Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
6331 6.5 警告
Network
Google Google Chrome GoogleのGoogle Chromeにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-7981 2026-05-8 12:15 2026-05-6 Show GitHub Exploit DB Packet Storm
6332 6.5 警告
Network
Google Google Chrome GoogleのGoogle Chromeにおける初期化されていない変数の使用に関する脆弱性 CWE-457
初期化されていない変数の使用
CVE-2026-7982 2026-05-8 12:15 2026-05-6 Show GitHub Exploit DB Packet Storm
6333 4.3 警告
Network
Google Google Chrome GoogleのGoogle Chromeにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-7983 2026-05-8 12:15 2026-05-6 Show GitHub Exploit DB Packet Storm
6334 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-7984 2026-05-8 12:15 2026-05-6 Show GitHub Exploit DB Packet Storm
6335 8.3 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-7985 2026-05-8 12:15 2026-05-6 Show GitHub Exploit DB Packet Storm
6336 4.3 警告
Network
Google Google Chrome GoogleのGoogle Chromeにおける同一生成元ポリシー違反に関する脆弱性 CWE-346
同一生成元ポリシー違反
CVE-2026-7986 2026-05-8 12:15 2026-05-6 Show GitHub Exploit DB Packet Storm
6337 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-7987 2026-05-8 12:15 2026-05-6 Show GitHub Exploit DB Packet Storm
6338 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける型の取り違えに関する脆弱性 CWE-843
型の取り違え
CVE-2026-7988 2026-05-8 12:15 2026-05-6 Show GitHub Exploit DB Packet Storm
6339 4.2 警告
Network
Google Google Chrome GoogleのGoogle Chromeにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-7989 2026-05-8 12:15 2026-05-6 Show GitHub Exploit DB Packet Storm
6340 7.8 重要
Local
Google Google Chrome GoogleのGoogle Chromeにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-7990 2026-05-8 12:15 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1811 4.8 MEDIUM
Network
- - Craft CMS from version 5.0.0-RC1 contains a stored cross-site scripting vulnerability in the User Permissions page where user group names are rendered without proper HTML escaping. Attackers with adm… CWE-79
Cross-site Scripting
CVE-2026-56381 2026-06-23 13:17 2026-06-21 Show GitHub Exploit DB Packet Storm
1812 8.1 HIGH
Network
- - AVideo through 29.0 contains an authorization bypass vulnerability in the Meet plugin's uploadRecordedVideo.json.php endpoint that derives the target users_id from the uploaded filename without verif… CWE-287
Improper Authentication
CVE-2026-56345 2026-06-23 13:17 2026-06-21 Show GitHub Exploit DB Packet Storm
1813 3.5 LOW
Network
- - Capgo before 12.128.2 contains an open redirect vulnerability in stripe_portal and stripe_checkout endpoints that accept unvalidated callbackUrl, successUrl, and cancelUrl parameters. Authenticated a… CWE-601
Open Redirect
CVE-2026-56330 2026-06-23 13:17 2026-06-21 Show GitHub Exploit DB Packet Storm
1814 5.3 MEDIUM
Network
- - Capgo before 12.128.2 contains an information disclosure vulnerability in the unauthenticated /replication endpoint that exposes internal PostgreSQL replication telemetry including slot names and WAL… CWE-200
Information Exposure
CVE-2026-56282 2026-06-23 13:17 2026-06-21 Show GitHub Exploit DB Packet Storm
1815 7.5 HIGH
Network
- - Capgo before 12.128.2 contains an improper access control vulnerability in the public.get_org_members RPC function that allows unauthenticated attackers to enumerate organization members. Attackers c… CWE-284
Improper Access Control
CVE-2026-56253 2026-06-23 13:17 2026-06-21 Show GitHub Exploit DB Packet Storm
1816 5.3 MEDIUM
Network
- - Capgo before 12.128.2 fails to strip EXIF metadata including GPS geolocation data from uploaded images, allowing information disclosure. Attackers can download uploaded images and extract precise lat… CWE-200
Information Exposure
CVE-2026-56218 2026-06-23 13:17 2026-06-21 Show GitHub Exploit DB Packet Storm
1817 7.8 HIGH
Local
- - A security flaw has been discovered in EaseUS Partition Master up to 14.5. The impacted element is an unknown function in the library EUEDKEPM.sys of the component Kernel Driver. The manipulation res… CWE-266
CWE-284
 Incorrect Privilege Assignment
Improper Access Control
CVE-2026-12782 2026-06-23 13:17 2026-06-21 Show GitHub Exploit DB Packet Storm
1818 7.3 HIGH
Network
- - A vulnerability was detected in Montodel House-Rental-Management up to 90010017b81265eb1ef3810268909f7719a33863. Affected by this issue is some unknown functionality of the file /login.php. The manip… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-12775 2026-06-23 13:17 2026-06-21 Show GitHub Exploit DB Packet Storm
1819 7.5 HIGH
Network
- - WordPress Time Capsule Plugin 1.21.16 contains an authentication bypass vulnerability that allows unauthenticated attackers to gain administrative access by sending a crafted POST request with the IW… CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2020-37255 2026-06-23 13:17 2026-06-20 Show GitHub Exploit DB Packet Storm
1820 3.8 LOW
Network
- - Capgo before 12.128.2 contains an authentication logic flaw: a user with permission to manage team or organization security settings can enable mandatory two-factor authentication for all team member… CWE-269
 Improper Privilege Management
CVE-2026-56212 2026-06-23 12:16 2026-06-20 Show GitHub Exploit DB Packet Storm