09-12 Show GitHub Exploit DB Packet Storm
241794 4.3 警告 Google - Android 上で稼働する Google Chrome におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4905 2012-09-18 15:04 2012-09-12 Show GitHub Exploit DB Packet Storm
241795 4.3 警告 Google - Android 上で稼働する Google Chrome におけるクロスアプリケーションスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4904 2012-09-18 14:59 2012-09-12 Show GitHub Exploit DB Packet Storm
241796 5 警告 Google - Android 上で稼働する Google Chrome における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4903 2012-09-18 14:58 2012-09-12 Show GitHub Exploit DB Packet Storm
241797 3.5 注意 The phpMyAdmin Project - phpMyAdmin の Database Structure ページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4345 2012-09-14 16:38 2012-08-16 Show GitHub Exploit DB Packet Storm
241798 5 警告 The phpMyAdmin Project - phpMyAdmin の show_config_errors.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-4219 2012-09-14 16:37 2012-08-9 Show GitHub Exploit DB Packet Storm
241799 3.5 注意 レッドハット - libvirt の virTypedParameterArrayClear 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-3445 2012-09-14 16:35 2012-08-7 Show GitHub Exploit DB Packet Storm
241800 4.3 警告 ImageMagick - ImageMagick の coders/png.c の Magick_png_malloc 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2012-3437 2012-09-14 16:34 2012-08-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
401 8.8 HIGH
Network
- - Insufficient validation of untrusted input in DevTools in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to bypass same origin p… New CWE-20
 Improper Input Validation 
CVE-2026-10922 2026-06-6 01:16 2026-06-5 Show GitHub Exploit DB Packet Storm
402 8.8 HIGH
Network
- - Inappropriate implementation in GPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Cri… New CWE-787
 Out-of-bounds Write
CVE-2026-10897 2026-06-6 01:16 2026-06-5 Show GitHub Exploit DB Packet Storm
403 8.8 HIGH
Network
- - Use after free in Chromoting in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via malicious network traffic. (Chromium security severity: Critical) New CWE-416
 Use After Free
CVE-2026-10893 2026-06-6 01:16 2026-06-5 Show GitHub Exploit DB Packet Storm
404 9.6 CRITICAL
Network
- - Out of bounds write in GPU in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: C… New CWE-787
 Out-of-bounds Write
CVE-2026-10892 2026-06-6 01:16 2026-06-5 Show GitHub Exploit DB Packet Storm
405 - - - sanic-cors version 2.2.0 and prior contains an improper regular expression in the try_match() function in sanic_cors/core.py that uses re.match without end-anchoring. This allows an attacker to bypas… New - CVE-2026-37737 2026-06-6 01:07 2026-06-6 Show GitHub Exploit DB Packet Storm
406 - - - The linqi application contains hardcoded cryptographic keys. Additionally, the application uses a weak algorithm with a limited ASCII charset to dynamically generate Initialization Vectors (IVs) for … New CWE-321
CWE-338
 Use of Hard-coded Cryptographic Key
 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2026-11347 2026-06-6 01:07 2026-06-5 Show GitHub Exploit DB Packet Storm
407 - - - An Improper Authentication vulnerability in the /api/Cdn/GetFile endpoint of linqi allows unauthenticated, remote attackers to bypass file access controls. The ValidateAnonFileAccess function incorre… New CWE-287
Improper Authentication
CVE-2026-11345 2026-06-6 01:07 2026-06-5 Show GitHub Exploit DB Packet Storm
408 - - - A Server-Side Request Forgery (SSRF) vulnerability in the custom process creation feature of linqi allows an authenticated attacker to probe internal network components. By crafting a specific proces… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-11346 2026-06-6 01:07 2026-06-5 Show GitHub Exploit DB Packet Storm
409 - - - The Comment API (GET /api/Comment and POST /api/Comment) in the affected application fails to perform authorization checks to verify that the requesting user has access to the object identified by th… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-11369 2026-06-6 01:07 2026-06-5 Show GitHub Exploit DB Packet Storm
410 6.5 MEDIUM
Network
- - A missing upper-bound check in the udpif_set_threads() function of Open vSwitch v3.6.90 allows an attacker with OVSDB write access to request an excessive number of handler or revalidation threads. T… New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-36499 2026-06-6 01:06 2026-06-5 Show GitHub Exploit DB Packet Storm