Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1 - - (複数のベンダ) (複数の製品) SignalRGBカーネルドライバにおける不適切なアクセス制御およびIOCTLの脆弱性 New - - 2026-06-19 11:02 2026-06-18 Show GitHub Exploit DB Packet Storm
2 - - (複数のベンダ) (複数の製品) CISA ICS Advisory / ICS Medical Advisory(2026年06月16日) - - 2026-06-18 11:35 2026-06-17 Show GitHub Exploit DB Packet Storm
3 8.1 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2026-12328 2026-06-17 15:46 2026-06-16 Show GitHub Exploit DB Packet Storm
4 5.3 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における複数の脆弱性 CWE-119
CWE-416
CWE-476
CVE-2026-12329 2026-06-17 15:46 2026-06-16 Show GitHub Exploit DB Packet Storm
5 5.4 警告
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-12330 2026-06-17 15:46 2026-06-16 Show GitHub Exploit DB Packet Storm
6 6.5 警告
Network
- シスコシステムズのCisco Catalyst SD-WAN Managerにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-20262 2026-06-17 15:46 2026-06-15 Show GitHub Exploit DB Packet Storm
7 7.8 重要
Local
NVIDIA NeMo NVIDIAのNeMoにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-24155 2026-06-17 15:46 2026-06-16 Show GitHub Exploit DB Packet Storm
8 7.8 重要
Local
NVIDIA NeMo NVIDIAのNeMoにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-24228 2026-06-17 15:46 2026-06-16 Show GitHub Exploit DB Packet Storm
9 5.5 警告
Local
Advanced Micro Devices (AMD) uprof Advanced Micro Devices (AMD)のuprofにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-28237 2026-06-17 15:46 2026-06-9 Show GitHub Exploit DB Packet Storm
10 6.5 警告
Network
Grafana Labs Grafana Grafana LabsのGrafanaにおける外部からアクセス可能なファイルまたはディレクトリに関する脆弱性 CWE-552
外部からアクセス可能なファイルまたはディレクトリ
CVE-2026-33380 2026-06-17 15:46 2026-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
320241 6.5 MEDIUM
Adjacent
zephyrproject zephyr BT: Classic: SDP OOB access in get_att_search_list CWE-787
 Out-of-bounds Write
CVE-2024-6137 2024-09-19 10:33 2024-09-14 Show GitHub Exploit DB Packet Storm
320242 6.5 MEDIUM
Network
microfocus edirectory Possible External Service Interaction attack in eDirectory has been discovered in OpenText™ eDirectory. This impact all version before 9.2.6.0000. CWE-521
Weak Password Requirements 
CVE-2021-38133 2024-09-19 06:05 2024-09-12 Show GitHub Exploit DB Packet Storm
320243 9.8 CRITICAL
Network
microfocus edirectory Possible External Service Interaction attack in eDirectory has been discovered in OpenText™ eDirectory. This impact all version before 9.2.6.0000. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2021-38132 2024-09-19 06:04 2024-09-12 Show GitHub Exploit DB Packet Storm
320244 6.1 MEDIUM
Network
microfocus edirectory Possible Cross-Site Scripting (XSS) Vulnerability in eDirectory has been discovered in OpenText™ eDirectory 9.2.5.0000. CWE-79
Cross-site Scripting
CVE-2021-38131 2024-09-19 06:00 2024-09-12 Show GitHub Exploit DB Packet Storm
320245 6.1 MEDIUM
Network
i-doit i-doit Cross-site Scripting (XSS) vulnerability in idoit pro version 28. This vulnerability allows an attacker to retrieve session details of an authenticated user due to lack of proper sanitization of the … CWE-79
Cross-site Scripting
CVE-2024-8750 2024-09-19 05:38 2024-09-12 Show GitHub Exploit DB Packet Storm
320246 5.3 MEDIUM
Network
ordat ordat.erp User enumeration vulnerability in ORDAT FOSS-Online before v2.24.01 allows attackers to determine if an account exists in the application by comparing the server responses of the forgot password func… CWE-203
 Information Exposure Through Discrepancy
CVE-2024-34336 2024-09-19 05:32 2024-09-13 Show GitHub Exploit DB Packet Storm
320247 6.1 MEDIUM
Network
ordat ordat.erp ORDAT FOSS-Online before version 2.24.01 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the login page. CWE-79
Cross-site Scripting
CVE-2024-34335 2024-09-19 05:32 2024-09-13 Show GitHub Exploit DB Packet Storm
320248 7.5 HIGH
Network
ordat ordat.erp ORDAT FOSS-Online before v2.24.01 was discovered to contain a SQL injection vulnerability via the forgot password function. CWE-89
SQL Injection
CVE-2024-34334 2024-09-19 05:32 2024-09-13 Show GitHub Exploit DB Packet Storm
320249 9.8 CRITICAL
Network
soplanning soplanning A unauthenticated Remote Code Execution (RCE) vulnerability is found in the SO Planning online planning tool. With this vulnerability, an attacker can upload executable files that are moved to a publ… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-27115 2024-09-19 05:32 2024-09-11 Show GitHub Exploit DB Packet Storm
320250 3.1 LOW
Network
keyfactor ejbca The CMP CLI client in KeyFactor EJBCA before 8.3.1 has only 6 octets of salt, and is thus not compliant with the security requirements of RFC 4211, and might make man-in-the-middle attacks easier. CM… NVD-CWE-noinfo
CVE-2024-36066 2024-09-19 05:28 2024-09-13 Show GitHub Exploit DB Packet Storm