Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
6091 6.5 警告
Adjacent
メディアテック MT6761 ファームウェア
MT6835 Firmware
MT6858 Firmware
MT8795T Firmware
MT8797 Firmware
MT6855 Firmware
MT6880 Firmware
MT8755 Firmware
MT8668&…
メディアテックのMT2735 ファームウェア等の複数製品における古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2026-20449 2026-05-8 12:10 2026-05-4 Show GitHub Exploit DB Packet Storm
6092 6.5 警告
Adjacent
メディアテック MT6835 Firmware
MT6858 Firmware
MT8795T Firmware
MT8797 Firmware
MT6855 Firmware
MT6880 Firmware
MT8755 Firmware
MT8668 Firmware
MT8678…
メディアテックのMT2735 ファームウェア等の複数製品における到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-20450 2026-05-8 12:10 2026-05-4 Show GitHub Exploit DB Packet Storm
6093 6.7 警告
Local
メディアテック MT8186 Firmware
MT8395 Firmware
MT8678 Firmware
MT8775 Firmware
MT8781 Firmware
MT6985 Firmware
MT8188 Firmware
MT8196 Firmware
MT8367&…
メディアテックのMT2718 Firmware等の複数製品における型の取り違えに関する脆弱性 CWE-843
型の取り違え
CVE-2026-20451 2026-05-8 12:10 2026-05-4 Show GitHub Exploit DB Packet Storm
6094 7.8 重要
Local
クアルコム QCA6574 ファームウェア
SM6650P ファームウェア
QXM1086 Firmware
SA8150P ファームウェア
QXM1096 Firmware
snapdragon 8 gen 2 mobile ファームウェア
qca6688aq …
クアルコムのAR8031 ファームウェア等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-24082 2026-05-8 12:10 2026-05-4 Show GitHub Exploit DB Packet Storm
6095 8.8 重要
Network
RedisTimeSeries RedisTimeSeries RedisTimeSeriesにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-25588 2026-05-8 12:10 2026-05-5 Show GitHub Exploit DB Packet Storm
6096 8.8 重要
Network
RedisBloom RedisBloom RedisBloomにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-25589 2026-05-8 12:10 2026-05-5 Show GitHub Exploit DB Packet Storm
6097 7.8 重要
Local
マイクロソフト Microsoft HPC Pack Microsoft のハイ パフォーマンス コンピューティング (HPC) パックの特権昇格の脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-32184 2026-05-8 12:10 2026-04-14 Show GitHub Exploit DB Packet Storm
6098 7.5 重要
Network
マイクロソフト Microsoft Visual Studio 2026
visual studio 2022
.NET
.NET および Visual Studio のサービス拒否の脆弱性 CWE-121
CWE-20
CVE-2026-32203 2026-05-8 12:10 2026-04-14 Show GitHub Exploit DB Packet Storm
6099 4.7 警告
Network
Macaron project Macaron オラクルのMacaronにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-35253 2026-05-8 12:10 2026-05-6 Show GitHub Exploit DB Packet Storm
6100 6.1 警告
Local
オラクル Oracle Cloud Infrastructure CLI オラクルのOracle Cloud Infrastructure CLIにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-35254 2026-05-8 12:10 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1641 6.5 MEDIUM
Network
google chrome Insufficient validation of untrusted input in Extensions in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a cra… CWE-20
NVD-CWE-noinfo
 Improper Input Validation 
CVE-2026-11658 2026-06-11 03:30 2026-06-9 Show GitHub Exploit DB Packet Storm
1642 6.5 MEDIUM
Network
google chrome Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page… CWE-20
 Improper Input Validation 
CVE-2026-11653 2026-06-11 03:29 2026-06-9 Show GitHub Exploit DB Packet Storm
1643 5.5 MEDIUM
Local
cilium ebpf A vulnerability has been found in cilium ebpf up to 0.21.0. This affects the function loadRawSpec of the file btf/btf.go of the component LoadCollectionSpec/LoadCollectionSpecFromReader. Such manipul… CWE-189
CWE-190
Numeric Errors
 Integer Overflow or Wraparound
CVE-2026-10722 2026-06-11 03:28 2026-06-3 Show GitHub Exploit DB Packet Storm
1644 7.8 HIGH
Local
synology active_backup_for_business_recovery_media_creator An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration in Synology Active Backup for Business Recovery Media Creator before 2.5.0-2081 allows local users t… CWE-829
 Inclusion of Functionality from Untrusted Control Sphere
CVE-2022-49036 2026-06-11 03:20 2026-06-3 Show GitHub Exploit DB Packet Storm
1645 5.3 MEDIUM
Local
lmsys sglang A vulnerability was determined in sgl-project SGLang up to 0.5.11. Affected by this vulnerability is the function data_hash of the component Cache Handler. This manipulation causes denial of service.… CWE-404
 Improper Resource Shutdown or Release
CVE-2026-10775 2026-06-11 03:19 2026-06-4 Show GitHub Exploit DB Packet Storm
1646 - - - An OS command injection vulnerability exists in the VPN module of TP-Link Archer AX12 v1, AX17 v1. AX18 v1, and AX1300 v1.6 routers. This vulnerability allows an adjacent, authenticated attacker to e… CWE-78
OS Command 
CVE-2026-9151 2026-06-11 03:17 2026-06-11 Show GitHub Exploit DB Packet Storm
1647 2.7 LOW
Network
- - A flaw was found in org.keycloak.services. An administrator with delegated access to read group memberships and users can bypass user profile permissions by accessing the group members endpoint. This… CWE-1220
 Insufficient Granularity of Access Control
CVE-2026-9088 2026-06-11 03:17 2026-06-5 Show GitHub Exploit DB Packet Storm
1648 8.5 HIGH
Network
- - Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and applications on Kubernetes. Prior to version 1.25.0, Fission added PodSpec safety val… CWE-269
CWE-732
 Improper Privilege Management
 Incorrect Permission Assignment for Critical Resource
CVE-2026-50570 2026-06-11 03:17 2026-06-11 Show GitHub Exploit DB Packet Storm
1649 4.3 MEDIUM
Network
- - Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and applications on Kubernetes. Prior to version 1.25.0, HTTPTriggerSpec.Validate() valid… CWE-20
 Improper Input Validation 
CVE-2026-50569 2026-06-11 03:17 2026-06-11 Show GitHub Exploit DB Packet Storm
1650 3.6 LOW
Local
- - Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and applications on Kubernetes. Prior to version 1.25.0, SanitizeFilePath in pkg/utils/ut… CWE-41
 Improper Resolution of Path Equivalence
CVE-2026-50568 2026-06-11 03:17 2026-06-11 Show GitHub Exploit DB Packet Storm