Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
631 7.1 重要
Local
マイクロソフト Microsoft Word
Microsoft Excel
Microsoft PowerPoint
Office for Android のなりすましの脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-45649 2026-06-22 11:55 2026-06-9 Show GitHub Exploit DB Packet Storm
632 6.8 警告
Network
Discourse Discourse Discourseにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-45775 2026-06-22 11:55 2026-06-12 Show GitHub Exploit DB Packet Storm
633 9.9 緊急
Network
オラクル Oracle WebCenter Portal オラクルのOracle WebCenter Portalにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46765 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
634 9.8 緊急
Network
オラクル Oracle WebCenter Content オラクルのOracle WebCenter Contentにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46766 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
635 9.9 緊急
Network
オラクル Oracle WebCenter Portal オラクルのOracle WebCenter Portalにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46767 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
636 6 警告
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46768 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
637 7.2 重要
Network
オラクル Oracle Application Development Framework (Oracle ADF) オラクルのOracle Application Development Framework (Oracle ADF)におけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46769 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
638 6.1 警告
Network
オラクル Oracle Application Development Framework (Oracle ADF) オラクルのOracle Application Development Framework (Oracle ADF)におけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46770 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
639 4.1 警告
Local
オラクル Oracle Application Development Framework (Oracle ADF) オラクルのOracle Application Development Framework (Oracle ADF)におけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46771 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
640 4.7 警告
Local
オラクル Oracle Application Development Framework (Oracle ADF) オラクルのOracle Application Development Framework (Oracle ADF)におけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46772 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
343571 - punbb punbb Cross-site scripting (XSS) vulnerability in PunBB 1.2.6 and earlier allows remote attackers to inject arbitrary web script or HTML via Javascript contained in nested, malformed BBcode url tags. NVD-CWE-Other
CVE-2005-4665 2018-10-20 00:41 2005-12-31 Show GitHub Exploit DB Packet Storm
343572 - info-zip unzip Buffer overflow in UnZip 5.50 and earlier allows user-assisted attackers to execute arbitrary code via a long filename command line argument. NOTE: since the overflow occurs in a non-setuid program,… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2005-4667 2018-10-20 00:41 2005-12-31 Show GitHub Exploit DB Packet Storm
343573 - adobe captivate
contribute
director
dreamweaver
elicensing
fireworks
flash_player
freehand
studio
Adobe Macromedia MX 2004 products, Captivate, Contribute 2, Contribute 3, and eLicensing client install the Macromedia Licensing Service with the Users group permitted to configure the service, inclu… NVD-CWE-Other
CVE-2005-4708 2018-10-20 00:41 2005-12-31 Show GitHub Exploit DB Packet Storm
343574 - martin_bauer gbook Cross-site scripting (XSS) vulnerability in gbook.cgi in gBook before 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header field. NVD-CWE-Other
CVE-2005-4727 2018-10-20 00:41 2005-12-31 Show GitHub Exploit DB Packet Storm
343575 - sap sap_r_3 SAP 6.4 before 6.40 patch 4, 6.2 before 6.20 patch 1364, 4.6 before 4.6D patch 1767, 45 before 45B patch 913, 40 before 40B patch 1008, and 31 before 31I patch 735 do not properly restrict process ex… NVD-CWE-Other
CVE-2005-4815 2018-10-20 00:41 2005-12-31 Show GitHub Exploit DB Packet Storm
343576 - cisco ios Unspecified vulnerability in the VLAN Trunking Protocol (VTP) feature in Cisco IOS 12.1(22)EA3 on Catalyst 2950T switches allows remote attackers to cause a denial of service (device reboot) via a cr… NVD-CWE-Other
CVE-2005-4826 2018-10-20 00:41 2005-12-31 Show GitHub Exploit DB Packet Storm
343577 - viewcvs viewcvs CRLF injection vulnerability in viewcvs in ViewCVS 0.9.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the content-type pa… NVD-CWE-Other
CVE-2005-4830 2018-10-20 00:41 2005-12-31 Show GitHub Exploit DB Packet Storm
343578 - viewcvs viewcvs viewcvs in ViewCVS 0.9.2 allows remote attackers to set the Content-Type header to arbitrary values via the content-type parameter, which can be leveraged for cross-site scripting (XSS) and other att… NVD-CWE-Other
CVE-2005-4831 2018-10-20 00:41 2005-12-31 Show GitHub Exploit DB Packet Storm
343579 - gallery_project gallery The installer for Gallery 2.0 before 2.0.2 stores the install log under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information. NVD-CWE-Other
CVE-2005-4021 2018-10-20 00:40 2005-12-5 Show GitHub Exploit DB Packet Storm
343580 - - - Cross-site scripting (XSS) vulnerability in the "Add Image From Web" feature in Gallery 2.0 before 2.0.2 allows remote attackers to inject arbitrary web script or HTML via Javascript in an IMG tag. NVD-CWE-Other
CVE-2005-4022 2018-10-20 00:40 2005-12-5 Show GitHub Exploit DB Packet Storm