Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3621 9.9 緊急
Network
ABB T-MAC Plus ABBのT-MAC Plusにおける外部からアクセス可能なファイルまたはディレクトリに関する脆弱性 CWE-552
外部からアクセス可能なファイルまたはディレクトリ
CVE-2025-14771 2026-06-8 11:51 2026-06-3 Show GitHub Exploit DB Packet Storm
3622 8.8 重要
Network
ABB T-MAC Plus ABBのT-MAC Plusにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2025-14772 2026-06-8 11:50 2026-06-3 Show GitHub Exploit DB Packet Storm
3623 5.4 警告
Network
ABB T-MAC Plus ABBのT-MAC Plusにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-14773 2026-06-8 11:50 2026-06-3 Show GitHub Exploit DB Packet Storm
3624 7.4 重要
Adjacent
ABB T-MAC Plus ABBのT-MAC Plusにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2025-14774 2026-06-8 11:50 2026-06-3 Show GitHub Exploit DB Packet Storm
3625 5.4 警告
Network
Koha Koha Kohaにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-26378 2026-06-8 11:50 2026-06-3 Show GitHub Exploit DB Packet Storm
3626 7.8 重要
Local
Canonical Ubuntu CanonicalのUbuntuにおける権限の連鎖に関する脆弱性 CWE-268
権限の連鎖
CVE-2026-3888 2026-06-8 11:50 2026-03-17 Show GitHub Exploit DB Packet Storm
3627 9.8 緊急
Network
日本エイサー Acer Connect M6E 5G Firmware エイサーのAcer Connect M6E 5G FirmwareにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-49185 2026-06-8 11:50 2026-06-4 Show GitHub Exploit DB Packet Storm
3628 9.8 緊急
Network
日本エイサー Acer Connect M6E 5G Firmware エイサーのAcer Connect M6E 5G Firmwareにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-49186 2026-06-8 11:50 2026-06-4 Show GitHub Exploit DB Packet Storm
3629 7.5 重要
Network
日本エイサー Acer Connect M6E 5G Firmware エイサーのAcer Connect M6E 5G Firmwareにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-49187 2026-06-8 11:50 2026-06-4 Show GitHub Exploit DB Packet Storm
3630 9.8 緊急
Network
日本エイサー Acer Connect M6E 5G Firmware エイサーのAcer Connect M6E 5G Firmwareにおけるアクティブ状態のデバッグコードに関する脆弱性 CWE-489
間違ったセッションへのデータの漏洩
CVE-2026-49188 2026-06-8 11:50 2026-06-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307001 - oracle peoplesoft_products Unspecified vulnerability in the PeopleSoft Enterprise CRM component in Oracle PeopleSoft Products 9.1 allows remote authenticated users to affect confidentiality, related to SEC. NVD-CWE-noinfo
CVE-2012-0514 2024-11-21 10:35 2012-05-4 Show GitHub Exploit DB Packet Storm
307002 - oracle e-business_suite Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.0.6 and 12.1.3 allows remote attackers to affect integrity, related to REST Services. NVD-CWE-noinfo
CVE-2012-0513 2024-11-21 10:35 2012-05-4 Show GitHub Exploit DB Packet Storm
307003 - oracle database_server Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Database Server 11.1.0.7 and 11.2.0.2 and Oracle Enterprise Manager Grid Control allows remote authenticated user… NVD-CWE-noinfo
CVE-2012-0512 2024-11-21 10:35 2012-05-4 Show GitHub Exploit DB Packet Storm
307004 - oracle database_server Unspecified vulnerability in the OCI component in Oracle Database Server 10.2.0.3, 10.2.0.4, and 11.1.0.7 allows remote attackers to affect confidentiality and integrity via unknown vectors. NVD-CWE-noinfo
CVE-2012-0511 2024-11-21 10:35 2012-05-4 Show GitHub Exploit DB Packet Storm
307005 - oracle database_server Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, and 11.1.0.7 allows remote attackers to affect integrity and availability via unknown vec… NVD-CWE-noinfo
CVE-2012-0510 2024-11-21 10:35 2012-05-4 Show GitHub Exploit DB Packet Storm
307006 - oracle financial_services_software Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.2 and 5.3.0 through 5.3.4 allows remote authenticated users to affect integrity via… NVD-CWE-noinfo
CVE-2012-0509 2024-11-21 10:35 2012-05-4 Show GitHub Exploit DB Packet Storm
307007 - ibm rational_appscan Cross-site scripting (XSS) vulnerability in IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2012-0737 2024-11-21 10:35 2012-05-3 Show GitHub Exploit DB Packet Storm
307008 - ibm rational_appscan IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 does not properly create scan jobs, which allows remote attackers to execute arbitrary code via a crafted web site. CWE-20
 Improper Input Validation 
CVE-2012-0736 2024-11-21 10:35 2012-05-3 Show GitHub Exploit DB Packet Storm
307009 - ibm rational_appscan IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 does not properly scan file: URLs, which allows man-in-the-middle attackers to obtain sensitive information or possibly have unspecified oth… CWE-20
 Improper Input Validation 
CVE-2012-0735 2024-11-21 10:35 2012-05-3 Show GitHub Exploit DB Packet Storm
307010 - ibm rational_appscan IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 does not properly import jobs, which allows man-in-the-middle attackers to obtain sensitive information or possibly have unspecified other i… NVD-CWE-noinfo
CVE-2012-0734 2024-11-21 10:35 2012-05-3 Show GitHub Exploit DB Packet Storm