Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1091 8.5 重要
Network
Authentik Security Inc authentik Authentik Security Incのauthentikにおける複数の脆弱性 CWE-20
CWE-347
CVE-2026-47201 2026-06-8 11:45 2026-06-2 Show GitHub Exploit DB Packet Storm
1092 9.8 緊急
Network
Apache Software Foundation Apache Camel Apache Software FoundationのApache Camelにおける大文字と小文字の区別の不適切な処理に関する脆弱性 CWE-178
大文字と小文字の区別の不適切な処理
CVE-2026-47323 2026-06-8 11:45 2026-05-19 Show GitHub Exploit DB Packet Storm
1093 8.1 重要
Network
OpenStack OpenStack Ironic OpenStackのOpenStack Ironicにおける相対パストラバーサルの脆弱性 CWE-23
相対的パストラバーサル
CVE-2026-48681 2026-06-8 11:45 2026-06-4 Show GitHub Exploit DB Packet Storm
1094 7.8 重要
Local
Open Source Geospatial Foundation GDAL Open Source Geospatial FoundationのGDALにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-49014 2026-06-8 11:45 2026-05-27 Show GitHub Exploit DB Packet Storm
1095 8.8 重要
Network
Authentik Security Inc authentik Authentik Security Incのauthentikにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-49443 2026-06-8 11:45 2026-06-2 Show GitHub Exploit DB Packet Storm
1096 9.8 緊急
Network
Authentik Security Inc authentik Authentik Security Incのauthentikにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-49448 2026-06-8 11:45 2026-06-2 Show GitHub Exploit DB Packet Storm
1097 5.9 警告
Local
libexpat project libexpat libexpat projectのlibexpatにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-50219 2026-06-8 11:45 2026-06-4 Show GitHub Exploit DB Packet Storm
1098 5.3 警告
Network
morgan project morgan morgan projectのmorganにおける不適切なログ出力の無効化に関する脆弱性 CWE-117
不適切なログ出力の無効化
CVE-2026-5078 2026-06-8 11:45 2026-06-3 Show GitHub Exploit DB Packet Storm
1099 9.6 緊急
Network
huggingface transformers huggingfaceのtransformersにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-5241 2026-06-8 11:45 2026-06-3 Show GitHub Exploit DB Packet Storm
1100 8.1 重要
Network
Progress Software Corporation Sitefinity Progress Software CorporationのSitefinityにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-7195 2026-06-8 11:45 2026-06-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310551 - egroupware egroupware phpgwapi/js/fckeditor/editor/dialog/fck_spellerpages/spellerpages/serverscripts/spellchecker.php in EGroupware 1.4.001+.002; 1.6.001+.002 and possibly other versions before 1.6.003; and EPL 9.1 befor… CWE-94
Code Injection
CVE-2010-3313 2024-11-21 10:18 2010-09-23 Show GitHub Exploit DB Packet Storm
310552 - linux
suse
canonical
linux_kernel
linux_enterprise_real_time_extension
ubuntu_linux
The IA32 system call emulation functionality in arch/x86/ia32/ia32entry.S in the Linux kernel before 2.6.36-rc4-git2 on the x86_64 platform does not zero extend the %eax register after the 32-bit ent… CWE-269
 Improper Privilege Management
CVE-2010-3301 2024-11-21 10:18 2010-09-23 Show GitHub Exploit DB Packet Storm
310553 - linux
debian
canonical
linux_kernel
debian_linux
ubuntu_linux
The tcf_act_police_dump function in net/sched/act_police.c in the actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc4 does not properly initialize certa… CWE-399
 Resource Management Errors
CVE-2010-3477 2024-11-21 10:18 2010-09-22 Show GitHub Exploit DB Packet Storm
310554 - drupal drupal Multiple cross-site scripting (XSS) vulnerabilities in Drupal 6.x before 6.18 allow remote authenticated users with certain privileges to inject arbitrary web script or HTML via (1) an action descrip… CWE-79
Cross-site Scripting
CVE-2010-3094 2024-11-21 10:18 2010-09-22 Show GitHub Exploit DB Packet Storm
310555 - drupal drupal The comment module in Drupal 5.x before 5.23 and 6.x before 6.18 allows remote authenticated users with certain privileges to bypass intended access restrictions and reinstate removed comments via a … CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3093 2024-11-21 10:18 2010-09-22 Show GitHub Exploit DB Packet Storm
310556 - drupal drupal The upload module in Drupal 5.x before 5.23 and 6.x before 6.18 does not properly support case-insensitive filename handling in a database configuration, which allows remote authenticated users to by… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3092 2024-11-21 10:18 2010-09-22 Show GitHub Exploit DB Packet Storm
310557 - otrs otrs Open Ticket Request System (OTRS) 2.3.x before 2.3.6 and 2.4.x before 2.4.8 does not properly handle the matching of Perl regular expressions against HTML e-mail messages, which allows remote attacke… CWE-20
 Improper Input Validation 
CVE-2010-3476 2024-11-21 10:18 2010-09-21 Show GitHub Exploit DB Packet Storm
310558 - ibm db2 IBM DB2 9.7 before FP3 does not properly enforce privilege requirements for execution of entries in the dynamic SQL cache, which allows remote authenticated users to bypass intended access restrictio… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3475 2024-11-21 10:18 2010-09-21 Show GitHub Exploit DB Packet Storm
310559 - ibm db2 IBM DB2 9.7 before FP3 does not perform the expected drops or invalidations of dependent functions upon a loss of privileges by the functions' owners, which allows remote authenticated users to bypas… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3474 2024-11-21 10:18 2010-09-21 Show GitHub Exploit DB Packet Storm
310560 - ibm filenet_p8_application_engine Open redirect vulnerability in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-021 allows remote attackers to redirect users to arbitrary web sites and… CWE-20
 Improper Input Validation 
CVE-2010-3473 2024-11-21 10:18 2010-09-21 Show GitHub Exploit DB Packet Storm