Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
631 5.3 警告
Network
Google Google Chrome GoogleのGoogle Chromeにおける不変と仮定される Web パラメータの外部制御に関する脆弱性 CWE-472
不変と仮定される Web パラメータの外部制御
CVE-2026-11669 2026-06-11 16:13 2026-06-9 Show GitHub Exploit DB Packet Storm
632 8.3 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-11672 2026-06-11 16:13 2026-06-9 Show GitHub Exploit DB Packet Storm
633 8.3 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける入力確認に関する脆弱性 CWE-20
CWE-noinfo
CVE-2026-11676 2026-06-11 16:13 2026-06-9 Show GitHub Exploit DB Packet Storm
634 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-11681 2026-06-11 16:13 2026-06-9 Show GitHub Exploit DB Packet Storm
635 8.3 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける入力確認に関する脆弱性 CWE-20
CWE-noinfo
CVE-2026-11682 2026-06-11 16:13 2026-06-9 Show GitHub Exploit DB Packet Storm
636 8.1 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける入力確認に関する脆弱性 CWE-20
CWE-noinfo
CVE-2026-11689 2026-06-11 16:13 2026-06-9 Show GitHub Exploit DB Packet Storm
637 7.8 重要
Local
シスコシステムズ Cisco SD-WAN vSmart Controller シスコシステムズのCisco Catalyst SD-WAN Manager等の複数製品におけるエンコードおよびエスケープに関する脆弱性 CWE-116
不適切なエンコード、または出力のエスケープ
CVE-2026-20245 2026-06-11 16:13 2026-06-4 Show GitHub Exploit DB Packet Storm
638 6.1 警告
Network
Apache Software Foundation answer Apache Software Foundationのanswerにおける代替 XSS 構文の不適切な無効化に関する脆弱性 CWE-87
代替 XSS 構文の不適切な無効化
CVE-2026-25688 2026-06-11 16:12 2026-06-9 Show GitHub Exploit DB Packet Storm
639 6.1 警告
Network
Apache Software Foundation answer Apache Software Foundationのanswerにおける認可されていない行為者への個人情報の漏えいに関する脆弱性 CWE-359
認可されていないアクターへの個人情報の漏えい
CVE-2026-25699 2026-06-11 16:12 2026-06-9 Show GitHub Exploit DB Packet Storm
640 6.5 警告
Network
Apache Software Foundation answer Apache Software Foundationのanswerにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2026-33582 2026-06-11 16:12 2026-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2971 8.2 HIGH
Network
- - Care2x 2.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL commands by manipulating the ck_config cookie parameter. Attackers can inject … CWE-89
SQL Injection
CVE-2019-25728 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2972 9.8 CRITICAL
Network
- - PDF Signer 3.0 contains a server-side template injection vulnerability that allows unauthenticated attackers to execute arbitrary code by injecting PHP commands through the CSRF-TOKEN cookie paramete… CWE-352
 Origin Validation Error
CVE-2019-25729 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2973 8.2 HIGH
Network
- - Listing Hub CMS 1.0 contains a SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the id parameter. Attackers can s… CWE-89
SQL Injection
CVE-2019-25730 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2974 8.2 HIGH
Network
- - PHP EI-Tube Script 3 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the search parameter. Attackers… CWE-89
SQL Injection
CVE-2019-25732 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2975 8.4 HIGH
Local
- - NetShareWatcher 1.5.8.0 contains a structured exception handler buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying malicious input. Attackers can craft a… CWE-120
Classic Buffer Overflow
CVE-2019-25733 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2976 4.0 MEDIUM
Local
- - Contact Form by WD 1.13.1 contains a cross-site request forgery vulnerability combined with local file inclusion that allows unauthenticated attackers to include arbitrary files by exploiting unsanit… CWE-22
Path Traversal
CVE-2019-25734 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2977 8.4 HIGH
Local
- - AllPlayer 7.4 contains a local buffer overflow vulnerability in URL handling that allows attackers to overwrite structured exception handling pointers by supplying an excessively long URL string. Att… CWE-120
Classic Buffer Overflow
CVE-2019-25735 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2978 8.4 HIGH
Local
- - LabF nfsAxe 3.7 Ping Client contains a buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a malicious payload in the Host IP field. Attackers can craft a… CWE-120
Classic Buffer Overflow
CVE-2019-25736 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2979 9.8 CRITICAL
Network
- - WordPress Hybrid Composer 1.4.6 contains an unauthenticated settings change vulnerability that allows unauthenticated attackers to modify WordPress options by exploiting the hc_ajax_save_option actio… CWE-306
Missing Authentication for Critical Function
CVE-2019-25738 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2980 6.5 MEDIUM
Network
- - Joomla com_jsjobs 1.2.6 contains an arbitrary file deletion vulnerability that allows authenticated attackers to delete files by manipulating custom userfield parameters. Attackers can send POST requ… CWE-22
Path Traversal
CVE-2019-25740 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm