|
You can search the list of vulnerabilities managed by JVN (Japan Vulnerability Note). |
Update Date:June 24, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 51 | 9.8 |
緊急
Network |
Beijing Seeyon Internet Software | OA Web Application System | Beijing Seeyon Internet SoftwareのOA Web Application Systemにおける複数の脆弱性 |
CWE-74 CWE-89 CWE-89 Injection SQL Injection SQL Injection |
CVE-2025-15427 | 2026-01-22 11:30 | 2026-01-2 | Show | GitHub Exploit DB Packet Storm |
| 52 | 9.8 |
緊急
Network |
Beijing Seeyon Internet Software | OA Web Application System | Beijing Seeyon Internet SoftwareのOA Web Application Systemにおける複数の脆弱性 |
CWE-74 CWE-89 CWE-89 Injection SQL Injection SQL Injection |
CVE-2025-15447 | 2026-01-22 11:30 | 2026-01-5 | Show | GitHub Exploit DB Packet Storm |
| 53 | 5.4 |
警告
Network |
Beijing Seeyon Internet Software | OA Web Application System | Beijing Seeyon Internet SoftwareのOA Web Application Systemにおける複数の脆弱性 |
CWE-79 CWE-79 CWE-94 Cross-site Scripting Cross-site Scripting Code Injection |
CVE-2025-3999 | 2026-01-19 15:10 | 2025-04-28 | Show | GitHub Exploit DB Packet Storm |
| 54 | 5.4 |
警告
Network |
Beijing Seeyon Internet Software | OA Web Application System | Beijing Seeyon Internet SoftwareのOA Web Application Systemにおける複数の脆弱性 |
CWE-79 CWE-79 CWE-94 Cross-site Scripting Cross-site Scripting Code Injection |
CVE-2025-4000 | 2026-01-19 15:10 | 2025-04-28 | Show | GitHub Exploit DB Packet Storm |
| 55 | 4.3 |
警告
Network |
Beijing Seeyon Internet Software | OA Web Application System | Beijing Seeyon Internet SoftwareのOA Web Application Systemにおけるパストラバーサルの脆弱性 |
CWE-22
Path Traversal |
CVE-2025-4529 | 2026-01-19 15:10 | 2025-05-11 | Show | GitHub Exploit DB Packet Storm |
| 56 | 8.8 |
重要
Network |
Beijing Seeyon Internet Software | OA Web Application System | Beijing Seeyon Internet SoftwareのOA Web Application Systemにおける複数の脆弱性 |
CWE-74 CWE-94 CWE-94 Injection Code Injection Code Injection |
CVE-2025-4531 | 2026-01-19 15:10 | 2025-05-11 | Show | GitHub Exploit DB Packet Storm |
| 57 | - |
-
|
YoSmart |
YoSmart Cloud Server YoLink Hub - YS1603 YoLink Application |
複数のYoSmart製品における複数の脆弱性 |
CWE-319 CWE-340 CWE-863 Cleartext Transmission of Sensitive Information Generation of Predictable Numbers or Identifiers Incorrect Authorization |
CVE-2025-59448 CVE-2025-59449 CVE-2025-59451 CVE-2025-59452 |
2026-01-15 12:16 | 2026-01-14 | Show | GitHub Exploit DB Packet Storm |
| 58 | 8.8 |
重要
Network |
Ivanti | Virtual Application Delivery Controller | IvantiのVirtual Application Delivery Controllerにおける認証の欠如に関する脆弱性 |
CWE-862
Missing Authorization |
CVE-2025-8310 | 2026-01-14 16:35 | 2025-08-12 | Show | GitHub Exploit DB Packet Storm |
| 59 | 5.9 |
警告
Network |
OpenSSL Project 日立 日本電気 |
JP1/Navigation Platform vRAN Cosminexus HTTP Server JP1/Navigation Platform for Developers uCosminexus Application Server JP1/Base JP1/Automa… |
OpenSSL におけるサイドチャネルに関する脆弱性 |
CWE-Other
Other |
CVE-2022-4304 | 2025-12-26 11:16 | 2022-07-15 | Show | GitHub Exploit DB Packet Storm |
| 60 | 7.5 |
重要
Network |
OpenSSL Project 日立 日本電気 |
