Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
131891 7.5 重要
Network
Ruby-lang.org
Fedora Project
Ruby
REXML
Fedora
Ruby 用 REXML gem における XML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2021-28965 2021-12-22 15:21 2021-04-5 Show GitHub Exploit DB Packet Storm
131892 9.8 緊急
Network
TOBESOFT.CO.LTD Xplatform XPlatform における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2020-7857 2021-12-22 15:21 2020-01-22 Show GitHub Exploit DB Packet Storm
131893 6.1 警告
Network
XWiki xwiki XWiki プラットフォームにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-29459 2021-12-22 15:21 2021-04-20 Show GitHub Exploit DB Packet Storm
131894 9.1 緊急
Network
- Dell PowerScale OneFS における暗号強度に関する脆弱性 CWE-326
不適切な暗号強度
CVE-2020-26197 2021-12-22 15:21 2020-09-30 Show GitHub Exploit DB Packet Storm
131895 5.5 警告
Local
Exiv2 project
Fedora Project
Exiv2
Fedora
Exiv2 における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2021-29458 2021-12-22 15:04 2021-04-9 Show GitHub Exploit DB Packet Storm
131896 7.8 重要
Local
Debian
Exiv2 project
Fedora Project
Exiv2
Debian GNU/Linux
Fedora
Exiv2 におけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2021-29457 2021-12-22 15:04 2021-04-8 Show GitHub Exploit DB Packet Storm
131897 8.1 重要
Network
Anuko Time Tracker Anuko Time Tracker におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2021-29436 2021-12-22 15:04 2021-04-12 Show GitHub Exploit DB Packet Storm
131898 9.8 緊急
Network
Apache Software Foundation Apache Solr Apache Solr におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2021-27905 2021-12-22 15:04 2021-04-13 Show GitHub Exploit DB Packet Storm
131899 6.3 警告
Network
Matrix
Fedora Project
Synapse
Fedora
Synapse におけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2021-21392 2021-12-22 15:04 2021-02-3 Show GitHub Exploit DB Packet Storm
131900 7.8 重要
Local
Google Android Android における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2021-25365 2021-12-22 15:04 2021-04-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1141 6.5 MEDIUM
Adjacent
- - Remote Keyless Entry System (RKES), using the 433 MHz key fob bearing FCC ID CWTR53R0 manufactured by ALPS ALPINE CO., LTD., is vulnerable to a roll-back attack against its rolling-code authenticatio… CWE-294
Authentication Bypass by Capture-replay 
CVE-2026-49319 2026-06-26 16:16 2026-06-26 Show GitHub Exploit DB Packet Storm
1142 8.8 HIGH
Network
quest netvault_backup Quest NetVault Backup NVBULogDaemon Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Quest NetV… CWE-78
OS Command 
CVE-2026-9787 2026-06-26 14:16 2026-06-25 Show GitHub Exploit DB Packet Storm
1143 8.8 HIGH
Network
quest netvault_backup Quest NetVault Backup NVBUDashboard SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Quest NetVault… CWE-89
SQL Injection
CVE-2026-9786 2026-06-26 14:16 2026-06-25 Show GitHub Exploit DB Packet Storm
1144 8.8 HIGH
Network
quest netvault_backup Quest NetVault Backup NVBULibrarySlot SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Quest NetVau… CWE-89
SQL Injection
CVE-2026-9785 2026-06-26 14:16 2026-06-25 Show GitHub Exploit DB Packet Storm
1145 8.8 HIGH
Network
quest netvault_backup Quest NetVault Backup NVBULibraryPort SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Quest NetVau… CWE-89
SQL Injection
CVE-2026-9784 2026-06-26 14:16 2026-06-25 Show GitHub Exploit DB Packet Storm
1146 8.8 HIGH
Network
quest netvault_backup Quest NetVault Backup NVBURemovableMedia SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Quest Net… CWE-89
SQL Injection
CVE-2026-9783 2026-06-26 14:16 2026-06-25 Show GitHub Exploit DB Packet Storm
1147 8.8 HIGH
Network
quest netvault_backup Quest NetVault Backup NVBUDeviceDrive SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Quest NetVau… CWE-89
SQL Injection
CVE-2026-9782 2026-06-26 14:16 2026-06-25 Show GitHub Exploit DB Packet Storm
1148 8.8 HIGH
Network
- - Unraid Web Server FileUpload Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Unraid. Authentic… CWE-78
OS Command 
CVE-2026-9772 2026-06-26 14:16 2026-06-25 Show GitHub Exploit DB Packet Storm
1149 - - - A potential security vulnerability has been identified in the HP Accessory WMI Provider installer for some HP Docking Stations, which might allow escalation of privilege and/or arbitrary code executi… CWE-379
 Creation of Temporary File in Directory with Incorrect Permissions
CVE-2026-7539 2026-06-26 14:16 2026-06-25 Show GitHub Exploit DB Packet Storm
1150 7.4 HIGH
Local
- - sys/kern/sysv_sem.c in OpenBSD through 7.9 has a use-after-free allowing local privilege escalation to root. This is a context switch use-after-free after tsleep in sys_semget(). CWE-416
 Use After Free
CVE-2026-57589 2026-06-26 14:16 2026-06-25 Show GitHub Exploit DB Packet Storm