Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5741 5.9 警告
Network
Elasticsearch B.V. Elastic Package Registry Elasticsearch B.V.のElastic Package Registryにおけるデジタル署名の検証に関する脆弱性 CWE-347
デジタル署名の不適切な検証
CVE-2026-33467 2026-05-7 10:53 2026-04-28 Show GitHub Exploit DB Packet Storm
5742 4.4 警告
Local
Mercurycom MIPC252W Firmware MercurycomのMIPC252W Firmwareにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-35901 2026-05-7 10:53 2026-04-27 Show GitHub Exploit DB Packet Storm
5743 6.2 警告
Local
Mercurycom MIPC252W Firmware MercurycomのMIPC252W Firmwareにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2026-35902 2026-05-7 10:53 2026-04-27 Show GitHub Exploit DB Packet Storm
5744 9.8 緊急
Network
Mercurycom MIPC252W Firmware MercurycomのMIPC252W Firmwareにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-35903 2026-05-7 10:53 2026-04-27 Show GitHub Exploit DB Packet Storm
5745 4.8 警告
Network
Apache Software Foundation Apache Storm Prometheus Reporter Apache Software FoundationのApache Storm Prometheus Reporterにおける証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2026-40557 2026-05-7 10:53 2026-04-27 Show GitHub Exploit DB Packet Storm
5746 8.8 重要
Network
minerva minerva Agilonhealth (MphRx)のMinervaにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-5779 2026-05-7 10:53 2026-04-28 Show GitHub Exploit DB Packet Storm
5747 8.1 重要
Network
minerva minerva Agilonhealth (MphRx)のMinervaにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-5780 2026-05-7 10:52 2026-04-28 Show GitHub Exploit DB Packet Storm
5748 8.8 重要
Network
Frappe ERPNext FrappeのERPNextにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2023-54345 2026-05-7 10:52 2026-05-5 Show GitHub Exploit DB Packet Storm
5749 7.5 重要
Network
OpenEMR OpenEMR OpenEMRにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2023-54347 2026-05-7 10:52 2026-05-5 Show GitHub Exploit DB Packet Storm
5750 7.2 重要
Network
デル data domain operating system デルのdata domain operating systemにおける認証に関する脆弱性 CWE-287
CWE-noinfo
CVE-2025-46607 2026-05-7 10:52 2026-04-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347381 - google chrome Unspecified vulnerability in Google Chrome before 4.1.249.1036 allows remote attackers to truncate the URL shown in the HTTP Basic Authentication dialog via unknown vectors. NVD-CWE-noinfo
CVE-2010-1234 2017-09-19 10:30 2010-04-2 Show GitHub Exploit DB Packet Storm
347382 - google chrome Unspecified vulnerability in Google Chrome before 4.1.249.1036 allows remote attackers to trigger the omission of a download warning dialog via unknown vectors. CWE-20
 Improper Input Validation 
CVE-2010-1235 2017-09-19 10:30 2010-04-2 Show GitHub Exploit DB Packet Storm
347383 - google
flock
chrome
flock
The protocolIs function in platform/KURLGoogle.cpp in WebCore in WebKit before r55822, as used in Google Chrome before 4.1.249.1036 and Flock Browser 3.x before 3.0.0.4112, does not properly handle w… CWE-79
Cross-site Scripting
CVE-2010-1236 2017-09-19 10:30 2010-04-2 Show GitHub Exploit DB Packet Storm
347384 - google chrome Google Chrome 4.1 BETA before 4.1.249.1036 allows remote attackers to cause a denial of service (memory error) or possibly have unspecified other impact via an empty SVG element. NVD-CWE-noinfo
CWE-20
 Improper Input Validation 
CVE-2010-1237 2017-09-19 10:30 2010-04-2 Show GitHub Exploit DB Packet Storm
347385 - adobe acrobat_reader Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, do not restrict the contents of one text field in the Launch File warning dialog, which makes it easier for re… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-1240 2017-09-19 10:30 2010-04-6 Show GitHub Exploit DB Packet Storm
347386 - adobe acrobat_reader Heap-based buffer overflow in the custom heap management system in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows remote attackers to execute arbitrar… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-1241 2017-09-19 10:30 2010-04-6 Show GitHub Exploit DB Packet Storm
347387 - apple safari Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, does not provide a warning about a (1) http or (2) https URL that contains a username and password,… CWE-200
Information Exposure
CVE-2010-1384 2017-09-19 10:30 2010-06-12 Show GitHub Exploit DB Packet Storm
347388 - apple safari Use-after-free vulnerability in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows remote attackers to execute arbitrary code or cause a denial… CWE-399
 Resource Management Errors
CVE-2010-1385 2017-09-19 10:30 2010-06-12 Show GitHub Exploit DB Packet Storm
347389 - apple safari
webkit
Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows user-assisted remote attackers to inje… CWE-79
Cross-site Scripting
CVE-2010-1389 2017-09-19 10:30 2010-06-12 Show GitHub Exploit DB Packet Storm
347390 - apple safari
webkit
Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows remote attackers to inject arbitrary w… CWE-79
Cross-site Scripting
CVE-2010-1390 2017-09-19 10:30 2010-06-12 Show GitHub Exploit DB Packet Storm