Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
131811 6.5 警告
Network
ezxml project ezXML ezXML における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2021-30485 2021-12-14 16:00 2021-04-11 Show GitHub Exploit DB Packet Storm
131812 7.8 重要
Local
サムスン Samsung Account Samsung Account における不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2021-25381 2021-12-14 16:00 2021-04-9 Show GitHub Exploit DB Packet Storm
131813 3.3
Local
Google Android Samsung モバイルデバイスにおける不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2021-25359 2021-12-14 16:00 2021-04-9 Show GitHub Exploit DB Packet Storm
131814 3.3
Local
Google Android Samsung モバイルデバイスにおける不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2021-25358 2021-12-14 16:00 2021-04-9 Show GitHub Exploit DB Packet Storm
131815 9.8 緊急
Network
Google Android Samsung モバイルデバイスにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2021-25360 2021-12-14 16:00 2021-01-11 Show GitHub Exploit DB Packet Storm
131816 6.5 警告
Network
Cloud Foundry Foundation cf-deployment
CAPI-release
Cloud Controller API における認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2021-22115 2021-12-14 15:55 2021-03-30 Show GitHub Exploit DB Packet Storm
131817 9.8 緊急
Network
- Micro Focus Operations Bridge Manager における認証に関する脆弱性 CWE-287
不適切な認証
CVE-2021-22507 2021-12-14 15:54 2021-04-1 Show GitHub Exploit DB Packet Storm
131818 7.5 重要
Network
Aprelium Abyss Web Server X1 Aprelium Abyss Web Server X1 における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2021-3328 2021-12-14 15:54 2021-04-8 Show GitHub Exploit DB Packet Storm
131819 5.4 警告
Network
Lavalite Lavalite Lavalite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2020-28124 2021-12-14 15:47 2020-11-2 Show GitHub Exploit DB Packet Storm
131820 7.8 重要
Local
Dolby Laboratories, Inc. Dolby Audio X2 Dolby Audio X2 API サービスにおける信頼できない検索パスに関する脆弱性 CWE-426
信頼性のない検索パス
CVE-2021-3146 2021-12-14 15:44 2021-04-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
831 - - - The Wertheim SafeController Software, AssemblyVersion 6.15.8328.28014, contains missing authorization checks on multiple web application endpoints. An authenticated attacker with minimal privileges c… CWE-862
 Missing Authorization
CVE-2026-34024 2026-06-15 21:16 2026-06-15 Show GitHub Exploit DB Packet Storm
832 5.3 MEDIUM
Network
- - A flaw was found in Ansible Lightspeed. This vulnerability, related to insufficient session expiration, allows a remote attacker to maintain persistent access to the Ansible Lightspeed instance. If a… CWE-613
 Insufficient Session Expiration
CVE-2026-44188 2026-06-15 19:16 2026-06-15 Show GitHub Exploit DB Packet Storm
833 - - - Quick.CMS deserializes user-controlled data received over plaintext HTTP without ensuring integrity or authenticity. This allows attackers to tamper with serialized payloads in transit and inject mal… CWE-94
CWE-502
Code Injection
 Deserialization of Untrusted Data
CVE-2026-11860 2026-06-15 19:16 2026-06-15 Show GitHub Exploit DB Packet Storm
834 5.5 MEDIUM
Adjacent
- - A vulnerability was identified in Yealink SIP-T46U 108.86.0.118. Affected by this vulnerability is the function mod_webd.TFTPUploadIperf of the file /api/inner/tftpuploadiperf of the component Web Fa… CWE-74
CWE-77
Injection
Command Injection
CVE-2026-12223 2026-06-15 15:16 2026-06-15 Show GitHub Exploit DB Packet Storm
835 8.0 HIGH
Adjacent
- - A vulnerability was determined in Yealink SIP-T46U 108.86.0.118. Affected is the function mod_webd.BlueToothTest of the file /api/inner/bttest of the component Web FastCGI Service. Executing a manipu… CWE-119
CWE-121
Incorrect Access of Indexable Resource ('Range Error') 
Stack-based Buffer Overflow
CVE-2026-12222 2026-06-15 15:16 2026-06-15 Show GitHub Exploit DB Packet Storm
836 8.0 HIGH
Adjacent
- - A vulnerability was found in Yealink SIP-T46U 108.86.0.118. This impacts the function sprintf of the file /api/upgrade/upgrade of the component Firmware Chunk Upload Handler. Performing a manipulatio… CWE-119
CWE-121
Incorrect Access of Indexable Resource ('Range Error') 
Stack-based Buffer Overflow
CVE-2026-12221 2026-06-15 15:16 2026-06-15 Show GitHub Exploit DB Packet Storm
837 8.0 HIGH
Adjacent
- - A vulnerability has been found in Yealink SIP-T46U 108.86.0.118. This affects the function mod_upgrade.SparePartsUpload of the file /api/upgrade/accupgradebychunk of the component Firmware Chunk Uplo… CWE-119
CWE-121
Incorrect Access of Indexable Resource ('Range Error') 
Stack-based Buffer Overflow
CVE-2026-12220 2026-06-15 15:16 2026-06-15 Show GitHub Exploit DB Packet Storm
838 6.3 MEDIUM
Network
- - A flaw has been found in Yealink SIP-T46U 108.86.0.118. The impacted element is the function mod_diagnose.CommandShellByType of the file /api/diagnosis/start of the component Web FastCGI Service. Thi… CWE-74
CWE-77
Injection
Command Injection
CVE-2026-12219 2026-06-15 15:16 2026-06-15 Show GitHub Exploit DB Packet Storm
839 8.0 HIGH
Adjacent
- - A vulnerability was detected in Yealink SIP-T46U 108.87.50.1. The affected element is the function StartReportInformation of the file /api/inner/beforewifitest of the component Web FastCGI Service. T… CWE-119
CWE-121
Incorrect Access of Indexable Resource ('Range Error') 
Stack-based Buffer Overflow
CVE-2026-12218 2026-06-15 15:16 2026-06-15 Show GitHub Exploit DB Packet Storm
840 7.8 HIGH
Local
- - A security vulnerability has been detected in DVDFab Virtual Drive 2.0.0.5. Impacted is an unknown function in the library dvdfabio.sys of the component Signed Kernel Driver. The manipulation leads t… CWE-266
CWE-269
 Incorrect Privilege Assignment
 Improper Privilege Management
CVE-2026-12217 2026-06-15 13:16 2026-06-15 Show GitHub Exploit DB Packet Storm