Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 10:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
132291 6.5 警告
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla Firefox ESR
Firefox および Thunderbird におけるスプーフィングによる認証回避に関する脆弱性 CWE-290
スプーフィングによる認証回避
CVE-2021-23984 2021-12-6 15:25 2021-03-23 Show GitHub Exploit DB Packet Storm
132292 6.5 警告
Network
Mozilla Foundation Mozilla Firefox Firefox におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2021-23983 2021-12-6 15:24 2021-03-23 Show GitHub Exploit DB Packet Storm
132293 6.5 警告
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla Firefox ESR
Firefox および Thunderbird における暗号強度に関する脆弱性 CWE-326
不適切な暗号強度
CVE-2021-23982 2021-12-6 15:24 2021-03-23 Show GitHub Exploit DB Packet Storm
132294 8.1 重要
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla Firefox ESR
Firefox および Thunderbird におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2021-23981 2021-12-6 15:23 2021-03-23 Show GitHub Exploit DB Packet Storm
132295 7.5 重要
Network
PbootCMS PbootCMS PbootCMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2021-28245 2021-12-6 15:21 2021-03-9 Show GitHub Exploit DB Packet Storm
132296 8.3 重要
Adjacent
ジョンソンコントロールズ Kantech EntraPass Sensormatic Electronics 製 Entrapass における情報漏えいの脆弱性 CWE-200
情報漏えい
CVE-2021-36198 2021-12-6 14:46 2021-12-3 Show GitHub Exploit DB Packet Storm
132297 3.8
Local
Schneider Electric Schneider Electric Software Update Schneider Electric 製 Schneider Electric Software Update におけるエントロピー不足の脆弱性 CWE-331
エントロピー不足
CVE-2021-22799 2021-12-6 14:36 2021-12-3 Show GitHub Exploit DB Packet Storm
132298 8.8 重要
Adjacent
ネットギア EX7500 ファームウェア
R6250 ファームウェア
D8500 ファームウェア
EX7000 ファームウェア
DC112A ファームウェア
D7000 ファームウェア
D6200 ファームウェア
D6400 ファームウェア
R6400 ファームウェア
NETGEAR R6400 および R6700 ファームウェアにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2021-27239 2021-12-6 14:23 2021-01-21 Show GitHub Exploit DB Packet Storm
132299 6.5 警告
Adjacent
アルバネットワークス株式会社 Aruba Instant Aruba Instant Access Point における脆弱性 CWE-noinfo
情報不足
CVE-2021-25145 2021-12-6 13:48 2021-03-9 Show GitHub Exploit DB Packet Storm
132300 8.1 重要
Network
アルバネットワークス株式会社 Aruba Instant Aruba Instant Access Point における脆弱性 CWE-noinfo
情報不足
CVE-2021-25148 2021-12-6 12:21 2021-03-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1241 5.5 MEDIUM
Local
nsa ghidra Ghidra before 12.0.3 contains an out-of-memory vulnerability in the rust_demangle function that allocates unbounded output buffers without size limits. Attackers can craft malicious Rust symbol names… CWE-789
 Memory Allocation with Excessive Size Value
CVE-2026-52753 2026-06-12 04:52 2026-06-10 Show GitHub Exploit DB Packet Storm
1242 5.7 MEDIUM
Adjacent
microsoft windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2022
windows_server_2025
Incorrect calculation of buffer size in Windows TCP/IP allows an authorized attacker to deny service over an adjacent network. CWE-131
Incorrect Calculation of Buffer Size
CVE-2026-42915 2026-06-12 04:52 2026-06-10 Show GitHub Exploit DB Packet Storm
1243 7.8 HIGH
Local
nsa ghidra Ghidra before 12.0.2 contains a path traversal vulnerability in the extension installer that fails to validate ZIP entry names during extraction. Attackers can craft malicious extensions with travers… CWE-22
Path Traversal
CVE-2026-52752 2026-06-12 04:52 2026-06-10 Show GitHub Exploit DB Packet Storm
1244 8.8 HIGH
Network
nsa ghidra Ghidra before 12.1 contains an unsafe deserialization vulnerability in client-side Shared-Project RMI connection code that allows unauthenticated remote code execution. Attackers can craft a maliciou… CWE-502
 Deserialization of Untrusted Data
CVE-2026-52751 2026-06-12 04:51 2026-06-10 Show GitHub Exploit DB Packet Storm
1245 5.3 MEDIUM
Network
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Windows Kerberos Denial of Service Vulnerability CWE-125
Out-of-bounds Read
CVE-2026-42914 2026-06-12 04:51 2026-06-10 Show GitHub Exploit DB Packet Storm
1246 7.8 HIGH
Local
nsa ghidra Ghidra before 12.1 contains a command injection vulnerability in URL annotation handling on Windows where cmd.exe metacharacters are not properly escaped. Attackers can execute arbitrary commands und… CWE-88
Argument Injection
CVE-2026-52750 2026-06-12 04:51 2026-06-10 Show GitHub Exploit DB Packet Storm
1247 8.8 HIGH
Network
nsa ghidra Ghidra 11.0 before 12.1 contains a SQL injection vulnerability in the changePassword() method of PostgresFunctionDatabase that fails to escape double quotes in usernames interpolated into ALTER ROLE … CWE-89
SQL Injection
CVE-2026-49498 2026-06-12 04:50 2026-06-10 Show GitHub Exploit DB Packet Storm
1248 3.3 LOW
Local
nsa ghidra Ghidra before 12.1 contains a path traversal vulnerability in SameDirDebugInfoProvider that fails to validate filenames from ELF binary .gnu_debuglink sections before constructing file paths. Attacke… CWE-22
Path Traversal
CVE-2026-49497 2026-06-12 04:50 2026-06-10 Show GitHub Exploit DB Packet Storm
1249 6.1 MEDIUM
Local
nsa ghidra Ghidra before 12.1 contains a heap-use-after-free vulnerability in SleighBuilder::generatePointerAdd caused by iterator invalidation when PcodeCacher::allocateInstruction reallocates the issued vecto… CWE-416
 Use After Free
CVE-2026-49496 2026-06-12 04:50 2026-06-10 Show GitHub Exploit DB Packet Storm
1250 5.5 MEDIUM
Local
nsa ghidra Ghidra 10.2 before 12.1 contains an uncontrolled resource consumption vulnerability in ExportTrie.parseTrie() that lacks cycle detection when traversing Mach-O binary export tries. A crafted Mach-O b… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-49495 2026-06-12 04:49 2026-06-10 Show GitHub Exploit DB Packet Storm