Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
131881 4.9 警告
Network
ASUSTeK Computer Inc. RS700-E9-RS4 ファームウェア
RS500A-E9-PS4 ファームウェア
RS700A-E9-RS4 ファームウェア
RS100-E10-PI2 ファームウェア
ASMB9-iKVM ファームウェア
RS300-E10-RS4 ファームウェア
RS700-E9-RS12 ファーム…
複数の ASUS 製品における古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2021-28200 2021-12-13 17:21 2021-04-6 Show GitHub Exploit DB Packet Storm
131882 5.3 警告
Network
Atlassian JIRA
Data Center
Jira Server および Data Center における不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2020-36287 2021-12-13 17:18 2021-04-8 Show GitHub Exploit DB Packet Storm
131883 8.8 重要
Network
Indio Networks Pvt. Ltd. UniBox U1000 ファームウェア
UniBox U5000 ファームウェア
UniBox U2500 ファームウェア
UniBox U50 ファームウェア
UniBox U500 ファームウェア
複数の Unibox 製品における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2020-21883 2021-12-13 17:01 2020-08-13 Show GitHub Exploit DB Packet Storm
131884 7.8 重要
Local
WECON Technology Co., Ltd. LeviStudioU WECON 製 LeviStudioU にスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2021-43983 2021-12-13 16:48 2021-12-10 Show GitHub Exploit DB Packet Storm
131885 8.8 重要
Network
Indio Networks Pvt. Ltd. UniBox U50 ファームウェア
UniBox U1000 ファームウェア
UniBox U500 ファームウェア
UniBox U5000 ファームウェア
UniBox U2500 ファームウェア
複数の UniBox 製品におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2020-21884 2021-12-13 16:36 2020-08-13 Show GitHub Exploit DB Packet Storm
131886 8.1 重要
Network
Hillrom Welch Allyn Vision Express
Welch Allyn X-Scribe Cardiac Stress Testing System
Welch Allyn R-Scribe Resting ECG System
We…
Hillrom 製 Welch Allyn Cardio 製品における代替パスまたはチャネルを利用した認証回避の脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2021-43935 2021-12-13 15:31 2021-12-10 Show GitHub Exploit DB Packet Storm
131887 5.4 警告
Network
Skyworth Digital Holdings Ltd. RN510 ファームウェア Skyworth Digital Technology RN510 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-25326 2021-12-13 15:29 2021-01-19 Show GitHub Exploit DB Packet Storm
131888 8.8 重要
Network
FFmpeg FFmpeg FFmpeg における古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2021-30123 2021-12-13 14:46 2021-04-7 Show GitHub Exploit DB Packet Storm
131889 6.5 警告
Network
Eclipse Foundation Eclipse Mosquitto Eclipse Mosquitto における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2021-28166 2021-12-13 14:46 2021-04-6 Show GitHub Exploit DB Packet Storm
131890 8.3 重要
Network
WCMS WCMS Wcms におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2020-24140 2021-12-13 14:46 2020-07-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
971 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit… CWE-416
 Use After Free
CVE-2026-47918 2026-06-13 04:21 2026-06-10 Show GitHub Exploit DB Packet Storm
972 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit… CWE-416
 Use After Free
CVE-2026-47917 2026-06-13 04:20 2026-06-10 Show GitHub Exploit DB Packet Storm
973 7.5 HIGH
Network
axios axios Axios is a promise based HTTP client for the browser and Node.js. Prior to 0.32.0 and 1.16.0, Axios’s Node.js HTTP adapter may forward a Proxy-Authorization header to a redirected origin during speci… CWE-201
 Insertion of Sensitive Information Into Sent Data
CVE-2026-44487 2026-06-13 04:19 2026-06-12 Show GitHub Exploit DB Packet Storm
974 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit… CWE-416
 Use After Free
CVE-2026-47916 2026-06-13 04:17 2026-06-10 Show GitHub Exploit DB Packet Storm
975 7.5 HIGH
Network
axios axios Axios is a promise based HTTP client for the browser and Node.js. Axios versions 1.7.0 through 1.15.x did not enforce configured request and response size limits when requests were sent with the fetc… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-44488 2026-06-13 04:04 2026-06-12 Show GitHub Exploit DB Packet Storm
976 8.1 HIGH
Network
apache cxf A further incomplete fix for a previous advisory CVE-2026-44417 (Untrusted JMS configuration can lead to RCE) for Apache CXF has been identified, which can allow code execution capabilities, if untru… CWE-20
NVD-CWE-noinfo
 Improper Input Validation 
CVE-2026-50632 2026-06-13 03:58 2026-06-12 Show GitHub Exploit DB Packet Storm
977 8.1 HIGH
Network
apache cxf A JNDI Injection vulnerability has been discovered in Apache CXF's JCA integration module, which can allow for code execution, if an attacker is able to manipulate the JCA deployment descriptor (ra.x… CWE-20
NVD-CWE-noinfo
 Improper Input Validation 
CVE-2026-50633 2026-06-13 03:53 2026-06-12 Show GitHub Exploit DB Packet Storm
978 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current u… CWE-122
Heap-based Buffer Overflow
CVE-2026-47952 2026-06-13 03:50 2026-06-10 Show GitHub Exploit DB Packet Storm
979 6.5 MEDIUM
Network
apache cxf A vulnerability in Apache CXF's JwsJsonContainerRequestFilter can be exploited to cause CXF to process metadata that was not authenticated by the accepted signature. This can bypass the application's… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2026-50634 2026-06-13 03:49 2026-06-12 Show GitHub Exploit DB Packet Storm
980 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit… CWE-416
 Use After Free
CVE-2026-47955 2026-06-13 03:49 2026-06-10 Show GitHub Exploit DB Packet Storm