Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
243451 7.5 危険 konst - Konst CenterICQ におけるバッファオーバーフローの脆弱性 - CVE-2007-3713 2012-09-25 16:47 2007-07-11 Show GitHub Exploit DB Packet Storm
243452 4.3 警告 hiddenchest - HiddenChest の Yb ve Bayi Babvuru Formu におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3712 2012-09-25 16:47 2007-07-11 Show GitHub Exploit DB Packet Storm
243453 7.5 危険 php comet-server - PHP Comet-Server の example/gamedemo/inc.functions.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3710 2012-09-25 16:47 2007-07-11 Show GitHub Exploit DB Packet Storm
243454 5 警告 mail machine - Mail Machine の cgi-bin/mail/mailmachine.cgi におけるディレクトリトラバーサルの脆弱性 - CVE-2007-3702 2012-09-25 16:47 2007-07-11 Show GitHub Exploit DB Packet Storm
243455 6.5 警告 infernotechnologies - vBulletin モジュールなどにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-3687 2012-09-25 16:47 2007-07-11 Show GitHub Exploit DB Packet Storm
243456 7.5 危険 masuga design - Unobtrusive Ajax Star Rating Bar の db.php における CRLF インジェクションの脆弱性 - CVE-2007-3686 2012-09-25 16:47 2007-07-11 Show GitHub Exploit DB Packet Storm
243457 2.6 注意 masuga design - Unobtrusive Ajax Star Rating Bar の rpc.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3685 2012-09-25 16:47 2007-07-11 Show GitHub Exploit DB Packet Storm
243458 7.5 危険 masuga design - Unobtrusive Ajax Star Rating Bar における SQL インジェクションの脆弱性 - CVE-2007-3684 2012-09-25 16:47 2007-07-11 Show GitHub Exploit DB Packet Storm
243459 7.5 危険 openld - OpenLD の index.php における SQL インジェクションの脆弱性 - CVE-2007-3682 2012-09-25 16:47 2007-07-11 Show GitHub Exploit DB Packet Storm
243460 7.5 危険 maxsi - Maxsi eVisit Analyst における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-3677 2012-09-25 16:47 2007-07-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
481 8.8 HIGH
Adjacent
- - Feast before 0.63.0 contains an unsafe deserialization vulnerability that allows unauthenticated or unauthorized attackers to achieve remote code execution by sending a crafted gRPC request to the re… Update CWE-502
 Deserialization of Untrusted Data
CVE-2026-56121 2026-06-30 12:21 2026-06-25 Show GitHub Exploit DB Packet Storm
482 8.1 HIGH
Network
fasterxml jackson-databind jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.10.0 until 2.18.8, 2.21.4, and 3.1.4, BasicPolymorphicTypeValidator.Builder.… Update CWE-184
 Incomplete Blacklist
CVE-2026-54513 2026-06-30 12:21 2026-06-24 Show GitHub Exploit DB Packet Storm
483 7.1 HIGH
Local
- - acl before version 2.4.0 contains a symlink traversal vulnerability in the libacl pathname-based functions acl_get_file(), acl_set_file(), acl_extended_file(), and acl_delete_def_file() that allows l… New CWE-59
Link Following
CVE-2026-54369 2026-06-30 12:21 2026-06-29 Show GitHub Exploit DB Packet Storm
484 7.5 HIGH
Network
faraday_project faraday Faraday is an HTTP client library abstraction layer that provides a common interface over many adapters. From 1.0.0 until 1.10.6 and 2.14.3, Faraday::NestedParamsEncoder, the default nested query par… Update CWE-674
CWE-770
 Uncontrolled Recursion
 Allocation of Resources Without Limits or Throttling
CVE-2026-54297 2026-06-30 12:21 2026-06-25 Show GitHub Exploit DB Packet Storm
485 7.5 HIGH
Network
nltk nltk NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting research and development in Natural Language Processing. Prior to 3.10.0-rc1, nltk.data.l… Update CWE-22
Path Traversal
CVE-2026-54293 2026-06-30 12:21 2026-06-23 Show GitHub Exploit DB Packet Storm
486 9.1 CRITICAL
Network
traefik traefik Traefik is an HTTP reverse proxy and load balancer. Prior to 3.7.3, there is a critical vulnerability in Traefik's HTTP/3 (QUIC) TLS configuration selection that allows unauthenticated clients to byp… Update CWE-288
CWE-289
Authentication Bypass Using an Alternate Path or Channel
 Authentication Bypass by Alternate Name
CVE-2026-53622 2026-06-30 12:20 2026-06-24 Show GitHub Exploit DB Packet Storm
487 7.0 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: bpf: Fix linked reg delta tracking when src_reg == dst_reg Consider the case of rX += rX where src_reg and dst_reg are pointers t… Update CWE-393
 Return of Wrong Status Code
CVE-2026-53092 2026-06-30 12:20 2026-06-25 Show GitHub Exploit DB Packet Storm
488 7.0 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: net: pull headers in qdisc_pkt_len_segs_init() Most ndo_start_xmit() methods expects headers of gso packets to be already in skb-… Update CWE-131
Incorrect Calculation of Buffer Size
CVE-2026-53091 2026-06-30 12:20 2026-06-25 Show GitHub Exploit DB Packet Storm
489 7.0 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: bpf: Fix ld_{abs,ind} failure path analysis in subprogs Usage of ld_{abs,ind} instructions got extended into subprogs some time a… Update CWE-253
 Incorrect Check of Function Return Value
CVE-2026-53090 2026-06-30 12:20 2026-06-25 Show GitHub Exploit DB Packet Storm
490 7.0 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: bpf: fix mm lifecycle in open-coded task_vma iterator The open-coded task_vma iterator reads task->mm locklessly and acquires mma… Update CWE-825
 Expired Pointer Dereference
CVE-2026-53085 2026-06-30 12:20 2026-06-25 Show GitHub Exploit DB Packet Storm