Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3321 7.2 重要
Network
Apache Software Foundation Apache Syncope Apache Software FoundationのApache Syncopeにおける隔離または分類に関する脆弱性 CWE-653
不適切な隔離または分類
CVE-2026-42782 2026-05-29 11:17 2026-05-25 Show GitHub Exploit DB Packet Storm
3322 7.5 重要
Network
マイクロソフト Microsoft 365 Copilot M365 Copilot の情報漏えいの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-42827 2026-05-29 11:17 2026-05-22 Show GitHub Exploit DB Packet Storm
3323 10 緊急
Network
マイクロソフト Microsoft Entra ID Microsoft Entra ID の特権昇格の脆弱性 CWE-346
同一生成元ポリシー違反
CVE-2026-42901 2026-05-29 11:17 2026-05-22 Show GitHub Exploit DB Packet Storm
3324 4.3 警告
Network
Traccar Ltd Traccar Traccar LtdのTraccarにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-44314 2026-05-29 11:17 2026-05-26 Show GitHub Exploit DB Packet Storm
3325 8.7 重要
Network
Twenty.com PBC Twenty Twenty.com PBCのTwentyにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-44729 2026-05-29 11:17 2026-05-26 Show GitHub Exploit DB Packet Storm
3326 7.2 重要
Network
citeum opencti citeumのopenctiにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-44730 2026-05-29 11:16 2026-05-26 Show GitHub Exploit DB Packet Storm
3327 5.3 警告
Network
Hedera Guardian HederaのGuardianにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-45248 2026-05-29 11:16 2026-05-14 Show GitHub Exploit DB Packet Storm
3328 8.1 重要
Network
Apache Software Foundation apache-airflow-providers-google Apache Software Foundationのapache-airflow-providers-googleにおけるエンティティ認証のない鍵交換に関する脆弱性 CWE-322
エンティティ認証のない鍵交換
CVE-2026-45361 2026-05-29 11:16 2026-05-25 Show GitHub Exploit DB Packet Storm
3329 8.8 重要
Network
マイクロソフト Microsoft SharePoint Server Microsoft SharePoint のリモート コードが実行される脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-45659 2026-05-29 11:16 2026-05-22 Show GitHub Exploit DB Packet Storm
3330 9.9 緊急
Network
Twenty.com PBC Twenty Twenty.com PBCのTwentyにおける複数の脆弱性 CWE-78
CWE-89
CVE-2026-46624 2026-05-29 11:16 2026-05-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 26, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
308001 - ibm datacap_taskmaster_capture The Web Client Service in IBM Datacap Taskmaster Capture 8.0.1 before FP1 requires a cleartext password, which has unspecified impact and attack vectors. CWE-310
Cryptographic Issues
CVE-2011-2142 2024-11-21 10:27 2011-05-17 Show GitHub Exploit DB Packet Storm
308002 - ibm datacap_taskmaster_capture SQL injection vulnerability in TMWeb in IBM Datacap Taskmaster Capture 8.0.1 before FP1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2011-2141 2024-11-21 10:27 2011-05-17 Show GitHub Exploit DB Packet Storm
308003 - hp business_availability_center Cross-site scripting (XSS) vulnerability in HP Business Availability Center (BAC) 8.06 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2011-1856 2024-11-21 10:27 2011-05-17 Show GitHub Exploit DB Packet Storm
308004 - evan_dandrea usb-creator usb-creator-helper in usb-creator before 0.2.28.3 does not enforce intended PolicyKit restrictions, which allows local users to perform arbitrary unmount operations via the UnmountFile method in a db… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-1828 2024-11-21 10:27 2011-05-17 Show GitHub Exploit DB Packet Storm
308005 - ca ehealth Multiple cross-site scripting (XSS) vulnerabilities in CA eHealth 6.0.x, 6.1.x, 6.2.1, and 6.2.2 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters. CWE-79
Cross-site Scripting
CVE-2011-1899 2024-11-21 10:27 2011-05-17 Show GitHub Exploit DB Packet Storm
308006 - google chrome Multiple integer overflows in the SVG Filters implementation in WebCore in WebKit in Google Chrome before 11.0.696.68 allow remote attackers to cause a denial of service or possibly have unspecified … CWE-190
 Integer Overflow or Wraparound
CVE-2011-1800 2024-11-21 10:27 2011-05-17 Show GitHub Exploit DB Packet Storm
308007 - google
debian
chrome
debian_linux
Google Chrome before 11.0.696.68 does not properly perform casts of variables during interaction with the WebKit engine, which allows remote attackers to cause a denial of service or possibly have un… CWE-704
 Incorrect Type Conversion or Cast
CVE-2011-1799 2024-11-21 10:27 2011-05-17 Show GitHub Exploit DB Packet Storm
308008 - iconics bizviz
genesis32
Stack-based buffer overflow in the SetActiveXGUID method in the VersionInfo ActiveX control in GenVersion.dll 8.0.138.0 in the WebHMI subsystem in ICONICS BizViz 9.x before 9.22 and GENESIS32 9.x bef… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2089 2024-11-21 10:27 2011-05-14 Show GitHub Exploit DB Packet Storm
308009 - apache
opensymphony
struts
xwork
webwork
XWork 2.2.1 in Apache Struts 2.2.1, and OpenSymphony XWork in OpenSymphony WebWork, allows remote attackers to obtain potentially sensitive information about internal Java class paths via vectors inv… CWE-200
Information Exposure
CVE-2011-2088 2024-11-21 10:27 2011-05-14 Show GitHub Exploit DB Packet Storm
308010 - apache struts Multiple cross-site scripting (XSS) vulnerabilities in component handlers in the javatemplates (aka Java Templates) plugin in Apache Struts 2.x before 2.2.3 allow remote attackers to inject arbitrary… CWE-79
Cross-site Scripting
CVE-2011-2087 2024-11-21 10:27 2011-05-14 Show GitHub Exploit DB Packet Storm