Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250601 5 警告 John Lim - John Lim ADOdb Library における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3699 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
250602 5 警告 AdaptCMS - AdaptCMS における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3698 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
250603 5 警告 Achievo - Achievo における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3697 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
250604 5 警告 60cycle - 60cycleCMS における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3696 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
250605 5 警告 111webcalendar - 111WebCalendar における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3695 2012-03-27 18:43 2011-09-23 Show GitHub Exploit DB Packet Storm
250606 4.3 警告 CMU - Cyrus IMAP の imapd の index_get_ids 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2011-3481 2012-03-27 18:43 2011-09-14 Show GitHub Exploit DB Packet Storm
250607 4.3 警告 アップル - Apple Mac OS X の Keychain の実装における任意の SSL サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2011-3422 2012-03-27 18:43 2011-09-12 Show GitHub Exploit DB Packet Storm
250608 4.3 警告 Phorum - Phorum の control.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3392 2012-03-27 18:43 2011-09-8 Show GitHub Exploit DB Packet Storm
250609 4 警告 IBM - IBM Rational Build Forge における鍵ファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-3391 2012-03-27 18:43 2011-04-29 Show GitHub Exploit DB Packet Storm
250610 4.3 警告 IBM - IBM OAT for Informix の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3390 2012-03-27 18:43 2011-09-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
4721 4.3 MEDIUM
Network
microsoft 365_apps
office
office_long_term_servicing_channel
word
External control of file name or path in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. CWE-73
 External Control of File Name or Path
CVE-2026-40421 2026-05-20 03:38 2026-05-13 Show GitHub Exploit DB Packet Storm
4722 7.8 HIGH
Local
microsoft office
office_long_term_servicing_channel
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. CWE-122
Heap-based Buffer Overflow
CVE-2026-42831 2026-05-20 03:38 2026-05-13 Show GitHub Exploit DB Packet Storm
4723 5.5 MEDIUM
Local
microsoft excel
office
office_long_term_servicing_channel
word
Improper access control in Microsoft Office allows an unauthorized attacker to perform spoofing locally. CWE-284
NVD-CWE-noinfo
Improper Access Control
CVE-2026-42832 2026-05-20 03:38 2026-05-13 Show GitHub Exploit DB Packet Storm
4724 7.5 HIGH
Network
h2o h2o A vulnerability was identified in h2oai h2o-3 up to 7402. Affected by this issue is the function importFiles of the file h2o-core/src/main/java/water/persist/PersistNFS.java of the component ImportFi… CWE-200
CWE-284
NVD-CWE-noinfo
Information Exposure
Improper Access Control
CVE-2026-8750 2026-05-20 03:22 2026-05-17 Show GitHub Exploit DB Packet Storm
4725 6.5 MEDIUM
Network
- - Audiobookshelf is a self-hosted audiobook and podcast server. Prior to 2.32.2, the GET /api/libraries/:id/download endpoint validates that the requesting user has access to the library specified in t… CWE-863
 Incorrect Authorization
CVE-2026-42883 2026-05-20 03:19 2026-05-12 Show GitHub Exploit DB Packet Storm
4726 6.2 MEDIUM
Network
- - LobeHub is a work-and-lifestyle space to find, build, and collaborate with agent teammates that grow with you. Prior to 2.1.48, when LobeChat processes custom tags in the Render process of src/featur… CWE-79
Cross-site Scripting
CVE-2026-42045 2026-05-20 03:19 2026-05-13 Show GitHub Exploit DB Packet Storm
4727 9.8 CRITICAL
Network
mozilla firefox Sandbox escape in the Profile Backup component. This vulnerability was fixed in Firefox 150.0.3, Firefox ESR 115.36, Firefox ESR 140.11, and Thunderbird 140.11. CWE-693
 Protection Mechanism Failure
CVE-2026-8401 2026-05-20 03:16 2026-05-13 Show GitHub Exploit DB Packet Storm
4728 5.3 MEDIUM
Network
mozilla firefox Other issue in the JavaScript Engine component. This vulnerability was fixed in Firefox 150.0.3, Firefox ESR 115.36, Firefox ESR 140.11, and Thunderbird 140.11. CWE-20
CWE-79
CWE-119
 Improper Input Validation 
Cross-site Scripting
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-8391 2026-05-20 03:16 2026-05-12 Show GitHub Exploit DB Packet Storm
4729 6.5 MEDIUM
Network
mozilla firefox Incorrect boundary conditions in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 150.0.3, Firefox ESR 115.36, Firefox ESR 140.11, and Thunderbird 140.11. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-8388 2026-05-20 03:16 2026-05-12 Show GitHub Exploit DB Packet Storm
4730 6.5 MEDIUM
Network
- - LWP::UserAgent versions before 6.83 for Perl leak Authorization and Proxy-Authorization headers on cross-origin redirects. On a 3xx response, the redirect handler strips only Host and Cookie before … CWE-522
 Insufficiently Protected Credentials
CVE-2026-8368 2026-05-20 03:16 2026-05-13 Show GitHub Exploit DB Packet Storm