Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
711 6.5 警告
Network
pgAdmin Project pgAdmin 4 pgAdmin ProjectのpgAdmin 4における外部からアクセス可能なファイルまたはディレクトリに関する脆弱性 CWE-552
外部からアクセス可能なファイルまたはディレクトリ
CVE-2026-7817 2026-05-28 14:38 2026-05-11 Show GitHub Exploit DB Packet Storm
712 7.8 重要
Local
pgAdmin Project pgAdmin 4 pgAdmin ProjectのpgAdmin 4における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-7818 2026-05-28 14:38 2026-05-11 Show GitHub Exploit DB Packet Storm
713 8.1 重要
Network
pgAdmin Project pgAdmin 4 pgAdmin ProjectのpgAdmin 4におけるUNIX Symbolic Link のフォローに関する脆弱性 CWE-61
UNIX Symbolic Link のフォロー
CVE-2026-7819 2026-05-28 14:38 2026-05-11 Show GitHub Exploit DB Packet Storm
714 6.5 警告
Network
pgAdmin Project pgAdmin 4 pgAdmin ProjectのpgAdmin 4における過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2026-7820 2026-05-28 14:38 2026-05-11 Show GitHub Exploit DB Packet Storm
715 5.3 警告
Network
Concrete CMS Concrete CMS Concrete CMSにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-7879 2026-05-28 14:38 2026-05-21 Show GitHub Exploit DB Packet Storm
716 4.3 警告
Network
Concrete CMS Concrete CMS Concrete CMSにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-7881 2026-05-28 14:38 2026-05-21 Show GitHub Exploit DB Packet Storm
717 4.3 警告
Network
Concrete CMS Concrete CMS Concrete CMSにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-7882 2026-05-28 14:38 2026-05-21 Show GitHub Exploit DB Packet Storm
718 4.3 警告
Network
Concrete CMS Concrete CMS Concrete CMSにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-7886 2026-05-28 14:38 2026-05-21 Show GitHub Exploit DB Packet Storm
719 6.4 警告
Network
Concrete CMS Concrete CMS Concrete CMSにおける指定されたタイプの入力に対する不適切な検証に関する脆弱性 CWE-1287
指定されたタイプの入力に対する不適切な検証
CVE-2026-7887 2026-05-28 14:38 2026-05-21 Show GitHub Exploit DB Packet Storm
720 6.4 警告
Network
Concrete CMS Concrete CMS Concrete CMSにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-7890 2026-05-28 14:38 2026-05-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
51 6.5 MEDIUM
Network
- - Inappropriate implementation in Paint in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium) New CWE-352
 Origin Validation Error
CVE-2026-11139 2026-06-6 14:16 2026-06-5 Show GitHub Exploit DB Packet Storm
52 6.5 MEDIUM
Network
- - Uninitialized Use in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium) New CWE-457
 Use of Uninitialized Variable
CVE-2026-11138 2026-06-6 14:16 2026-06-5 Show GitHub Exploit DB Packet Storm
53 6.5 MEDIUM
Network
- - Uninitialized Use in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium securit… New CWE-457
 Use of Uninitialized Variable
CVE-2026-11137 2026-06-6 14:16 2026-06-5 Show GitHub Exploit DB Packet Storm
54 6.5 MEDIUM
Network
- - Insufficient policy enforcement in Autofill in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass discretionary access control via a crafted HTML page. (Chromium security severi… New CWE-284
Improper Access Control
CVE-2026-11135 2026-06-6 14:16 2026-06-5 Show GitHub Exploit DB Packet Storm
55 6.5 MEDIUM
Network
- - Inappropriate implementation in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium) New CWE-352
 Origin Validation Error
CVE-2026-11134 2026-06-6 14:16 2026-06-5 Show GitHub Exploit DB Packet Storm
56 6.5 MEDIUM
Network
- - Insufficient policy enforcement in Paint in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: Medium) New CWE-346
 Origin Validation Error
CVE-2026-11133 2026-06-6 14:16 2026-06-5 Show GitHub Exploit DB Packet Storm
57 6.5 MEDIUM
Network
- - Insufficient policy enforcement in Paint in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: Medium) New CWE-346
 Origin Validation Error
CVE-2026-11132 2026-06-6 14:16 2026-06-5 Show GitHub Exploit DB Packet Storm
58 9.6 CRITICAL
Network
- - Use after free in Autofill in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted … New CWE-416
 Use After Free
CVE-2026-11131 2026-06-6 14:16 2026-06-5 Show GitHub Exploit DB Packet Storm
59 6.5 MEDIUM
Network
- - Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium) New CWE-352
 Origin Validation Error
CVE-2026-11129 2026-06-6 14:16 2026-06-5 Show GitHub Exploit DB Packet Storm
60 9.6 CRITICAL
Network
- - Inappropriate implementation in GPU in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a… New CWE-20
 Improper Input Validation 
CVE-2026-11119 2026-06-6 14:16 2026-06-5 Show GitHub Exploit DB Packet Storm