Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
271 7.2 重要
Network
Open Source Geospatial Foundation geoserver Open Source Geospatial Foundationのgeoserverにおける複数の脆弱性 New CWE-502
CWE-74
CVE-2025-27511 2026-06-24 10:00 2026-06-18 Show GitHub Exploit DB Packet Storm
272 7.2 重要
Network
Open Source Geospatial Foundation geoserver Open Source Geospatial Foundationのgeoserverにおけるファイル名やパス名の外部制御に関する脆弱性 New CWE-73
ファイル名やパス名の外部制御
CVE-2025-52465 2026-06-24 10:00 2026-06-18 Show GitHub Exploit DB Packet Storm
273 8.2 重要
Network
Open Source Geospatial Foundation geoserver Open Source Geospatial Foundationのgeoserverにおける複数の脆弱性 New CWE-20
CWE-611
CWE-918
CVE-2025-58175 2026-06-24 10:00 2026-06-18 Show GitHub Exploit DB Packet Storm
274 9.8 緊急
Network
Ivanti standalone sentry Ivantiのstandalone sentryにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 New CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2026-10523 2026-06-24 10:00 2026-06-9 Show GitHub Exploit DB Packet Storm
275 7.5 重要
Network
デル PowerFlex Manager デルのPowerFlex Managerにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 New CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-22283 2026-06-24 10:00 2026-06-17 Show GitHub Exploit DB Packet Storm
276 6.5 警告
Network
Eclipse Foundation Theia Eclipse FoundationのTheiaにおける複数の脆弱性 New CWE-201
CWE-829
CVE-2026-22551 2026-06-24 10:00 2026-06-18 Show GitHub Exploit DB Packet Storm
277 5.4 警告
Network
Outlook.com Microsoft Edge Chromium Microsoft Edge (Chromium ベース) のなりすましの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-32208 2026-06-24 10:00 2026-06-19 Show GitHub Exploit DB Packet Storm
278 8.1 重要
Adjacent
デル PowerFlex Manager デルのPowerFlex Managerにおける認証に関する脆弱性 New CWE-287
不適切な認証
CVE-2026-32804 2026-06-24 09:59 2026-06-17 Show GitHub Exploit DB Packet Storm
279 8.8 重要
Adjacent
デル PowerFlex Manager デルのPowerFlex Managerにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35065 2026-06-24 09:59 2026-06-17 Show GitHub Exploit DB Packet Storm
280 7.1 重要
Network
デル PowerFlex Manager デルのPowerFlex Managerにおけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-35066 2026-06-24 09:59 2026-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 26, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
256891 5.9 MEDIUM
Network
revive-adserver revive_adserver Session fixation vulnerability in the forgot password mechanism in Revive Adserver before 4.0.1, when setting a new password, allows remote attackers to hijack web sessions via the session ID. CWE-384
 Session Fixation
CVE-2017-5831 2024-11-21 12:28 2017-03-4 Show GitHub Exploit DB Packet Storm
256892 9.8 CRITICAL
Network
revive-adserver revive_adserver Revive Adserver before 4.0.1 allows remote attackers to execute arbitrary code via serialized data in the cookies related to the delivery scripts. CWE-502
 Deserialization of Untrusted Data
CVE-2017-5830 2024-11-21 12:28 2017-03-4 Show GitHub Exploit DB Packet Storm
256893 6.1 MEDIUM
Network
cpanel cgiecho
cgiemail
Cross-site scripting (XSS) vulnerability in cgiemail and cgiecho allows remote attackers to inject arbitrary web script or HTML via the addendum parameter. CWE-79
Cross-site Scripting
CVE-2017-5616 2024-11-21 12:28 2017-03-4 Show GitHub Exploit DB Packet Storm
256894 6.1 MEDIUM
Network
cpanel cgiecho
cgiemail
cgiemail and cgiecho allow remote attackers to inject HTTP headers via a newline character in the redirect location. CWE-601
Open Redirect
CVE-2017-5615 2024-11-21 12:28 2017-03-4 Show GitHub Exploit DB Packet Storm
256895 6.1 MEDIUM
Network
cpanel cpanel Open redirect vulnerability in cgiemail and cgiecho allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via vectors involving the (1) success or (2) failure … CWE-601
Open Redirect
CVE-2017-5614 2024-11-21 12:28 2017-03-4 Show GitHub Exploit DB Packet Storm
256896 7.8 HIGH
Local
cpanel cgiecho
cgiemail
Format string vulnerability in cgiemail and cgiecho allows remote attackers to execute arbitrary code via format string specifiers in a template file. CWE-134
Use of Externally-Controlled Format String
CVE-2017-5613 2024-11-21 12:28 2017-03-4 Show GitHub Exploit DB Packet Storm
256897 7.5 HIGH
Network
netapp ontap_select_deploy_administration_utility The NetApp ONTAP Select Deploy administration utility 2.0 through 2.2.1 might allow remote attackers to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2017-5995 2024-11-21 12:28 2017-03-2 Show GitHub Exploit DB Packet Storm
256898 5.5 MEDIUM
Local
zziplib_project zziplib seeko.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (assertion failure and crash) via a crafted ZIP file. CWE-617
 Reachable Assertion
CVE-2017-5981 2024-11-21 12:28 2017-03-2 Show GitHub Exploit DB Packet Storm
256899 5.5 MEDIUM
Local
zziplib_project zziplib The zzip_mem_entry_new function in memdisk.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted ZIP file. CWE-476
 NULL Pointer Dereference
CVE-2017-5980 2024-11-21 12:28 2017-03-2 Show GitHub Exploit DB Packet Storm
256900 5.5 MEDIUM
Local
zziplib_project zziplib The prescan_entry function in fseeko.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted ZIP file. CWE-476
 NULL Pointer Dereference
CVE-2017-5979 2024-11-21 12:28 2017-03-2 Show GitHub Exploit DB Packet Storm