Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4121 5.3 警告
Network
protobufjs project protobufjs protobufjs projectのprotobufjsにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-44294 2026-05-15 10:57 2026-05-13 Show GitHub Exploit DB Packet Storm
4122 6.1 警告
Network
hono hono honoにおけるインジェクションに関する脆弱性 CWE-74
インジェクション
CVE-2026-44455 2026-05-15 10:57 2026-05-13 Show GitHub Exploit DB Packet Storm
4123 6.5 警告
Network
hono hono honoにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-44456 2026-05-15 10:57 2026-05-13 Show GitHub Exploit DB Packet Storm
4124 5.3 警告
Network
hono hono honoにおける重要な情報を含むキャッシュの使用に関する脆弱性 CWE-524
重要な情報を含むキャッシュの使用
CVE-2026-44457 2026-05-15 10:57 2026-05-13 Show GitHub Exploit DB Packet Storm
4125 4.3 警告
Network
hono hono honoにおける複数の脆弱性 CWE-116
CWE-74
CVE-2026-44458 2026-05-15 10:57 2026-05-13 Show GitHub Exploit DB Packet Storm
4126 3.8
Network
hono hono honoにおける入力で指定された数量の不適切な検証に関する脆弱性 CWE-1284
入力で指定された数量の不適切な検証
CVE-2026-44459 2026-05-15 10:57 2026-05-13 Show GitHub Exploit DB Packet Storm
4127 7.5 重要
Network
Vercel, Inc. (旧 Zeit, Inc.) Next.js Vercel, Inc. (旧 Zeit, Inc.)のNext.jsにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-44573 2026-05-15 10:57 2026-05-13 Show GitHub Exploit DB Packet Storm
4128 8.1 重要
Network
Vercel, Inc. (旧 Zeit, Inc.) Next.js Vercel, Inc. (旧 Zeit, Inc.)のNext.jsにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2026-44574 2026-05-15 10:57 2026-05-13 Show GitHub Exploit DB Packet Storm
4129 7.5 重要
Network
Vercel, Inc. (旧 Zeit, Inc.) Next.js Vercel, Inc. (旧 Zeit, Inc.)のNext.jsにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2026-44575 2026-05-15 10:57 2026-05-13 Show GitHub Exploit DB Packet Storm
4130 5.9 警告
Network
Vercel, Inc. (旧 Zeit, Inc.) Next.js Vercel, Inc. (旧 Zeit, Inc.)のNext.jsにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-44577 2026-05-15 10:57 2026-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306151 - puppetlabs
puppet
puppet Puppet 2.7.x before 2.7.5, 2.6.x before 2.6.11, and 0.25.x, when running in --edit mode, uses a predictable file name, which allows local users to run arbitrary Puppet code or trick a user into editi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-3871 2024-11-21 10:31 2011-10-28 Show GitHub Exploit DB Packet Storm
306152 - puppetlabs
puppet
puppet Puppet 2.7.x before 2.7.5, 2.6.x before 2.6.11, and 0.25.x allows local users to modify the permissions of arbitrary files via a symlink attack on the SSH authorized_keys file. CWE-59
Link Following
CVE-2011-3870 2024-11-21 10:31 2011-10-28 Show GitHub Exploit DB Packet Storm
306153 - puppetlabs
puppet
puppet Puppet 2.7.x before 2.7.5, 2.6.x before 2.6.11, and 0.25.x allows local users to overwrite arbitrary files via a symlink attack on the .k5login file. CWE-59
Link Following
CVE-2011-3869 2024-11-21 10:31 2011-10-28 Show GitHub Exploit DB Packet Storm
306154 - puppetlabs
puppet
puppet Directory traversal vulnerability in Puppet 2.6.x before 2.6.10 and 2.7.x before 2.7.4 allows remote attackers to write X.509 Certificate Signing Request (CSR) to arbitrary locations via (1) a double… CWE-22
Path Traversal
CVE-2011-3848 2024-11-21 10:31 2011-10-28 Show GitHub Exploit DB Packet Storm
306155 - google chrome Google Chrome before 15.0.874.102 does not properly restrict access to internal Google V8 functions, which allows remote attackers to cause a denial of service or possibly have unspecified other impa… NVD-CWE-noinfo
CVE-2011-3891 2024-11-21 10:31 2011-10-26 Show GitHub Exploit DB Packet Storm
306156 - google chrome Use-after-free vulnerability in Google Chrome before 15.0.874.102 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to video source ha… CWE-416
 Use After Free
CVE-2011-3890 2024-11-21 10:31 2011-10-26 Show GitHub Exploit DB Packet Storm
306157 - google chrome Heap-based buffer overflow in the Web Audio implementation in Google Chrome before 15.0.874.102 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unkn… CWE-787
 Out-of-bounds Write
CVE-2011-3889 2024-11-21 10:31 2011-10-26 Show GitHub Exploit DB Packet Storm
306158 - google
apple
chrome
iphone_os
itunes
safari
Use-after-free vulnerability in Google Chrome before 15.0.874.102 allows user-assisted remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to e… CWE-416
 Use After Free
CVE-2011-3888 2024-11-21 10:31 2011-10-26 Show GitHub Exploit DB Packet Storm
306159 - google
apple
chrome
iphone_os
safari
Google Chrome before 15.0.874.102 does not properly handle javascript: URLs, which allows remote attackers to bypass intended access restrictions and read cookies via unspecified vectors. CWE-565
 Reliance on Cookies without Validation and Integrity Checking
CVE-2011-3887 2024-11-21 10:31 2011-10-26 Show GitHub Exploit DB Packet Storm
306160 - google v8 Google V8, as used in Google Chrome before 15.0.874.102, allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JavaScript code that triggers out-o… CWE-20
 Improper Input Validation 
CVE-2011-3886 2024-11-21 10:31 2011-10-26 Show GitHub Exploit DB Packet Storm