Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
691 8.8 重要
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35299 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
692 9.8 緊急
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける信頼できないデータのデシリアライゼーションに関する脆弱性 New CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-35300 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
693 10 緊急
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35301 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
694 8.3 重要
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおけるオープンリダイレクトの脆弱性 New CWE-601
オープンリダイレクト
CVE-2026-35302 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
695 8.8 重要
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35303 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
696 9.8 緊急
Network
オラクル Oracle Coherence オラクルのOracle Coherenceにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35304 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
697 9.3 緊急
Network
オラクル Oracle Coherence オラクルのOracle Coherenceにおけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-35305 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
698 9.3 緊急
Network
オラクル Oracle Coherence オラクルのOracle Coherenceにおけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-35306 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
699 10 緊急
Network
オラクル Oracle Coherence オラクルのOracle Coherenceにおけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-35307 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
700 10 緊急
Network
オラクル Oracle Coherence オラクルのOracle Coherenceにおけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-35308 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
259531 8.8 HIGH
Adjacent
iodata ts-ptcam\/poe_firmware
ts-ptcam_firmware
ts-wrlc_firmware
ts-wlc2_firmware
ts-wlce_firmware
ts-wptcam2_firmware
ts-wptcam_firmware
TS-WPTCAM firmware version 1.18 and earlier, TS-WPTCAM2 firmware version 1.00, TS-WLCE firmware version 1.18 and earlier, TS-WLC2 firmware version 1.18 and earlier, TS-WRLC firmware version 1.17 and … CWE-78
OS Command 
CVE-2017-2112 2024-11-21 12:22 2017-04-29 Show GitHub Exploit DB Packet Storm
259532 6.1 MEDIUM
Network
iodata ts-ptcam\/poe_firmware
ts-ptcam_firmware
ts-wrlc_firmware
ts-wlc2_firmware
ts-wlce_firmware
ts-wptcam2_firmware
ts-wptcam_firmware
HTTP header injection vulnerability in TS-WPTCAM firmware version 1.18 and earlier, TS-WPTCAM2 firmware version 1.00, TS-WLCE firmware version 1.18 and earlier, TS-WLC2 firmware version 1.18 and earl… CWE-93
CRLF Injection
CVE-2017-2111 2024-11-21 12:22 2017-04-29 Show GitHub Exploit DB Packet Storm
259533 5.9 MEDIUM
Network
nissan_securities access_cx The Access CX App for Android prior to 2.0.0.1 and for iOS prior to 2.0.2 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sen… CWE-295
Improper Certificate Validation 
CVE-2017-2110 2024-11-21 12:22 2017-04-29 Show GitHub Exploit DB Packet Storm
259534 2.5 LOW
Local
cybozu kunai Cybozu KUNAI for Android 3.0.4 to 3.0.5.1 allow remote attackers to obtain log information through a malicious Android application. CWE-200
Information Exposure
CVE-2017-2109 2024-11-21 12:22 2017-04-29 Show GitHub Exploit DB Packet Storm
259535 7.8 HIGH
Local
softbank primedrive_desktop_application Untrusted search path vulnerability in PrimeDrive Desktop Application 1.4.3 and earlier allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory. CWE-426
 Untrusted Search Path
CVE-2017-2108 2024-11-21 12:22 2017-04-29 Show GitHub Exploit DB Packet Storm
259536 7.8 HIGH
Local
akky 7-zip32.dll Untrusted search path vulnerability in Self-extracting archive files created by 7-ZIP32.DLL 9.22.00.01 and earlier allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified … CWE-426
 Untrusted Search Path
CVE-2017-2107 2024-11-21 12:22 2017-04-29 Show GitHub Exploit DB Packet Storm
259537 6.1 MEDIUM
Network
webmin webmin Multiple cross-site scripting vulnerabilities in Webmin versions prior to 1.830 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2017-2106 2024-11-21 12:22 2017-04-29 Show GitHub Exploit DB Packet Storm
259538 5.9 MEDIUM
Network
presentcast_inc tver The TVer App for Android 3.2.7 and earlier does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafte… CWE-200
Information Exposure
CVE-2017-2105 2024-11-21 12:22 2017-04-29 Show GitHub Exploit DB Packet Storm
259539 5.9 MEDIUM
Network
k-opticom_corporation business_lala_call The Business LaLa Call App for Android 1.4.7 and earlier does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive informatio… CWE-200
Information Exposure
CVE-2017-2104 2024-11-21 12:22 2017-04-29 Show GitHub Exploit DB Packet Storm
259540 5.9 MEDIUM
Network
k-opticom_corporation lala_call The LaLa Call App for Android 2.4.7 and earlier does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a c… CWE-200
Information Exposure
CVE-2017-2103 2024-11-21 12:22 2017-04-29 Show GitHub Exploit DB Packet Storm