JP1/Navigation Platform vRAN Cosminexus HTTP Server JP1/Navigation Platform for Developers uCosminexus Application Server JP1/Base JP1/Automa… |
OpenSSL における二重解放に関する脆弱性 |
CWE-415
Double Free |
CVE-2022-4450 | 2025-12-26 11:15 | 2022-12-13 | Show | GitHub Exploit DB Packet Storm |
| 61 | 7.5 |
重要
Network |
OpenSSL Project 日立 日本電気 |
vRAN WebOTX SIP Application Server iStorage T280 iStorage V10e SpoolServer/ReportFiling Hitachi Ops Center Analyzer 得選街・GCB NEC Enhan… |
OpenSSL における解放済みメモリの使用に関する脆弱性 |
CWE-416
Use After Free |
CVE-2023-0215 | 2025-12-26 11:13 | 2023-02-7 | Show | GitHub Exploit DB Packet Storm |
| 62 | 7.4 |
重要
Network |
OpenSSL Project 日立 日本電気 |
vRAN Cosminexus HTTP Server uCosminexus Application Server uCosminexus Application Server-R uCosminexus Service Platform WebOTX SIP Ap… |
OpenSSL における型の取り違えに関する脆弱性 |
CWE-843
Type Confusion |
CVE-2023-0286 | 2025-12-26 11:11 | 2023-02-7 | Show | GitHub Exploit DB Packet Storm |
| 63 | 7.7 |
重要
Local |
Acusticaudio s.r.l. | Aquarius Desktop application (ADA) | Acusticaudio s.r.l. の macOS 用 Aquarius Desktop application (ADA) におけるリンク解釈に関する脆弱性 |
CWE-59
Link Following |
CVE-2025-65843 | 2025-12-23 17:31 | 2025-12-3 | Show | GitHub Exploit DB Packet Storm |
| 64 | 6.2 |
警告
Local |
Acusticaudio s.r.l. | Aquarius Desktop application (ADA) | Acusticaudio s.r.l. の macOS 用 Aquarius Desktop application (ADA) におけるアクセス制御に関する脆弱性 |
CWE-284
Improper Access Control |
CVE-2025-65841 | 2025-12-22 16:52 | 2025-12-3 | Show | GitHub Exploit DB Packet Storm |
| 65 | 7.5 |
重要
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server におけるアクセス制御に関する脆弱性 |
CWE-284
Improper Access Control |
CVE-2025-54338 | 2025-12-15 18:00 | 2025-11-24 | Show | GitHub Exploit DB Packet Storm |
| 66 | 3.1 |
低
Network |
日立 NetApp オラクル |
JRE Hitachi Tuning Manager Hitachi Automation Director Hitachi Ops Center Analyzer NetApp SolidFire Hitachi Device Manager Hitachi&… |
Oracle Java SE および Oracle GraalVM Enterprise Edition における Hotspot に関する脆弱性 |
CWE-noinfo
noinfo |
CVE-2021-35588 | 2025-12-15 14:32 | 2021-10-19 | Show | GitHub Exploit DB Packet Storm |
| 67 | 3.7 |
低
Network |
日立 NetApp オラクル |
JRE Hitachi Tuning Manager Hitachi Automation Director Hitachi Ops Center Analyzer NetApp SolidFire Hitachi Device Manager Hitachi&… |
Oracle Java SE および Oracle GraalVM Enterprise Edition における JSSE に関する脆弱性 |
CWE-noinfo
noinfo |
CVE-2021-35603 | 2025-12-15 14:32 | 2021-10-19 | Show | GitHub Exploit DB Packet Storm |
| 68 | 5.9 |
警告
Network |
日立 Fedora Project NetApp オラクル |
JRE Hitachi Tuning Manager Hitachi Automation Director Hitachi Ops Center Analyzer Hitachi Device Manager Fedora Hitachi Ops C… |
Oracle Java SE および Oracle GraalVM Enterprise Edition における JSSE に関する脆弱性 |
CWE-noinfo
noinfo |
CVE-2021-35550 | 2025-12-15 14:23 | 2021-10-19 | Show | GitHub Exploit DB Packet Storm |
| 69 | 5.3 |
警告
Network |
日立 NetApp オラクル |
JRE Hitachi Tuning Manager Hitachi Automation Director Hitachi Ops Center Analyzer Hitachi Device Manager Hitachi Ops Center … |
Oracle Java SE および Oracle GraalVM Enterprise Edition における Swing に関する脆弱性 |
CWE-noinfo
