Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3241 8.1 重要
Network
Apache Software Foundation Apache Flink Apache Software FoundationのApache Flinkにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-35194 2026-05-20 13:20 2026-05-15 Show GitHub Exploit DB Packet Storm
3242 4.3 警告
Network
マイクロソフト Microsoft Edge Microsoft Edge (Chromium ベース) for Android のスプーフィングの脆弱性 CWE-451
ユーザインターフェースにおける重要情報の誤った表示
CVE-2026-35429 2026-05-20 13:20 2026-05-12 Show GitHub Exploit DB Packet Storm
3243 7.8 重要
Local
Linux Foundation Automotive Grade Linux Linux FoundationのAutomotive Grade Linuxにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-37525 2026-05-20 13:20 2026-05-1 Show GitHub Exploit DB Packet Storm
3244 7.8 重要
Local
Linux Foundation Automotive Grade Linux Linux FoundationのAutomotive Grade Linuxにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-37526 2026-05-20 13:20 2026-05-1 Show GitHub Exploit DB Packet Storm
3245 9.8 緊急
Network
Linux Foundation Automotive Grade Linux Linux FoundationのAutomotive Grade Linuxにおける複数の脆弱性 CWE-22
CWE-367
CVE-2026-37531 2026-05-20 13:20 2026-05-1 Show GitHub Exploit DB Packet Storm
3246 6.5 警告
Network
Timo Sirainen
Open-Xchange
Dovecot Pro
Dovecot
Timo Sirainen等の複数ベンダの製品におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-40016 2026-05-20 13:20 2026-05-12 Show GitHub Exploit DB Packet Storm
3247 4.3 警告
Network
Timo Sirainen
Open-Xchange
Dovecot Pro
Dovecot
Timo Sirainen等の複数ベンダの製品におけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-40020 2026-05-20 13:20 2026-05-12 Show GitHub Exploit DB Packet Storm
3248 7.8 重要
Local
マイクロソフト Azure Connected Machine Agent Azure Connected Machine Agent の特権の昇格の脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-40381 2026-05-20 13:20 2026-05-12 Show GitHub Exploit DB Packet Storm
3249 9.8 緊急
Network
エレコム株式会社 WRC-XE5400GS-G
WRC-BE72XSD-B
WAB-BE72-M
WRC-X1800GS-B
WRC-BE65QSD-B
WRC-X6000QSA-G
WRC-X3000GS2A-B
WRC-W702-B
WRC-X6000XS-G
WAB-BE36-M
WRC-X6000XST-G
WRC-X3000GS2-B
エレコム製無線LANルーターおよび無線アクセスポイントにおける複数の脆弱性(2026年5月) CWE-78
CWE-79
CWE-Other
CVE-2026-25107
CVE-2026-35506
CVE-2026-40621
CVE-2026-42062
CVE-2026-42948
CVE-2026-42950
CVE-2026-42961
2026-05-19 17:24 2026-05-12 Show GitHub Exploit DB Packet Storm
3250 - - (複数のベンダ) (複数の製品) CISA ICS Advisory / ICS Medical Advisory(2026年05月14日) - - 2026-05-18 14:06 2026-05-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306131 - cisco telepresence_video_communication_servers
telepresence_video_communication_servers_software
Cross-site scripting (XSS) vulnerability in the login page in the administrative interface on Cisco TelePresence Video Communication Servers (VCS) with software before X7.0 allows remote attackers to… CWE-79
Cross-site Scripting
CVE-2011-3294 2024-11-21 10:30 2011-10-20 Show GitHub Exploit DB Packet Storm
306132 - oracle java_system_application_server
communications_server
glassfish_server
Unspecified vulnerability in Oracle Communications Server 2.0; GlassFish Enterprise Server 2.1.1, 3.0.1, and 3.1.1; and Sun Java System App Server 8.1 and 8.2 allows remote attackers to affect availa… NVD-CWE-noinfo
CVE-2011-3559 2024-11-21 10:30 2011-10-19 Show GitHub Exploit DB Packet Storm
306133 - sun sunos Unspecified vulnerability in Oracle Solaris 11 Express allows remote attackers to affect availability, related to iSCSI DataMover (IDM). NVD-CWE-noinfo
CVE-2011-3543 2024-11-21 10:30 2011-10-19 Show GitHub Exploit DB Packet Storm
306134 - sun sunos Unspecified vulnerability in Oracle Solaris 10 and 11 Express allows local users to affect availability via unknown vectors related to Kernel/Performance Counter BackEnd Module (pcbe). NVD-CWE-noinfo
CVE-2011-3542 2024-11-21 10:30 2011-10-19 Show GitHub Exploit DB Packet Storm
306135 - oracle fusion_middleware Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.5 and 8.3.7 allows local users to affect availability via unknown vectors related to Outside In… NVD-CWE-noinfo
CVE-2011-3541 2024-11-21 10:30 2011-10-19 Show GitHub Exploit DB Packet Storm
306136 - oracle solaris Unspecified vulnerability in Oracle Solaris 10 and 11 Express allows local users to affect availability via unknown vectors related to Zones. NVD-CWE-noinfo
CVE-2011-3539 2024-11-21 10:30 2011-10-19 Show GitHub Exploit DB Packet Storm
306137 - oracle virtualization Unspecified vulnerability in the Sun Ray component in Oracle Virtualization 4.0 allows remote attackers to affect integrity, related to Authentication. NOTE: this identifier was inadvertently used f… NVD-CWE-noinfo
CVE-2011-3538 2024-11-21 10:30 2011-10-19 Show GitHub Exploit DB Packet Storm
306138 - oracle solaris Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 Express allows local users to affect availability via unknown vectors related to Kernel/Filesystem. NVD-CWE-noinfo
CVE-2011-3537 2024-11-21 10:30 2011-10-19 Show GitHub Exploit DB Packet Storm
306139 - oracle solaris Unspecified vulnerability in Oracle Solaris 10 allows local users to affect availability, related to DTrace Software Library (libdtrace). NVD-CWE-noinfo
CVE-2011-3536 2024-11-21 10:30 2011-10-19 Show GitHub Exploit DB Packet Storm
306140 - oracle sun_products_suite Unspecified vulnerability in the Solaris component in Oracle Sun Products Suite 8, 9, 10, and 11 Express allows remote attackers to affect availability via unknown vectors related to Remote Quota Ser… NVD-CWE-noinfo
CVE-2011-3535 2024-11-21 10:30 2011-10-19 Show GitHub Exploit DB Packet Storm