Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2911 7.8 重要
Local
Electerm project Electerm Electerm projectのElectermにおける複数の脆弱性 CWE-732
CWE-94
CWE-940
CVE-2026-45353 2026-06-5 10:46 2026-05-28 Show GitHub Exploit DB Packet Storm
2912 9.1 緊急
Network
Electerm project Electerm Electerm projectのElectermにおける複数の脆弱性 CWE-326
CWE-329
CWE-353
CWE-759
CWE-916
CVE-2026-45787 2026-06-5 10:46 2026-05-28 Show GitHub Exploit DB Packet Storm
2913 6.8 警告
Network
レッドハット build of keycloak レッドハットのbuild of keycloakにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-4630 2026-06-5 10:46 2026-05-19 Show GitHub Exploit DB Packet Storm
2914 9.9 緊急
Network
オラクル REST Data Services オラクルのREST Data Servicesにおける複数の脆弱性 CWE-284
CWE-400
CVE-2026-46775 2026-06-5 10:46 2026-05-28 Show GitHub Exploit DB Packet Storm
2915 9.1 緊急
Network
オラクル Oracle E-Business Suite オラクルのOracle E-Business Suiteにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46819 2026-06-5 10:46 2026-05-28 Show GitHub Exploit DB Packet Storm
2916 8.8 重要
Network
オラクル Oracle E-Business Suite オラクルのOracle E-Business Suiteにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-46826 2026-06-5 10:45 2026-05-28 Show GitHub Exploit DB Packet Storm
2917 8.8 重要
Network
オラクル Oracle E-Business Suite オラクルのOracle E-Business Suiteにおける複数の脆弱性 CWE-269
CWE-284
CWE-287
CWE-306
CVE-2026-46827 2026-06-5 10:45 2026-05-28 Show GitHub Exploit DB Packet Storm
2918 8.1 重要
Network
オラクル Oracle E-Business Suite オラクルのOracle E-Business Suiteにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46828 2026-06-5 10:45 2026-05-28 Show GitHub Exploit DB Packet Storm
2919 7.5 重要
Network
オラクル REST Data Services オラクルのREST Data Servicesにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-46829 2026-06-5 10:45 2026-05-28 Show GitHub Exploit DB Packet Storm
2920 5.3 警告
Network
オラクル REST Data Services オラクルのREST Data Servicesにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-46830 2026-06-5 10:45 2026-05-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
305521 - eye eye-fi_helper Directory traversal vulnerability in Eye-Fi Helper before 3.4.23 allows man-in-the-middle attackers to create arbitrary files via a .. (dot dot) in the filesignature in a GetPhotoStatus request. CWE-22
Path Traversal
CVE-2011-4696 2024-11-21 10:32 2014-03-4 Show GitHub Exploit DB Packet Storm
305522 - redhat jboss_enterprise_portal_platform Multiple cross-site scripting (XSS) vulnerabilities in Red Hat JBoss Enterprise Portal Platform before 5.2.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2011-4580 2024-11-21 10:32 2014-02-27 Show GitHub Exploit DB Packet Storm
305523 - redhat jboss_enterprise_application_platform
jboss_enterprise_brms_platform
jboss_communications_platform
jboss_enterprise_web_platform
JBoss Web, as used in Red Hat JBoss Communications Platform before 5.1.3, Enterprise Web Platform before 5.1.2, Enterprise Application Platform before 5.1.2, and other products, allows remote attacke… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-4610 2024-11-21 10:32 2014-02-11 Show GitHub Exploit DB Packet Storm
305524 - canonical
debian
ubuntu
x.org
ubuntu_linux
debian_linux
linux
x_server
The X.Org X wrapper (xserver-wrapper.c) in Debian GNU/Linux and Ubuntu Linux does not properly verify the TTY of a user who is starting X, which allows local users to bypass intended access restricti… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4613 2024-11-21 10:32 2014-02-6 Show GitHub Exploit DB Packet Storm
305525 - openbsd openssh ssh-keysign.c in ssh-keysign in OpenSSH before 5.8p2 on certain platforms executes ssh-rand-helper with unintended open file descriptors, which allows local users to obtain sensitive key information … CWE-200
Information Exposure
CVE-2011-4327 2024-11-21 10:32 2014-02-3 Show GitHub Exploit DB Packet Storm
305526 - ffmpeg ffmpeg Buffer overflow in FFmpeg before 0.5.6, 0.6.x before 0.6.4, 0.7.x before 0.7.8, and 0.8.x before 0.8.8 allows remote attackers to execute arbitrary code via unspecified vectors. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-4351 2024-11-21 10:32 2013-12-10 Show GitHub Exploit DB Packet Storm
305527 - putty putty PuTTY 0.59 through 0.61 does not clear sensitive process memory when managing user replies that occur during keyboard-interactive authentication, which might allow local users to read login passwords… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-4607 2024-11-21 10:32 2013-08-24 Show GitHub Exploit DB Packet Storm
305528 - php php Session fixation vulnerability in the Sessions subsystem in PHP before 5.5.2 allows remote attackers to hijack web sessions by specifying a session ID. CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4718 2024-11-21 10:32 2013-08-14 Show GitHub Exploit DB Packet Storm
305529 - linux linux_kernel Race condition in the sctp_rcv function in net/sctp/input.c in the Linux kernel before 2.6.29 allows remote attackers to cause a denial of service (system hang) via SCTP packets. NOTE: in some envir… CWE-362
Race Condition
CVE-2011-4348 2024-11-21 10:32 2013-06-8 Show GitHub Exploit DB Packet Storm
305530 - linux linux_kernel The kvm_vm_ioctl_assign_device function in virt/kvm/assigned-dev.c in the KVM subsystem in the Linux kernel before 3.1.10 does not verify permission to access PCI configuration space and BAR resource… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4347 2024-11-21 10:32 2013-06-8 Show GitHub Exploit DB Packet Storm