Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5311 6.3 警告
Local
Glances project Glances Nicolas Hennion (nicolargo)のGlancesにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-35588 2026-04-24 11:42 2026-04-21 Show GitHub Exploit DB Packet Storm
5312 7.3 重要
Local
Anthropic PBC Claude Code Anthropic PBCのClaude Codeにおける信頼できない検索パスに関する脆弱性 CWE-426
信頼性のない検索パス
CVE-2026-35603 2026-04-24 11:42 2026-04-17 Show GitHub Exploit DB Packet Storm
5313 6.5 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost ServerにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-3590 2026-04-24 11:42 2026-04-15 Show GitHub Exploit DB Packet Storm
5314 6.5 警告
Network
WWBN AVideo WWBNのAVideoにおけるデータの信頼性についての不十分な検証に関する脆弱性 CWE-345
データの信頼性についての不十分な検証
CVE-2026-39366 2026-04-24 11:42 2026-04-7 Show GitHub Exploit DB Packet Storm
5315 5.4 警告
Network
WWBN AVideo WWBNのAVideoにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-39367 2026-04-24 11:42 2026-04-7 Show GitHub Exploit DB Packet Storm
5316 6.5 警告
Network
WWBN AVideo WWBNのAVideoにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-39368 2026-04-24 11:42 2026-04-7 Show GitHub Exploit DB Packet Storm
5317 7.6 重要
Network
WWBN AVideo WWBNのAVideoにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-39369 2026-04-24 11:42 2026-04-7 Show GitHub Exploit DB Packet Storm
5318 7.1 重要
Network
WWBN AVideo WWBNのAVideoにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-39370 2026-04-24 11:42 2026-04-7 Show GitHub Exploit DB Packet Storm
5319 7.8 重要
Local
Vim Vim Vimにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-39881 2026-04-24 11:42 2026-04-8 Show GitHub Exploit DB Packet Storm
5320 5.3 警告
Network
OpenEXR OpenEXR OpenEXRにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-39886 2026-04-24 11:42 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
241 6.5 MEDIUM
Network
- - Inappropriate implementation in WebUI in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform domain spoofing via a crafted domain name. (Chromium security severity: Low) New CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-11225 2026-06-6 00:16 2026-06-5 Show GitHub Exploit DB Packet Storm
242 8.8 HIGH
Network
- - Use after free in Chromoting in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via malicious network traffic. (Chromium security severity: Low) New CWE-416
 Use After Free
CVE-2026-11224 2026-06-6 00:16 2026-06-5 Show GitHub Exploit DB Packet Storm
243 6.5 MEDIUM
Network
- - Insufficient validation of untrusted input in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a cra… New CWE-20
 Improper Input Validation 
CVE-2026-11223 2026-06-6 00:16 2026-06-5 Show GitHub Exploit DB Packet Storm
244 6.5 MEDIUM
Network
- - Incorrect security UI in Tab Strip in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform domain spoofing via a crafted HTML page. (Chromium security severity: Low) New CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-11222 2026-06-6 00:16 2026-06-5 Show GitHub Exploit DB Packet Storm
245 4.3 MEDIUM
Network
- - Insufficient validation of untrusted input in PointerLock in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to perform UI spoofing via a craft… New CWE-20
 Improper Input Validation 
CVE-2026-11221 2026-06-6 00:16 2026-06-5 Show GitHub Exploit DB Packet Storm
246 6.5 MEDIUM
Network
- - Insufficient validation of untrusted input in Navigation in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a craf… New CWE-20
 Improper Input Validation 
CVE-2026-11220 2026-06-6 00:16 2026-06-5 Show GitHub Exploit DB Packet Storm
247 4.3 MEDIUM
Network
- - Inappropriate implementation in Navigation in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Lo… New CWE-693
 Protection Mechanism Failure
CVE-2026-11219 2026-06-6 00:16 2026-06-5 Show GitHub Exploit DB Packet Storm
248 8.1 HIGH
Network
- - Inappropriate implementation in PlatformIntegration in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbi… New CWE-20
CWE-94
 Improper Input Validation 
Code Injection
CVE-2026-11218 2026-06-6 00:16 2026-06-5 Show GitHub Exploit DB Packet Storm
249 6.5 MEDIUM
Network
- - Inappropriate implementation in Fenced Frames in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML pa… New CWE-346
 Origin Validation Error
CVE-2026-11217 2026-06-6 00:16 2026-06-5 Show GitHub Exploit DB Packet Storm
250 4.3 MEDIUM
Network
- - Incorrect security UI in File Input in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML … New CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-11216 2026-06-6 00:16 2026-06-5 Show GitHub Exploit DB Packet Storm