Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1071 7.2 重要
Network
オラクル Oracle Financials for EMEA オラクルのOracle Financials for EMEAにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46969 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
1072 7.2 重要
Network
オラクル Oracle HR Intelligence オラクルのOracle HR Intelligenceにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-46970 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
1073 7.5 重要
Network
オラクル Oracle HR Intelligence オラクルのOracle HR Intelligenceにおける複数の脆弱性 CWE-269
CWE-284
CVE-2026-46971 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
1074 8.8 重要
Network
オラクル Oracle Outsourced Manufacturing for Discrete Industries オラクルのOracle Outsourced Manufacturing for Discrete Industriesにおける複数の脆弱性 CWE-269
CWE-287
CWE-306
CVE-2026-46972 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
1075 8.8 重要
Network
オラクル Oracle Outsourced Manufacturing for Discrete Industries オラクルのOracle Outsourced Manufacturing for Discrete Industriesにおける複数の脆弱性 CWE-269
CWE-287
CWE-306
CVE-2026-46973 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
1076 7.2 重要
Network
オラクル Public Sector Payroll オラクルのPublic Sector Payrollにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46976 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
1077 4.4 警告
Network
metal3 ip-address-manager Metal3のip-address-managerにおける不要な特権による実行に関する脆弱性 CWE-250
不要な特権による実行
CVE-2026-47190 2026-06-22 11:32 2026-06-12 Show GitHub Exploit DB Packet Storm
1078 9.1 緊急
Network
i18next i18next-fs-backend i18nextのi18next-fs-backendにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-48713 2026-06-22 11:32 2026-06-15 Show GitHub Exploit DB Packet Storm
1079 9.1 緊急
Network
i18next i18next-http-middleware i18nextのi18next-http-middlewareにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-48714 2026-06-22 11:32 2026-06-15 Show GitHub Exploit DB Packet Storm
1080 9.1 緊急
Network
Apache Software Foundation Airflow SFTP Providers (apache-airflow-providers-sftp) Apache Software FoundationのAirflow SFTP Providers (apache-airflow-providers-sftp)におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-50203 2026-06-22 11:32 2026-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 26, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
971 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit… CWE-416
 Use After Free
CVE-2026-47918 2026-06-13 04:21 2026-06-10 Show GitHub Exploit DB Packet Storm
972 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit… CWE-416
 Use After Free
CVE-2026-47917 2026-06-13 04:20 2026-06-10 Show GitHub Exploit DB Packet Storm
973 7.5 HIGH
Network
axios axios Axios is a promise based HTTP client for the browser and Node.js. Prior to 0.32.0 and 1.16.0, Axios’s Node.js HTTP adapter may forward a Proxy-Authorization header to a redirected origin during speci… CWE-201
 Insertion of Sensitive Information Into Sent Data
CVE-2026-44487 2026-06-13 04:19 2026-06-12 Show GitHub Exploit DB Packet Storm
974 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit… CWE-416
 Use After Free
CVE-2026-47916 2026-06-13 04:17 2026-06-10 Show GitHub Exploit DB Packet Storm
975 7.5 HIGH
Network
axios axios Axios is a promise based HTTP client for the browser and Node.js. Axios versions 1.7.0 through 1.15.x did not enforce configured request and response size limits when requests were sent with the fetc… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-44488 2026-06-13 04:04 2026-06-12 Show GitHub Exploit DB Packet Storm
976 8.1 HIGH
Network
apache cxf A further incomplete fix for a previous advisory CVE-2026-44417 (Untrusted JMS configuration can lead to RCE) for Apache CXF has been identified, which can allow code execution capabilities, if untru… CWE-20
NVD-CWE-noinfo
 Improper Input Validation 
CVE-2026-50632 2026-06-13 03:58 2026-06-12 Show GitHub Exploit DB Packet Storm
977 8.1 HIGH
Network
apache cxf A JNDI Injection vulnerability has been discovered in Apache CXF's JCA integration module, which can allow for code execution, if an attacker is able to manipulate the JCA deployment descriptor (ra.x… CWE-20
NVD-CWE-noinfo
 Improper Input Validation 
CVE-2026-50633 2026-06-13 03:53 2026-06-12 Show GitHub Exploit DB Packet Storm
978 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current u… CWE-122
Heap-based Buffer Overflow
CVE-2026-47952 2026-06-13 03:50 2026-06-10 Show GitHub Exploit DB Packet Storm
979 6.5 MEDIUM
Network
apache cxf A vulnerability in Apache CXF's JwsJsonContainerRequestFilter can be exploited to cause CXF to process metadata that was not authenticated by the accepted signature. This can bypass the application's… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2026-50634 2026-06-13 03:49 2026-06-12 Show GitHub Exploit DB Packet Storm
980 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit… CWE-416
 Use After Free
CVE-2026-47955 2026-06-13 03:49 2026-06-10 Show GitHub Exploit DB Packet Storm