Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3361 6.1 警告
Network
spin.js spin.js spin.jsにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-3884 2026-05-11 11:02 2026-03-11 Show GitHub Exploit DB Packet Storm
3362 8.3 重要
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)におけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2024-30151 2026-05-11 11:02 2026-05-6 Show GitHub Exploit DB Packet Storm
3363 5.7 警告
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2025-31957 2026-05-11 11:02 2026-05-6 Show GitHub Exploit DB Packet Storm
3364 3.5
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)におけるメタデータのよる重要な情報の公開に関する脆弱性 CWE-1230
メタデータのよる重要な情報の公開
CVE-2025-31959 2026-05-11 11:02 2026-05-6 Show GitHub Exploit DB Packet Storm
3365 5.3 警告
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)におけるエラーメッセージによる情報漏えいに関する脆弱性 CWE-209
エラーメッセージによる情報漏えい
CVE-2025-31960 2026-05-11 11:02 2026-05-6 Show GitHub Exploit DB Packet Storm
3366 5.3 警告
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2025-31975 2026-05-11 11:02 2026-05-6 Show GitHub Exploit DB Packet Storm
3367 5.4 警告
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2025-31984 2026-05-11 11:02 2026-05-6 Show GitHub Exploit DB Packet Storm
3368 7.2 重要
Network
デル data domain operating system デルのdata domain operating systemにおけるセッションの固定化の脆弱性 CWE-384
セッションの固定化
CVE-2025-46605 2026-05-11 11:02 2026-04-17 Show GitHub Exploit DB Packet Storm
3369 7.2 重要
Network
デル data domain operating system デルのdata domain operating systemにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2025-46606 2026-05-11 11:01 2026-04-17 Show GitHub Exploit DB Packet Storm
3370 8.8 重要
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2025-52613 2026-05-11 11:01 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306421 - php pear The installer in PEAR before 1.9.2 allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) p… CWE-59
Link Following
CVE-2011-1072 2024-11-21 10:25 2011-03-3 Show GitHub Exploit DB Packet Storm
306422 - ruby-lang ruby The safe-level feature in Ruby 1.8.6 through 1.8.6-420, 1.8.7 through 1.8.7-330, and 1.8.8dev allows context-dependent attackers to modify strings via the Exception#to_s method, as demonstrated by ch… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-1005 2024-11-21 10:25 2011-03-3 Show GitHub Exploit DB Packet Storm
306423 - ruby-lang ruby The FileUtils.remove_entry_secure method in Ruby 1.8.6 through 1.8.6-420, 1.8.7 through 1.8.7-330, 1.8.8dev, 1.9.1 through 1.9.1-430, 1.9.2 through 1.9.2-136, and 1.9.3dev allows local users to delet… CWE-59
Link Following
CVE-2011-1004 2024-11-21 10:25 2011-03-3 Show GitHub Exploit DB Packet Storm
306424 - google chrome Google Chrome before 9.0.597.107 does not properly perform layout, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead t… NVD-CWE-noinfo
CVE-2011-1125 2024-11-21 10:25 2011-03-2 Show GitHub Exploit DB Packet Storm
306425 - google chrome Use-after-free vulnerability in Google Chrome before 9.0.597.107 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to blocked plug-ins. CWE-416
 Use After Free
CVE-2011-1124 2024-11-21 10:25 2011-03-2 Show GitHub Exploit DB Packet Storm
306426 - google chrome Google Chrome before 9.0.597.107 does not properly restrict access to internal extension functions, which has unspecified impact and remote attack vectors. CWE-863
 Incorrect Authorization
CVE-2011-1123 2024-11-21 10:25 2011-03-2 Show GitHub Exploit DB Packet Storm
306427 - google chrome The WebGL implementation in Google Chrome before 9.0.597.107 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors, aka Issue 71960. CWE-125
Out-of-bounds Read
CVE-2011-1122 2024-11-21 10:25 2011-03-2 Show GitHub Exploit DB Packet Storm
306428 - google
apple
chrome
iphone_os
itunes
safari
Integer overflow in Google Chrome before 9.0.597.107 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving a TEXTAREA element. CWE-190
 Integer Overflow or Wraparound
CVE-2011-1121 2024-11-21 10:25 2011-03-2 Show GitHub Exploit DB Packet Storm
306429 - google chrome The WebGL implementation in Google Chrome before 9.0.597.107 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors, aka Issue 71717. CWE-125
Out-of-bounds Read
CVE-2011-1120 2024-11-21 10:25 2011-03-2 Show GitHub Exploit DB Packet Storm
306430 - google chrome Google Chrome before 9.0.597.107 does not properly determine device orientation, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vecto… NVD-CWE-noinfo
CVE-2011-1119 2024-11-21 10:25 2011-03-2 Show GitHub Exploit DB Packet Storm