Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3551 9.8 緊急
Network
Tesseract OCR project Tesseract OCR ZapolnochのTesseract OCRにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-26832 2026-06-8 12:28 2026-03-25 Show GitHub Exploit DB Packet Storm
3552 9.1 緊急
Network
Bytedance Inc. DeerFlow Bytedance Inc.のDeerFlowにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-40518 2026-06-8 12:28 2026-04-17 Show GitHub Exploit DB Packet Storm
3553 5.3 警告
Network
The Netty project netty-incubator-codec-ohttp Nettyのnetty-incubator-codec-ohttpにおける不十分なランダム値の使用に関する脆弱性 CWE-330
不十分なランダム値の使用
CVE-2026-41207 2026-06-8 12:28 2026-06-4 Show GitHub Exploit DB Packet Storm
3554 9.8 緊急
Network
DragonSoft Gcb/fcb Government Financial Cybersecurity Configuration Audit Software DragonSoftのGcb/fcb Government Financial Cybersecurity Configuration Audit Softwareにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-4312 2026-06-8 12:28 2026-03-17 Show GitHub Exploit DB Packet Storm
3555 5.5 警告
Local
Linaro OP-TEE Trusted FirmwareのOP-TEEにおける型の取り違えに関する脆弱性 CWE-843
型の取り違え
CVE-2026-45702 2026-06-8 12:28 2026-06-3 Show GitHub Exploit DB Packet Storm
3556 9.1 緊急
Network
The Netty project netty-incubator-codec-ohttp Nettyのnetty-incubator-codec-ohttpにおける複数の脆弱性 CWE-125
CWE-787
CVE-2026-48040 2026-06-8 12:28 2026-06-4 Show GitHub Exploit DB Packet Storm
3557 9.8 緊急
Network
マイクロソフト Azure HorizonDB Azure HorizonDB Elevation of Privilege Vulnerability CWE-290
スプーフィングによる認証回避
CVE-2026-48567 2026-06-8 12:28 2026-06-4 Show GitHub Exploit DB Packet Storm
3558 7.5 重要
Network
マイクロソフト Microsoft Exchange Online Microsoft Exchange Online Information Disclosure Vulnerability CWE-285
不適切な認可
CVE-2026-48579 2026-06-8 12:27 2026-06-4 Show GitHub Exploit DB Packet Storm
3559 9.1 緊急
Network
CHORNY Apache::Session::Generate::ModUniqueId CHORNYのApache::Session::Generate::ModUniqueIdにおける予測可能な数字や識別子の生成に関する脆弱性 CWE-340
予測可能な数字や識別子の生成
CVE-2026-5081 2026-06-8 12:27 2026-05-6 Show GitHub Exploit DB Packet Storm
3560 7.1 重要
Adjacent
Securly, Inc. Securly Securly, Inc.のSecurlyにおける重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2026-8874 2026-06-8 12:27 2026-06-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307061 - mozilla firefox
thunderbird
thunderbird_esr
seamonkey
The SVG Filters implementation in Mozilla Firefox before 3.6.28 and 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird before 3.1.20 and 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.… CWE-200
Information Exposure
CVE-2012-0456 2024-11-21 10:35 2012-03-15 Show GitHub Exploit DB Packet Storm
307062 - mozilla firefox
firefox_esr
thunderbird
thunderbird_esr
seamonkey
Mozilla Firefox before 3.6.28 and 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird before 3.1.20 and 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 do not… CWE-79
Cross-site Scripting
CVE-2012-0455 2024-11-21 10:35 2012-03-15 Show GitHub Exploit DB Packet Storm
307063 - mozilla firefox
firefox_esr
thunderbird
thunderbird_esr
seamonkey
Use-after-free vulnerability in Mozilla Firefox 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 on 32-bit … CWE-399
 Resource Management Errors
CVE-2012-0454 2024-11-21 10:35 2012-03-15 Show GitHub Exploit DB Packet Storm
307064 - adobe coldfusion Adobe ColdFusion 8.0, 8.0.1, 9.0, and 9.0.1 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a d… NVD-CWE-Other
CVE-2012-0770 2024-11-21 10:35 2012-03-14 Show GitHub Exploit DB Packet Storm
307065 - tibco spotfire_server
spotfire_analytics_server
web_player_automation_services
spotfire_professional
TIBCO Spotfire Web Application, Web Player Application, Automation Services Application, and Analytics Client Application in Spotfire Analytics Server before 10.1.2; Server before 3.3.3; and Web Play… CWE-200
Information Exposure
CVE-2012-0690 2024-11-21 10:35 2012-03-13 Show GitHub Exploit DB Packet Storm
307066 - tibco activematrix_bpm
activematrix_service_grid
activematrix_service_bus
silver_fabric_activematrix_service_grid_distribution
activematrix_businessworks_service_engine
The server in TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distribution 3.1.3, Service Grid and Service Bus 3.x before 3.1.5, BusinessWorks Service Engine 5.9.x before… CWE-200
Information Exposure
CVE-2012-0689 2024-11-21 10:35 2012-03-13 Show GitHub Exploit DB Packet Storm
307067 - tibco silver_fabric_activematrix_service_grid_distribution
activematrix_service_grid
activematrix_service_bus
activematrix_businessworks_service_engine
activematrix_bpm
Cross-site scripting (XSS) vulnerability in TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distribution 3.1.3, Service Grid and Service Bus 3.x before 3.1.5, BusinessWor… CWE-79
Cross-site Scripting
CVE-2012-0688 2024-11-21 10:35 2012-03-13 Show GitHub Exploit DB Packet Storm
307068 - tibco activematrix_service_grid
activematrix_service_bus
activematrix_businessworks_service_engine
silver_fabric_activematrix_service_grid_distribution
activematrix_bpm
businessevents
act…
TIBCO ActiveMatrix Runtime Platform in Service Grid and Service Bus 2.x before 2.3.2 and BusinessWorks Service Engine before 5.8.2; TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Ser… CWE-200
Information Exposure
CVE-2012-0687 2024-11-21 10:35 2012-03-13 Show GitHub Exploit DB Packet Storm
307069 - openssl openssl The implementation of Cryptographic Message Syntax (CMS) and PKCS #7 in OpenSSL before 0.9.8u and 1.x before 1.0.0h does not properly restrict certain oracle behavior, which makes it easier for conte… CWE-310
Cryptographic Issues
CVE-2012-0884 2024-11-21 10:35 2012-03-13 Show GitHub Exploit DB Packet Storm
307070 - apple safari WebKit in Apple Safari before 5.1.4 does not properly handle redirects in conjunction with HTTP authentication, which might allow remote web servers to capture credentials by logging the Authorizatio… CWE-200
Information Exposure
CVE-2012-0647 2024-11-21 10:35 2012-03-13 Show GitHub Exploit DB Packet Storm