noinfo |
CVE-2021-35556 | 2025-12-15 14:23 | 2021-10-19 | Show | GitHub Exploit DB Packet Storm |
| 70 | 5.3 |
警告
Network |
オラクル 日立 NetApp |
Hitachi Replication Manager uCosminexus Service Platform(64) JRE uCosminexus Application Server(64) Hitachi Tuning Manager Hitachi Device&n… |
Oracle Java SE および Oracle GraalVM Enterprise Edition における ImageIO に関する脆弱性 |
CWE-noinfo
noinfo |
CVE-2021-35586 | 2025-12-15 12:29 | 2021-10-19 | Show | GitHub Exploit DB Packet Storm |
| 71 | 5.3 |
警告
Network |
オラクル 日立 NetApp |
Hitachi Replication Manager uCosminexus Service Platform(64) JRE uCosminexus Application Server(64) Hitachi Dynamic Link Manager Hitachi&nb… |
Oracle Java SE および Oracle GraalVM Enterprise Edition における JSSE に関する脆弱性 |
CWE-noinfo
noinfo |
CVE-2021-35578 | 2025-12-15 12:28 | 2021-10-19 | Show | GitHub Exploit DB Packet Storm |
| 72 | 6.8 |
警告
Network |
オラクル 日立 NetApp |
Hitachi Replication Manager uCosminexus Service Platform(64) JRE uCosminexus Application Server(64) Hitachi Tuning Manager Hitachi Device&n… |
Oracle Java SE および Oracle GraalVM Enterprise Edition における Libraries に関する脆弱性 |
CWE-noinfo
noinfo |
CVE-2021-35567 | 2025-12-15 12:27 | 2021-10-19 | Show | GitHub Exploit DB Packet Storm |
| 73 | 5.3 |
警告
Network |
日立 Fedora Project オラクル NetApp |
Hitachi Replication Manager uCosminexus Service Platform(64) JRE uCosminexus Application Server(64) Hitachi Tuning Manager Hitachi Device&n… |
Oracle Java SE および Oracle GraalVM Enterprise Edition における JSSE に関する脆弱性 |
CWE-noinfo
noinfo |
CVE-2021-35565 | 2025-12-15 12:25 | 2021-10-19 | Show | GitHub Exploit DB Packet Storm |
| 74 | 5.3 |
警告
Network |
日立 Fedora Project オラクル NetApp |
Hitachi Replication Manager uCosminexus Service Platform(64) JRE uCosminexus Application Server(64) Hitachi Tuning Manager Hitachi Device&n… |
Oracle Java SE および Oracle GraalVM Enterprise Edition における Keytool に関する脆弱性 |
CWE-noinfo
noinfo |
CVE-2021-35564 | 2025-12-15 12:24 | 2021-10-19 | Show | GitHub Exploit DB Packet Storm |
| 75 | 5.3 |
警告
Network |
日立 Fedora Project オラクル NetApp |
Hitachi Replication Manager uCosminexus Service Platform(64) JRE uCosminexus Application Server(64) Hitachi Tuning Manager Hitachi Device&n… |
Oracle Java SE および Oracle GraalVM Enterprise Edition における Utility に関する脆弱性 |
CWE-noinfo
noinfo |
CVE-2021-35561 | 2025-12-15 12:23 | 2021-10-19 | Show | GitHub Exploit DB Packet Storm |
| 76 | 5.3 |
警告
Network |
オラクル 日立 NetApp |
Hitachi Replication Manager uCosminexus Service Platform(64) JRE uCosminexus Application Server(64) Hitachi Dynamic Link Manager Hitachi&nb… |
Oracle Java SE および Oracle GraalVM Enterprise Edition における Swing に関する脆弱性 |
CWE-863
Incorrect Authorization |
CVE-2021-35559 | 2025-12-15 12:22 | 2021-10-19 | Show | GitHub Exploit DB Packet Storm |
| 77 | 5.4 |
警告
Network |
IBM | IBM WebSphere Application Server | IBM の IBM WebSphere Application Server におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
Cross-site Scripting |
CVE-2025-12635 | 2025-12-12 09:37 | 2025-12-8 | Show | GitHub Exploit DB Packet Storm |
| 78 | 9.8 |
緊急
Network |
