Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 10:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2951 9.8 緊急
Network
Joomla! Joomla! Joomla!におけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-35222 2026-05-29 11:17 2026-05-26 Show GitHub Exploit DB Packet Storm
2952 8.8 重要
Network
FreeRDP FreeRDP FreeRDPにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-40033 2026-05-29 11:17 2026-05-26 Show GitHub Exploit DB Packet Storm
2953 9.8 緊急
Network
Joomla! Joomla! Joomla!におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-40383 2026-05-29 11:17 2026-05-26 Show GitHub Exploit DB Packet Storm
2954 7.2 重要
Network
IBM Engineering Lifecycle Management IBMのEngineering Lifecycle Managementにおける危険なメソッドや機能の公開に関する脆弱性 CWE-749
危険なメソッドや機能の公開
CVE-2026-4051 2026-05-29 11:17 2026-05-26 Show GitHub Exploit DB Packet Storm
2955 6.5 警告
Network
struktur AG libheif struktur AGのlibheifにおける複数の脆弱性 CWE-125
CWE-476
CVE-2026-41069 2026-05-29 11:17 2026-05-22 Show GitHub Exploit DB Packet Storm
2956 8.1 重要
Network
struktur AG libheif struktur AGのlibheifにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-41071 2026-05-29 11:17 2026-05-22 Show GitHub Exploit DB Packet Storm
2957 9.3 緊急
Network
マイクロソフト Microsoft 365 Copilot Microsoft Copilot Tampering Vulnerability CWE-77
コマンドインジェクション
CVE-2026-41090 2026-05-29 11:17 2026-05-22 Show GitHub Exploit DB Packet Storm
2958 7.2 重要
Network
Apache Software Foundation Apache Syncope Apache Software FoundationのApache Syncopeにおける隔離または分類に関する脆弱性 CWE-653
不適切な隔離または分類
CVE-2026-42782 2026-05-29 11:17 2026-05-25 Show GitHub Exploit DB Packet Storm
2959 7.5 重要
Network
マイクロソフト Microsoft 365 Copilot M365 Copilot の情報漏えいの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-42827 2026-05-29 11:17 2026-05-22 Show GitHub Exploit DB Packet Storm
2960 10 緊急
Network
マイクロソフト Microsoft Entra ID Microsoft Entra ID の特権昇格の脆弱性 CWE-346
同一生成元ポリシー違反
CVE-2026-42901 2026-05-29 11:17 2026-05-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307561 - prosody prosody Prosody 0.8.x before 0.8.1, when MySQL is used, assigns an incorrect data type to the value column in certain tables, which might allow remote attackers to cause a denial of service (data truncation)… CWE-399
 Resource Management Errors
CVE-2011-2531 2024-11-21 10:28 2011-06-23 Show GitHub Exploit DB Packet Storm
307562 - rockwellautomation rslinx
eds_hardware_installation_tool
Buffer overflow in RSEds.dll in RSHWare.exe in the EDS Hardware Installation Tool 1.0.5.1 and earlier in Rockwell Automation RSLinx Classic before 2.58 allows user-assisted remote attackers to cause … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2530 2024-11-21 10:28 2011-06-23 Show GitHub Exploit DB Packet Storm
307563 - icinga icinga Multiple cross-site scripting (XSS) vulnerabilities in config.c in config.cgi in Icinga before 1.4.1, when escape_html_tags is disabled, allow remote attackers to inject arbitrary web script or HTML … CWE-79
Cross-site Scripting
CVE-2011-2477 2024-11-21 10:28 2011-06-15 Show GitHub Exploit DB Packet Storm
307564 - coppermine-gallery coppermine_photo_gallery Cross-site scripting (XSS) vulnerability in Coppermine Photo Gallery (CPG) before 1.5.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerabil… CWE-79
Cross-site Scripting
CVE-2011-2476 2024-11-21 10:28 2011-06-15 Show GitHub Exploit DB Packet Storm
307565 - sybase onebridge_mobile_data_suite Format string vulnerability in ECTrace.dll in the iMailGateway service in the Internet Mail Gateway in OneBridge Server and DMZ Proxy in Sybase OneBridge Mobile Data Suite 5.5 and 5.6 allows remote a… CWE-134
Use of Externally-Controlled Format String
CVE-2011-2475 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307566 - sybase easerver Directory traversal vulnerability in the HTTP Server in Sybase EAServer 6.3.1 Developer Edition allows remote attackers to read arbitrary files via a /.\../\../\ sequence in a path. CWE-22
Path Traversal
CVE-2011-2474 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307567 - maynard_johnson oprofile The do_dump_data function in utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to create or overwrite arbitrary files via a crafted --session-dir argument in conjunction with a sy… CWE-59
Link Following
CVE-2011-2473 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307568 - maynard_johnson oprofile Directory traversal vulnerability in utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to overwrite arbitrary files via a .. (dot dot) in the --save argument, related to the --ses… CWE-22
Path Traversal
CVE-2011-2472 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307569 - maynard_johnson oprofile utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to gain privileges via shell metacharacters in the (1) --vmlinux, (2) --session-dir, or (3) --xen argument, related to the daemon… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-2471 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm
307570 - google chrome The DOM implementation in Google Chrome before 12.0.742.91 allows remote attackers to bypass the Same Origin Policy via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2011-2342 2024-11-21 10:28 2011-06-10 Show GitHub Exploit DB Packet Storm