Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
131261 7.8 重要
Local
トレンドマイクロ Trend Micro OfficeScan XG
Apex One
複数の Trend Micro における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2021-25253 2022-01-6 18:09 2021-03-31 Show GitHub Exploit DB Packet Storm
131262 7.8 重要
Local
トレンドマイクロ Trend Micro OfficeScan XG
Apex One
複数の Trend Micro における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2021-25250 2022-01-6 18:09 2021-03-31 Show GitHub Exploit DB Packet Storm
131263 5.5 警告
Local
Debian
FluidSynth
Debian GNU/Linux
FluidSynth
fluidsynth における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2021-21417 2022-01-6 17:54 2021-03-16 Show GitHub Exploit DB Packet Storm
131264 9.8 緊急
Network
Gnuplot gnuplot Node.js 用 gnuplot パッケージにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2021-29369 2022-01-6 17:32 2021-01-23 Show GitHub Exploit DB Packet Storm
131265 7.8 重要
Local
デル Dell Solutions Enabler
Dell Unisphere for PowerMax
Dell Unisphere for PowerMax Virtual Appliance
Dell Unisphere for PowerMax における領域間での誤ったリソース移動に関する脆弱性 CWE-669
領域間での誤ったリソース移動
CVE-2021-21531 2022-01-6 17:32 2021-03-24 Show GitHub Exploit DB Packet Storm
131266 9.1 緊急
Network
adaltas mixme Node.js mixme におけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2021-28860 2022-01-6 17:32 2021-04-26 Show GitHub Exploit DB Packet Storm
131267 7.5 重要
Network
algorithmica project algorithmica Rust 用 algorithmica crate における二重解放に関する脆弱性 CWE-415
二重解放
CVE-2021-31996 2022-01-6 17:30 2021-03-7 Show GitHub Exploit DB Packet Storm
131268 7.2 重要
Network
Chamilo Association Chamilo Chamilo における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2021-31933 2022-01-6 17:30 2021-04-17 Show GitHub Exploit DB Packet Storm
131269 6.7 警告
Local
デル Dell EMC Unity Operating Environment
Dell EMC UnityVSA Operating Environment
Dell EMC Unity XT Operating Environment
複数の Dell EMC 製品における重要な情報の平文保存に関する脆弱性 CWE-312
重要な情報の平文保存
CVE-2021-21547 2022-01-6 17:30 2021-04-19 Show GitHub Exploit DB Packet Storm
131270 6.5 警告
Network
CubeCoders Limited AMP CubeCoders AMP における不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2021-31926 2022-01-6 17:30 2021-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 29, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311 7.5 HIGH
Network
- - A use-after-free in the gf_filter_pid_inst_swap_delete_task function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.02.0 allows attackers to cause a Denial of Service (DoS) via supplyin… New CWE-416
 Use After Free
CVE-2025-60467 2026-06-27 15:16 2026-06-25 Show GitHub Exploit DB Packet Storm
312 5.0 MEDIUM
Local
- - A use-after-free in the gf_filter_pid_get_packet function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.02.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted… New CWE-416
 Use After Free
CVE-2025-60466 2026-06-27 15:16 2026-06-25 Show GitHub Exploit DB Packet Storm
313 6.1 MEDIUM
Local
- - A use-after-free in the gf_filter_pid_inst_swap function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.02.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted … New CWE-416
 Use After Free
CVE-2025-60465 2026-06-27 15:16 2026-06-26 Show GitHub Exploit DB Packet Storm
314 7.2 HIGH
Network
- - A privilege escalation vulnerability exists in LXD from 6.0 before 6.9, 5.21.0 before 5.21.5, and 5.0.0 before 5.0.7 regarding the handling of project-restriction policies during snapshot restoration… New CWE-863
 Incorrect Authorization
CVE-2026-9640 2026-06-27 14:16 2026-06-27 Show GitHub Exploit DB Packet Storm
315 9.8 CRITICAL
Network
- - Rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.46.0 until 1.74.3, rclone rcd --rc-serve accepts unauthenticated GET and HEAD requ… New CWE-306
CWE-78
Missing Authentication for Critical Function
OS Command 
CVE-2026-49980 2026-06-27 14:16 2026-06-25 Show GitHub Exploit DB Packet Storm
316 7.8 HIGH
Local
freebsd freebsd The KTLS receive path decrypted each record in place, assuming that the mbufs holding received data were anonymous and safe to modify. This assumption does not hold for data placed on a socket by se… New CWE-123
 Write-what-where Condition
CVE-2026-45257 2026-06-27 14:16 2026-06-27 Show GitHub Exploit DB Packet Storm
317 7.2 HIGH
Network
- - Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have SQL Injection through unsanitized unserialize+implode in managers.php. At line 756 of managers.php,… New CWE-89
SQL Injection
CVE-2026-40083 2026-06-27 14:16 2026-06-26 Show GitHub Exploit DB Packet Storm
318 6.5 MEDIUM
Network
- - The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to generic SQL Injection via the 'search' parameter in all versions up to, and including, 4.5.5 due to i… New CWE-89
SQL Injection
CVE-2026-13331 2026-06-27 14:16 2026-06-27 Show GitHub Exploit DB Packet Storm
319 7.5 HIGH
Network
google chrome Use after free in AdFilter in Google Chrome on Android prior to 149.0.7827.201 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted… New CWE-416
 Use After Free
CVE-2026-13283 2026-06-27 14:16 2026-06-26 Show GitHub Exploit DB Packet Storm
320 8.3 HIGH
Network
google chrome Integer overflow in Mojo in Google Chrome prior to 149.0.7827.201 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a malicious file. (Chr… New CWE-472
 External Control of Assumed-Immutable Web Parameter
CVE-2026-13281 2026-06-27 14:16 2026-06-26 Show GitHub Exploit DB Packet Storm