マイクロソフト | Azure Application Gateway | Azure Application Gateway の特権の昇格の脆弱性 |
CWE-121 CWE-787 Stack-based Buffer Overflow Out-of-bounds Write |
CVE-2025-64657 | 2025-12-10 14:30 | 2025-11-20 | Show | GitHub Exploit DB Packet Storm |
| 79 | 9.8 |
緊急
Network |
マイクロソフト | Azure Application Gateway | Azure Application Gateway Elevation of Privilege Vulnerability |
CWE-125
Out-of-bounds Read |
CVE-2025-64656 | 2025-12-10 12:28 | 2025-11-20 | Show | GitHub Exploit DB Packet Storm |
| 80 | 9.9 |
緊急
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server におけるパストラバーサルの脆弱性 |
CWE-22
Path Traversal |
CVE-2025-54347 | 2025-12-9 13:43 | 2025-11-24 | Show | GitHub Exploit DB Packet Storm |
| 81 | 5.3 |
警告
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server におけるハードコードされた認証情報の使用に関する脆弱性 |
CWE-798
Use of Hard-coded Credentials |
CVE-2025-54341 | 2025-12-9 11:14 | 2025-11-24 | Show | GitHub Exploit DB Packet Storm |
| 82 | 7.5 |
重要
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server におけるアクセス制御に関する脆弱性 |
CWE-284
Improper Access Control |
CVE-2025-54563 | 2025-12-9 11:05 | 2025-11-24 | Show | GitHub Exploit DB Packet Storm |
| 83 | 9.6 |
緊急
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server におけるアクセス制御に関する脆弱性 |
CWE-284
Improper Access Control |
CVE-2025-54343 | 2025-11-28 18:03 | 2025-11-14 | Show | GitHub Exploit DB Packet Storm |
| 84 | 4.1 |
警告
Local |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server における暗号アルゴリズムの使用に関する脆弱性 |
CWE-327
Use of a Broken or Risky Cryptographic Algorithm |
CVE-2025-54340 | 2025-11-28 18:02 | 2025-11-14 | Show | GitHub Exploit DB Packet Storm |
| 85 | 3.7 |
低
Network |
オラクル 日立 |
uCosminexus Client uCosminexus Application Server-R Hitachi Ops Center Analyzer viewpoint Hitachi Replication Manager Hitachi Application… |
Oracle Java SE および Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition における Libraries に関する脆弱性 |
CWE-284
Improper Access Control |
CVE-2025-61748 | 2025-11-27 11:50 | 2025-10-21 | Show | GitHub Exploit DB Packet Storm |
| 86 | 7.5 |
重要
Network |
オラクル 日立 |
uCosminexus Client uCosminexus Application Server-R Hitachi Ops Center Analyzer viewpoint Hitachi Replication Manager Hitachi Application… |
Oracle Java SE および Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition における JAXP に関する脆弱性 |
CWE-200
Information Exposure |
CVE-2025-53066 | 2025-11-27 11:49 | 2025-10-21 | Show | GitHub Exploit DB Packet Storm |
| 87 | 5.9 |
警告
Network |
オラクル 日立 |
uCosminexus Client uCosminexus Application Server-R Hitachi Ops Center Analyzer viewpoint Hitachi Replication Manager Hitachi Application… |
Oracle Java SE および Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition における Security に関する脆弱性 |
CWE-284
Improper Access Control |
CVE-2025-53057 | 2025-11-27 11:47 | 2025-10-21 | Show | GitHub Exploit DB Packet Storm |
| 88 | 6.5 |
警告
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server におけるクロスサイトスクリプティングの脆弱性 |
CWE-80
Basic XSS |
CVE-2025-54348 | 2025-11-26 15:21 | 2025-11-14 | Show | GitHub Exploit DB Packet Storm |
| 89 | 7.6 |
重要
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server におけるクロスサイトスクリプティングの脆弱性 |
