Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
621 4.3 警告
Network
日立ヴァンタラ Pentaho Data Integration and Analytics 日立ヴァンタラのPentaho Data Integration and Analyticsにおける認証情報の不十分な保護に関する脆弱性 New CWE-522
認証情報の不十分な保護
CVE-2026-2255 2026-06-22 11:41 2026-05-27 Show GitHub Exploit DB Packet Storm
622 5.5 警告
Local
Google Android GoogleのAndroidにおける不特定の脆弱性 New CWE-noinfo
情報不足
CVE-2026-28573 2026-06-22 11:41 2026-06-18 Show GitHub Exploit DB Packet Storm
623 5.5 警告
Local
Google Android GoogleのAndroidにおけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-28575 2026-06-22 11:41 2026-06-17 Show GitHub Exploit DB Packet Storm
624 5.5 警告
Local
Google Android GoogleのAndroidにおけるSQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2026-28576 2026-06-22 11:41 2026-06-17 Show GitHub Exploit DB Packet Storm
625 5.5 警告
Local
Google Android GoogleのAndroidにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-28587 2026-06-22 11:41 2026-06-17 Show GitHub Exploit DB Packet Storm
626 7.8 重要
Local
Google Android GoogleのAndroidにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-28615 2026-06-22 11:41 2026-06-17 Show GitHub Exploit DB Packet Storm
627 6.5 警告
Adjacent
ネットギア RBRE950 FIRMWARE
RBS860 FIRMWARE
RBR860 FIRMWARE
RBE970 FIRMWARE
RBE971 FIRMWARE
RBRE960 ファームウェア
RBSE960 ファームウェア
RBSE950 FIRMWARE
ネットギアのRBE970 FIRMWARE等の複数製品における境界外書き込みに関する脆弱性 New CWE-787
境界外書き込み
CVE-2026-3088 2026-06-22 11:41 2026-06-9 Show GitHub Exploit DB Packet Storm
628 4.3 警告
Network
マイクロソフト .NET
Microsoft Visual Studio 2026
visual studio 2022
.NET Core の改ざんの脆弱性 New CWE-22
CWE-36
CVE-2026-32175 2026-06-22 11:41 2026-05-12 Show GitHub Exploit DB Packet Storm
629 7.3 重要
Local
マイクロソフト Microsoft .NET Framework
.NET
Microsoft Visual Studio 2026
visual studio 2022
.NET の特権の昇格の脆弱性 New CWE-122
CWE-20
CWE-787
CVE-2026-32177 2026-06-22 11:41 2026-05-12 Show GitHub Exploit DB Packet Storm
630 8.8 重要
Local
マイクロソフト Azure Kubernetes Service Azure Kubernetes Service (AKS) のリモートでコードが実行される脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-32193 2026-06-22 11:40 2026-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
257111 8.8 HIGH
Network
cambiumnetworks cnpilot_r190v_firmware
cnpilot_e410_firmware
cnpilot_r190n_firmware
cnpilot_e400_firmware
cnpilot_e600_firmware
In versions 4.3.2-R4 and prior of Cambium Networks cnPilot firmware, although the option to access the configuration file is not available in the normal web administrative console for the 'user' acco… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-5260 2024-11-21 12:27 2017-12-21 Show GitHub Exploit DB Packet Storm
257112 5.4 MEDIUM
Network
cambiumnetworks epmp_1000_firmware
epmp_2000_firmware
In version 3.5 and prior of Cambium Networks ePMP firmware, all authenticated users have the ability to update the Device Name and System Description fields in the web administration console, and tho… CWE-79
Cross-site Scripting
CVE-2017-5256 2024-11-21 12:27 2017-12-21 Show GitHub Exploit DB Packet Storm
257113 8.8 HIGH
Network
cambiumnetworks epmp_1000_firmware
epmp_2000_firmware
In version 3.5 and prior of Cambium Networks ePMP firmware, a lack of input sanitation for certain parameters on the web management console allows any authenticated user (including the otherwise low-… CWE-78
OS Command 
CVE-2017-5255 2024-11-21 12:27 2017-12-21 Show GitHub Exploit DB Packet Storm
257114 8.8 HIGH
Network
cambiumnetworks epmp_1000_firmware
epmp_2000_firmware
In version 3.5 and prior of Cambium Networks ePMP firmware, the non-administrative users 'installer' and 'home' have the capability of changing passwords for other accounts, including admin, after di… CWE-269
 Improper Privilege Management
CVE-2017-5254 2024-11-21 12:27 2017-12-21 Show GitHub Exploit DB Packet Storm
257115 8.8 HIGH
Network
rapid7 nexpose Versions of Nexpose prior to 6.4.66 fail to adequately validate the source of HTTP requests intended for the Automated Actions administrative web application, and are susceptible to a cross-site requ… CWE-352
 Origin Validation Error
CVE-2017-5264 2024-11-21 12:27 2017-12-15 Show GitHub Exploit DB Packet Storm
257116 8.8 HIGH
Network
tibco tibbr The tibbr user profiles components of tibbr Community, and tibbr Enterprise expose a weakness in an improperly sandboxed third-party component. Affected releases are TIBCO Software Inc. tibbr Communi… NVD-CWE-noinfo
CVE-2017-5534 2024-11-21 12:27 2017-12-13 Show GitHub Exploit DB Packet Storm
257117 8.1 HIGH
Network
tibco tibbr The tibbr web server components of tibbr Community, and tibbr Enterprise contain SAML protocol handling errors which may allow authorized users to impersonate other users, and therefore escalate thei… NVD-CWE-noinfo
CVE-2017-5530 2024-11-21 12:27 2017-12-13 Show GitHub Exploit DB Packet Storm
257118 9.8 CRITICAL
Network
tibco jasperreports_server
jaspersoft
jaspersoft_reporting_and_analytics
A vulnerability in the server content cache of TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server for ActiveMatrix BPM, TIBCO Jaspersoft for AWS with… NVD-CWE-noinfo
CVE-2017-5533 2024-11-21 12:27 2017-11-16 Show GitHub Exploit DB Packet Storm
257119 5.4 MEDIUM
Network
tibco jasperreports_server
jasperreports_library
jaspersoft
jaspersoft_reporting_and_analytics
jaspersoft_studio
A vulnerability in the report renderer component of TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server for ActiveMatrix BPM, TIBCO JasperReports Libr… CWE-79
Cross-site Scripting
CVE-2017-5532 2024-11-21 12:27 2017-11-16 Show GitHub Exploit DB Packet Storm
257120 5.7 MEDIUM
Adjacent
netapp clustered_data_ontap NetApp Clustered Data ONTAP before 8.3.2P8 and 9.0 before P2 allow remote authenticated users to obtain sensitive cluster and tenant information via unspecified vectors, a different vulnerability tha… CWE-200
Information Exposure
CVE-2017-5201 2024-11-21 12:27 2017-11-10 Show GitHub Exploit DB Packet Storm