Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 10:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1041 7.8 重要
Local
Kovidgoyal Kitty KovidgoyalのKittyにおける複数の脆弱性 CWE-150
CWE-94
CVE-2026-54057 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
1042 7.7 重要
Network
Mattermost, Inc. Mattermost Desktop Mattermost, Inc.のMattermost Desktopにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2026-6517 2026-06-17 15:38 2026-06-15 Show GitHub Exploit DB Packet Storm
1043 8.1 重要
Network
OpenSSL Project OpenSSL OpenSSL ProjectのOpenSSLにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-7383 2026-06-17 15:38 2026-06-9 Show GitHub Exploit DB Packet Storm
1044 8.1 重要
Network
langflow langflow langflowにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-7787 2026-06-17 15:38 2026-06-11 Show GitHub Exploit DB Packet Storm
1045 8.8 重要
Network
IBM IBM i IBMのIBM iにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-7870 2026-06-17 15:38 2026-06-11 Show GitHub Exploit DB Packet Storm
1046 6.5 警告
Network
Mattermost, Inc. Mattermost Desktop Mattermost, Inc.のMattermost Desktopにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-8683 2026-06-17 15:38 2026-06-15 Show GitHub Exploit DB Packet Storm
1047 7.5 重要
Network
OpenSSL Project OpenSSL OpenSSL ProjectのOpenSSLにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-9076 2026-06-17 15:38 2026-06-9 Show GitHub Exploit DB Packet Storm
1048 8.1 重要
Network
F5 Networks nginx open source
NGINX plus
F5 Networksのnginx open source等の複数製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-9256 2026-06-17 15:37 2026-05-22 Show GitHub Exploit DB Packet Storm
1049 4.3 警告
Network
webpack.js webpack-dev-server webpackのwebpack-dev-serverにおける複数の脆弱性 CWE-346
CWE-441
CVE-2026-9595 2026-06-17 15:37 2026-06-15 Show GitHub Exploit DB Packet Storm
1050 8.8 重要
Network
Trychroma ChromaDB TrychromaのChromaDBにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-45830 2026-06-17 15:37 2026-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 26, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
309361 - mozilla firefox
seamonkey
thunderbird
Unspecified vulnerability in the browser engine in Mozilla Firefox 3.5.x before 3.5.19, 3.6.x before 3.6.17, and 4.x before 4.0.1; Thunderbird before 3.1.10; and SeaMonkey before 2.0.14 allows remote… NVD-CWE-noinfo
CVE-2011-0070 2024-11-21 10:23 2011-05-8 Show GitHub Exploit DB Packet Storm
309362 - mozilla firefox
seamonkey
thunderbird
Unspecified vulnerability in the browser engine in Mozilla Firefox 3.5.x before 3.5.19, 3.6.x before 3.6.17, and 4.x before 4.0.1; Thunderbird before 3.1.10; and SeaMonkey before 2.0.14 allows remote… NVD-CWE-noinfo
CVE-2011-0069 2024-11-21 10:23 2011-05-8 Show GitHub Exploit DB Packet Storm
309363 - mozilla firefox
seamonkey
Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, does not properly implement autocompletion for forms, which allows remote attackers to read form history entries vi… CWE-20
 Improper Input Validation 
CVE-2011-0067 2024-11-21 10:23 2011-05-8 Show GitHub Exploit DB Packet Storm
309364 - mozilla firefox
seamonkey
Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers to execute arbitrary code via vectors related to OBJECT's m… CWE-399
 Resource Management Errors
CVE-2011-0066 2024-11-21 10:23 2011-05-8 Show GitHub Exploit DB Packet Storm
309365 - mozilla firefox
seamonkey
Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers to execute arbitrary code via vectors related to OBJECT's m… CWE-399
 Resource Management Errors
CVE-2011-0065 2024-11-21 10:23 2011-05-8 Show GitHub Exploit DB Packet Storm
309366 - indusoft
advantech
web_studio
thin_client
advantech_studio
Multiple buffer overflows in the ISSymbol ActiveX control in ISSymbol.ocx 61.6.0.0 and 301.1009.2904.0 in the ISSymbol virtual machine, as distributed in Advantech Studio 6.1 SP6 61.6.01.05, InduSoft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-0340 2024-11-21 10:23 2011-05-5 Show GitHub Exploit DB Packet Storm
309367 - sun sunos Oracle Solaris 8, 9, and 10 stores back-out patch files (undo.Z) unencrypted with world-readable permissions under /var/sadm/pkg/, which allows local users to obtain password hashes and conduct brute… CWE-255
Credentials Management
CVE-2011-0412 2024-11-21 10:23 2011-04-20 Show GitHub Exploit DB Packet Storm
309368 - rim blackberry_enterprise_server
blackberry_enterprise_server_express
Cross-site scripting (XSS) vulnerability in webdesktop/app in the BlackBerry Web Desktop Manager component in Research In Motion (RIM) BlackBerry Enterprise Server (BES) software before 5.0.2 MR5 and… CWE-79
Cross-site Scripting
CVE-2011-0286 2024-11-21 10:23 2011-04-19 Show GitHub Exploit DB Packet Storm
309369 - redhat spice-xpi The SPICE Firefox plug-in (spice-xpi) 2.4, 2.3, 2.2, and possibly other versions allows local users to overwrite arbitrary files via a symlink attack on the usbrdrctl log file, which has a predictabl… CWE-59
Link Following
CVE-2011-0012 2024-11-21 10:23 2011-04-19 Show GitHub Exploit DB Packet Storm
309370 - apple iphone_os The generate-id XPath function in libxslt in Apple iOS 4.3.x before 4.3.2 allows remote attackers to obtain potentially sensitive information about heap memory addresses via a crafted web site. NOTE… CWE-200
Information Exposure
CVE-2011-0195 2024-11-21 10:23 2011-04-16 Show GitHub Exploit DB Packet Storm