Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
131431 - - OpenSSL Project OpenSSL OpenSSL の libssl における X509_verify_cert() 内部エラーの不正な処理 - CVE-2021-4044 2021-12-17 14:27 2021-12-16 Show GitHub Exploit DB Packet Storm
131432 7.5 重要
Network
lisPBX project lisPBX Liberty lisPBX における不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2019-15059 2021-12-17 14:20 2019-08-14 Show GitHub Exploit DB Packet Storm
131433 3.1
Adjacent
NECプラットフォームズ株式会社 IP 多機能電話機 DT800 シリーズ(DT830)
保守者向け PC ツール データメンテナンスツール
IP 多機能電話機 DT900 シリーズ(DT930)
IP 多機能電話機 DT900 シリーズ(DT920)
IP 多機能電話機&nb…
UNIVERGE DT シリーズにおける重要なデータに対する暗号化の欠如の脆弱性 CWE-310
暗号の問題
CVE-2021-44746 2021-12-17 14:19 2021-12-17 Show GitHub Exploit DB Packet Storm
131434 9.1 緊急
Network
Inductive Automation
Thrive Themes
Rise
Pressive
Storied
Ignition
FocusBlog
Voice
Minus
Performag
Luxe
Squared
複数の Thrive Themes 製 WordPress 用 テーマにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2021-24220 2021-12-17 14:00 2021-03-24 Show GitHub Exploit DB Packet Storm
131435 5.3 警告
Network
Inductive Automation
Thrive Themes
Rise
Pressive
Storied
Ignition
FocusBlog
Voice
Minus
Performag
Luxe
Squared
複数の Thrive Themes 製 WordPress 用 プラグインおよびテーマにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2021-24219 2021-12-17 14:00 2021-03-24 Show GitHub Exploit DB Packet Storm
131436 9.8 緊急
Network
シーメンス APOGEE Modular Building Controller ファームウェア
Nucleus ReadyStart V3
Capital VSTAR
APOGEE PXC Modular ファームウェア
APOGEE Modular Equime…
複数のシーメンス製品における境界外読み取りに関する脆弱性 CWE-125
CWE-787
CVE-2021-31884 2021-12-17 13:54 2021-11-9 Show GitHub Exploit DB Packet Storm
131437 7.5 重要
Network
シーメンス APOGEE Modular Building Controller ファームウェア
Nucleus ReadyStart V3
Capital VSTAR
APOGEE PXC Modular ファームウェア
APOGEE Modular Equime…
複数のシーメンス製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2021-31883 2021-12-17 13:51 2021-11-9 Show GitHub Exploit DB Packet Storm
131438 6.1 警告
Network
Atlassian Data Center
JIRA
Jira Server および Data Center におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2020-36288 2021-12-17 13:49 2021-04-14 Show GitHub Exploit DB Packet Storm
131439 7.2 重要
Network
MDaemon Technologies MDaemon MDaemon における別領域リソースに対する外部からの制御可能な参照に関する脆弱性 CWE-610
別領域リソースに対する外部からの制御可能な参照
CVE-2021-27183 2021-12-17 13:49 2021-01-12 Show GitHub Exploit DB Packet Storm
131440 8.8 重要
Network
MDaemon Technologies MDaemon MDaemon におけるインジェクションに関する脆弱性 CWE-74
インジェクション
CVE-2021-27182 2021-12-17 13:49 2021-01-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201 - - - A denial-of-service vulnerability exists in the WebSocket API due to insufficient validation and handling of JSON-based requests. A low-privileged authenticated attacker can send a specially crafted … CWE-1287
 Improper Validation of Specified Type of Input
CVE-2026-10825 2026-06-17 00:26 2026-06-16 Show GitHub Exploit DB Packet Storm
202 - - - A format string vulnerability has been found in the "alias" parameter of the Serial Param configuration page in the NPort W2150A-W4/W2250A-W4 Series version 1.5 and prior. This vulnerability stems fr… CWE-134
Use of Externally-Controlled Format String
CVE-2026-10828 2026-06-17 00:26 2026-06-16 Show GitHub Exploit DB Packet Storm
203 - - - A stack-based buffer overflow vulnerability has been found in the NPort W2150A-W4/W2250A-W4 Series version 1.5 and earlier. This vulnerability stems from insufficient input validation of user-supplie… CWE-121
Stack-based Buffer Overflow
CVE-2026-10829 2026-06-17 00:26 2026-06-16 Show GitHub Exploit DB Packet Storm
204 - - - A security issue exists within 1769 CompactLogix controllers due to the missing validation of sequence numbers and source IP addresses in the CIP protocol. This allows attacker to abuse the exposed C… CWE-354
 Improper Validation of Integrity Check Value
CVE-2025-11694 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
205 - - - An authentication bypass security issue exists within FactoryTalk Historian Site Edition. By continually sending requests to the login endpoint, an attacker may obtain a valid authentication token. CWE-362
Race Condition
CVE-2025-13036 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
206 - - - A security issue was identified in Pavilion due to improper authorization enforcement in API endpoints. This vulnerability can allow an unauthorized actor to execute privileged operations, including … CWE-862
 Missing Authorization
CVE-2025-14272 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
207 - - - A denial-of-service security issue exists within the 1794-AENTR adapter due to improper memory handling of CIP protocol requests. This vulnerability can result in the adapter faulting and losing conn… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2026-0646 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
208 - - - An improper authentication security issue exists within the 1794-AENTR adapter's embedded web server. The vulnerability allows an unauthenticated attacker to change the device's web interface passwor… CWE-306
Missing Authentication for Critical Function
CVE-2026-0647 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
209 - - - A denial of service security issue exists in the affected product. The security issue stems from a fault occurring when a crafted CIP message is sent. Devices with less memory are more likely to be a… CWE-404
 Improper Resource Shutdown or Release
CVE-2026-11317 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
210 7.5 HIGH
Network
- - A command injection vulnerability was found in galaxy_ng. The do_git_checkout() function in the legacy role import API (v1) interpolates unsanitized git ref names (branch/tag names) into shell comman… CWE-78
OS Command 
CVE-2026-12398 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm