Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
132141 4.3 警告
Network
GitLab.org GitLab GitLab CE/EE におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2021-22202 2021-12-8 11:15 2021-04-2 Show GitHub Exploit DB Packet Storm
132142 6.5 警告
Network
GitLab.org GitLab GitLab CE/EE における脆弱性 CWE-noinfo
情報不足
CVE-2021-22201 2021-12-8 11:15 2021-04-2 Show GitHub Exploit DB Packet Storm
132143 7.5 重要
Network
GitLab.org GitLab GitLab CE/EE における脆弱性 CWE-noinfo
情報不足
CVE-2021-22200 2021-12-8 11:15 2021-04-2 Show GitHub Exploit DB Packet Storm
132144 4.3 警告
Network
GitLab.org GitLab GitLab CE/EE における脆弱性 CWE-noinfo
情報不足
CVE-2021-22198 2021-12-8 11:15 2021-04-2 Show GitHub Exploit DB Packet Storm
132145 4.3 警告
Network
GitLab.org GitLab GitLab CE/EE における無限ループに関する脆弱性 CWE-835
無限ループ
CVE-2021-22197 2021-12-8 11:15 2021-04-2 Show GitHub Exploit DB Packet Storm
132146 5.4 警告
Network
GitLab.org GitLab GitLab CE/EE におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-22196 2021-12-8 11:15 2021-04-2 Show GitHub Exploit DB Packet Storm
132147 6.4 警告
Local
レッドハット
SUSE
マイクロソフト
Debian
GNU Project
Canonical
Debian GNU/Linux
Microsoft Windows Server 2012
Red Hat Enterprise Linux Atomic Host
grub2
Microsoft Windows 10
Microsoft Win…
GRUB2 における競合状態に関する脆弱性 CWE-362
CWE-416
CVE-2020-15706 2021-12-8 11:14 2020-07-29 Show GitHub Exploit DB Packet Storm
132148 6.4 警告
Local
日立
レッドハット
SUSE
マイクロソフト
Debian
GNU Project
Canonical
Debian GNU/Linux
Microsoft Windows Server 2012
Red Hat Enterprise Linux Atomic Host
grub2
Microsoft Windows 10
Microsoft Win…
GRUB2 におけるデジタル署名の検証に関する脆弱性 CWE-347
デジタル署名の不適切な検証
CVE-2020-15705 2021-12-8 11:12 2020-07-29 Show GitHub Exploit DB Packet Storm
132149 7.5 重要
Local
Fedora Project
レッドハット
GNU Project
Fedora
Red Hat Enterprise Linux Server TUS
grub2
Red Hat Enterprise Linux
Red Hat Enterprise Linux Server AUS
Red …
grub2 における不完全なブラックリストに関する脆弱性 CWE-184
不完全なブラックリスト
CVE-2020-14372 2021-12-8 11:09 2020-08-27 Show GitHub Exploit DB Packet Storm
132150 6 警告
Local
GNU Project
レッドハット
Red Hat Enterprise Linux Server
grub2
Red Hat Enterprise Linux
grub2 における境界外書き込みに関する脆弱性 CWE-190
CWE-787
CVE-2020-14311 2021-12-8 11:07 2020-07-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
971 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit… CWE-416
 Use After Free
CVE-2026-47918 2026-06-13 04:21 2026-06-10 Show GitHub Exploit DB Packet Storm
972 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit… CWE-416
 Use After Free
CVE-2026-47917 2026-06-13 04:20 2026-06-10 Show GitHub Exploit DB Packet Storm
973 7.5 HIGH
Network
axios axios Axios is a promise based HTTP client for the browser and Node.js. Prior to 0.32.0 and 1.16.0, Axios’s Node.js HTTP adapter may forward a Proxy-Authorization header to a redirected origin during speci… CWE-201
 Insertion of Sensitive Information Into Sent Data
CVE-2026-44487 2026-06-13 04:19 2026-06-12 Show GitHub Exploit DB Packet Storm
974 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit… CWE-416
 Use After Free
CVE-2026-47916 2026-06-13 04:17 2026-06-10 Show GitHub Exploit DB Packet Storm
975 7.5 HIGH
Network
axios axios Axios is a promise based HTTP client for the browser and Node.js. Axios versions 1.7.0 through 1.15.x did not enforce configured request and response size limits when requests were sent with the fetc… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-44488 2026-06-13 04:04 2026-06-12 Show GitHub Exploit DB Packet Storm
976 8.1 HIGH
Network
apache cxf A further incomplete fix for a previous advisory CVE-2026-44417 (Untrusted JMS configuration can lead to RCE) for Apache CXF has been identified, which can allow code execution capabilities, if untru… CWE-20
NVD-CWE-noinfo
 Improper Input Validation 
CVE-2026-50632 2026-06-13 03:58 2026-06-12 Show GitHub Exploit DB Packet Storm
977 8.1 HIGH
Network
apache cxf A JNDI Injection vulnerability has been discovered in Apache CXF's JCA integration module, which can allow for code execution, if an attacker is able to manipulate the JCA deployment descriptor (ra.x… CWE-20
NVD-CWE-noinfo
 Improper Input Validation 
CVE-2026-50633 2026-06-13 03:53 2026-06-12 Show GitHub Exploit DB Packet Storm
978 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current u… CWE-122
Heap-based Buffer Overflow
CVE-2026-47952 2026-06-13 03:50 2026-06-10 Show GitHub Exploit DB Packet Storm
979 6.5 MEDIUM
Network
apache cxf A vulnerability in Apache CXF's JwsJsonContainerRequestFilter can be exploited to cause CXF to process metadata that was not authenticated by the accepted signature. This can bypass the application's… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2026-50634 2026-06-13 03:49 2026-06-12 Show GitHub Exploit DB Packet Storm
980 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit… CWE-416
 Use After Free
CVE-2026-47955 2026-06-13 03:49 2026-06-10 Show GitHub Exploit DB Packet Storm