CWE-80
Basic XSS |
CVE-2025-54346 | 2025-11-26 15:10 | 2025-11-14 | Show | GitHub Exploit DB Packet Storm |
| 90 | 9.8 |
緊急
Network |
oretnom23 | Survey Application System in PHP and SQLite3 Source Code | oretnom23 の Survey Application System in PHP and SQLite3 Source Code における SQL インジェクションの脆弱性 |
CWE-74 CWE-89 CWE-89 Injection SQL Injection SQL Injection |
CVE-2025-13060 | 2025-11-26 10:27 | 2025-11-12 | Show | GitHub Exploit DB Packet Storm |
| 91 | 10 |
緊急
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server におけるアクセス制御に関する脆弱性 |
CWE-284
Improper Access Control |
CVE-2025-54339 | 2025-11-26 09:56 | 2025-11-14 | Show | GitHub Exploit DB Packet Storm |
| 92 | 3.3 |
低
Local |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server における重要な情報の平文保存に関する脆弱性 |
CWE-312
Cleartext Storage of Sensitive Information |
CVE-2025-54342 | 2025-11-26 09:56 | 2025-11-14 | Show | GitHub Exploit DB Packet Storm |
| 93 | 7.5 |
重要
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server における情報漏えいに関する脆弱性 |
CWE-200
Information Exposure |
CVE-2025-54345 | 2025-11-26 09:53 | 2025-11-14 | Show | GitHub Exploit DB Packet Storm |
| 94 | 3.7 |
低
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server におけるパストラバーサルの脆弱性 |
CWE-22
Path Traversal |
CVE-2025-54559 | 2025-11-26 09:53 | 2025-11-14 | Show | GitHub Exploit DB Packet Storm |
| 95 | 3.8 |
低
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server におけるサーバサイドのリクエストフォージェリの脆弱性 |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2025-54560 | 2025-11-26 09:53 | 2025-11-14 | Show | GitHub Exploit DB Packet Storm |
| 96 | 4.3 |
警告
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server におけるアクセス制御に関する脆弱性 |
CWE-284
Improper Access Control |
CVE-2025-54561 | 2025-11-26 09:53 | 2025-11-14 | Show | GitHub Exploit DB Packet Storm |
| 97 | 9.8 |
緊急
Network |
IBM | IBM Maximo Application Suite | IBM の IBM Maximo Application Suite における根本の脆弱性による認証回避の脆弱性 |
CWE-305
Authentication Bypass by Primary Weakness |
CVE-2025-36386 | 2025-11-26 09:38 | 2025-10-28 | Show | GitHub Exploit DB Packet Storm |
| 98 | 4.3 |
警告
Network |
Desktop Alert Inc. | PingAlert Application Server | Desktop Alert Inc. の PingAlert Application Server におけるエラーメッセージによる情報漏えいに関する脆弱性 |
CWE-209
Information Exposure Through an Error Message |
CVE-2025-54562 | 2025-11-25 12:26 | 2025-11-14 | Show | GitHub Exploit DB Packet Storm |
| 99 | 9.8 |
緊急
Network |
oretnom23 | Survey Application System in PHP and SQLite3 Source Code | oretnom23 の Survey Application System in PHP and SQLite3 Source Code における SQL インジェクションの脆弱性 |
CWE-74 CWE-89 CWE-89 Injection SQL Injection SQL Injection |
CVE-2025-12929 | 2025-11-20 14:00 | 2025-11-10 | Show | GitHub Exploit DB Packet Storm |
| 100 | 4.8 |
警告
Network |
NetApp オラクル 日立 |
uCosminexus Service Platform(64) Hitachi Ops Center Analyzer viewpoint Hitachi Ops Center Automator Hitachi Replication Manager uCos… |
Oracle Java SE における Compiler に関する脆弱性 |
CWE-284
Improper Access Control |
CVE-2025-30691 | 2025-11-13 15:06 | 2025-04-15 | Show | GitHub Exploit DB Packet Storm |