Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1091 5.5 警告
Local
サムスン android サムスンのAndroidにおける不特定の脆弱性 CWE-Other
その他
CVE-2026-21017 2026-06-8 12:32 2026-06-5 Show GitHub Exploit DB Packet Storm
1092 5.5 警告
Local
サムスン android サムスンのAndroidにおける不特定の脆弱性 CWE-Other
その他
CVE-2026-21025 2026-06-8 12:32 2026-06-5 Show GitHub Exploit DB Packet Storm
1093 5.5 警告
Local
サムスン android サムスンのAndroidにおける不特定の脆弱性 CWE-Other
その他
CVE-2026-21026 2026-06-8 12:32 2026-06-5 Show GitHub Exploit DB Packet Storm
1094 3.3
Local
サムスン android サムスンのAndroidにおける不特定の脆弱性 CWE-Other
その他
CVE-2026-21027 2026-06-8 12:32 2026-06-5 Show GitHub Exploit DB Packet Storm
1095 5.5 警告
Local
サムスン android サムスンのAndroidにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-21028 2026-06-8 12:32 2026-06-5 Show GitHub Exploit DB Packet Storm
1096 7.8 重要
Local
サムスン android サムスンのAndroidにおける不特定の脆弱性 CWE-Other
その他
CVE-2026-21029 2026-06-8 12:32 2026-06-5 Show GitHub Exploit DB Packet Storm
1097 7.8 重要
Local
サムスン android サムスンのAndroidにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-21030 2026-06-8 12:32 2026-06-5 Show GitHub Exploit DB Packet Storm
1098 7.8 重要
Local
サムスン android サムスンのAndroidにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-21031 2026-06-8 12:32 2026-06-5 Show GitHub Exploit DB Packet Storm
1099 9.9 緊急
Network
Veeam Veeam Backup & Replication VeeamのVeeam Backup & ReplicationにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-21708 2026-06-8 12:32 2026-03-12 Show GitHub Exploit DB Packet Storm
1100 7.5 重要
Network
VMware Spring Cloud Gateway VMwareのSpring Cloud Gatewayにおけるシステム構成または設定の外部制御に関する脆弱性 CWE-15
システム構成または設定の外部制御
CVE-2026-22750 2026-06-8 12:32 2026-04-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310421 - adobe
macromedia
flash_player
acrobat
acrobat_reader
Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris and 10.1.95.1 on Android, and authplay.dll (aka AuthPlayLib.bundle or libauthplay.so.0.0.0) in… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-3654 2024-11-21 10:19 2010-10-30 Show GitHub Exploit DB Packet Storm
310422 - rubyonrails rails Ruby on Rails 2.3.9 and 3.0.0 does not properly handle nested attributes, which allows remote attackers to modify arbitrary records by changing the names of parameters for form inputs. CWE-20
 Improper Input Validation 
CVE-2010-3933 2024-11-21 10:19 2010-10-28 Show GitHub Exploit DB Packet Storm
310423 - curl curl Absolute path traversal vulnerability in curl 7.20.0 through 7.21.1, when the --remote-header-name or -J option is used, allows remote servers to create or overwrite arbitrary files by using \ (backs… CWE-22
Path Traversal
CVE-2010-3842 2024-11-21 10:19 2010-10-28 Show GitHub Exploit DB Packet Storm
310424 - usebb usebb rss.php in UseBB before 1.0.11 does not properly handle forum configurations in which a user has the view permission but not the read permission, which allows remote attackers to bypass intended acce… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3713 2024-11-21 10:19 2010-10-28 Show GitHub Exploit DB Packet Storm
310425 - joomla joomla\! Cross-site scripting (XSS) vulnerability in Joomla! 1.5.x before 1.5.21 and 1.6.x before 1.6.1 allows remote attackers to inject arbitrary web script or HTML via vectors involving "multiple encoded e… CWE-79
Cross-site Scripting
CVE-2010-3712 2024-11-21 10:19 2010-10-28 Show GitHub Exploit DB Packet Storm
310426 - pidgin pidgin libpurple in Pidgin before 2.7.4 does not properly validate the return value of the purple_base64_decode function, which allows remote authenticated users to cause a denial of service (NULL pointer d… CWE-20
 Improper Input Validation 
CVE-2010-3711 2024-11-21 10:19 2010-10-28 Show GitHub Exploit DB Packet Storm
310427 - adobe shockwave_player The Director module (dirapi.dll) in Adobe Shockwave Player before 11.5.9.615 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a Director movie wi… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-3653 2024-11-21 10:19 2010-10-27 Show GitHub Exploit DB Packet Storm
310428 - typo3 typo3 The t3lib_div::validEmail function in TYPO3 4.2.x before 4.2.15, 4.3.x before 4.3.7, and 4.4.x before 4.4.4 does not properly restrict input to filter_var FILTER_VALIDATE_EMAIL operations in PHP, whi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3717 2024-11-21 10:19 2010-10-26 Show GitHub Exploit DB Packet Storm
310429 - typo3 typo3 The be_user_creation task in TYPO3 4.2.x before 4.2.15 and 4.3.x before 4.3.7 allows remote authenticated users to gain privileges via a crafted POST request that creates a user account with arbitrar… CWE-20
 Improper Input Validation 
CVE-2010-3716 2024-11-21 10:19 2010-10-26 Show GitHub Exploit DB Packet Storm
310430 - typo3 typo3 Multiple cross-site scripting (XSS) vulnerabilities in TYPO3 4.2.x before 4.2.15, 4.3.x before 4.3.7, and 4.4.x before 4.4.4 allow remote attackers to inject arbitrary web script or HTML via vectors … CWE-79
Cross-site Scripting
CVE-2010-3715 2024-11-21 10:19 2010-10-26 Show GitHub Exploit DB Packet Storm