Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
132341 8.8 重要
Network
Wazuh Inc. Wazuh Wazuh における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2021-26814 2021-11-15 16:13 2021-01-15 Show GitHub Exploit DB Packet Storm
132342 7.5 重要
Network
AfterLogic Aurora
WebMail Pro
AfterLogic Aurora および WebMail Pro におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2021-26294 2021-11-15 16:07 2021-03-6 Show GitHub Exploit DB Packet Storm
132343 7.5 重要
Network
NATS NATS Server nats-server における脆弱性 CWE-noinfo
情報不足
CVE-2020-28466 2021-11-15 16:01 2020-11-21 Show GitHub Exploit DB Packet Storm
132344 7.8 重要
Local
Doctor Web Dr.Web セキュリティスペース Dr.Web Security Space におけるデジタル署名の検証に関する脆弱性 CWE-347
デジタル署名の不適切な検証
CVE-2020-23967 2021-11-15 15:06 2020-07-7 Show GitHub Exploit DB Packet Storm
132345 8.8 重要
Network
Google
Fedora Project
Fedora
Google Chrome
Google Chrome の TabStrip における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2021-21159 2021-11-15 14:32 2021-03-2 Show GitHub Exploit DB Packet Storm
132346 8.8 重要
Network
Google
Fedora Project
Fedora
Google Chrome
Google Chrome の WebAudio における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2021-21160 2021-11-15 14:24 2021-03-2 Show GitHub Exploit DB Packet Storm
132347 8.2 重要
Network
Fedora Project
Apache Software Foundation
Apache Batik
Fedora
Apache Batik におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-20
CWE-918
CVE-2020-11987 2021-11-15 09:55 2020-04-21 Show GitHub Exploit DB Packet Storm
132348 8.2 重要
Network
Apache Software Foundation XML Graphics Commons Apache XmlGraphics Commons におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-20
CWE-918
CVE-2020-11988 2021-11-15 09:55 2020-04-21 Show GitHub Exploit DB Packet Storm
132349 8.6 重要
Network
シスコシステムズ Cisco Unified Computing System ソフトウェア
Cisco NX-OS
Cisco NX-OS ソフトウェアにおける有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2021-1387 2021-11-15 09:55 2021-02-24 Show GitHub Exploit DB Packet Storm
132350 8.8 重要
Adjacent
シスコシステムズ FX-OS
Cisco Unified Computing System ソフトウェア
Cisco NX-OS
Cisco FXOS ソフトウェアおよび Cisco NX-OS ソフトウェアにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2021-1368 2021-11-15 09:55 2021-02-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
441 6.1 MEDIUM
Network
umbraco umbraco_cms Umbraco is an ASP.NET CMS. Prior to versions 13.14.0 and 17.4.0, some of the Surface Controllers in the CMS provide to support member related operations fail to validate redirect URLs, making Razor t… CWE-601
Open Redirect
CVE-2026-46616 2026-06-13 04:34 2026-06-11 Show GitHub Exploit DB Packet Storm
442 8.8 HIGH
Network
apache ofbiz Improper Control of Generation of Code ('Code Injection') vulnerability in Apache OFBiz allows a low-privileged authenticated user with Content/DataResource editing privileges to perform template inj… CWE-94
Code Injection
CVE-2026-50223 2026-06-13 04:30 2026-06-11 Show GitHub Exploit DB Packet Storm
443 7.8 HIGH
Local
microsoft pc_manager Improper access control in Microsoft PC Manager allows an authorized attacker to bypass a security feature locally. CWE-284
Improper Access Control
CVE-2026-49161 2026-06-13 04:30 2026-06-10 Show GitHub Exploit DB Packet Storm
444 9.8 CRITICAL
Network
vmware spring_for_graphql Spring for GraphQL applications are vulnerable to Unsafe Deserialization when processing paginated GraphQL queries. An attacker can craft a malicious GraphQL request that can lead to Remote Code Exec… CWE-502
 Deserialization of Untrusted Data
CVE-2026-41699 2026-06-13 04:28 2026-06-11 Show GitHub Exploit DB Packet Storm
445 8.1 HIGH
Network
microsoft teams Improper neutralization of special elements in output used by a downstream component ('injection') in Microsoft Teams for Android allows an authorized attacker to disclose information over a network. CWE-74
Injection
CVE-2026-42835 2026-06-13 04:28 2026-06-10 Show GitHub Exploit DB Packet Storm
446 8.2 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the cu… CWE-427
 Uncontrolled Search Path Element
CVE-2026-47937 2026-06-13 04:23 2026-06-10 Show GitHub Exploit DB Packet Storm
447 5.5 MEDIUM
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this v… CWE-125
Out-of-bounds Read
CVE-2026-47926 2026-06-13 04:23 2026-06-10 Show GitHub Exploit DB Packet Storm
448 5.5 MEDIUM
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in an application denial-of-service. An attacker could… CWE-190
 Integer Overflow or Wraparound
CVE-2026-47925 2026-06-13 04:23 2026-06-10 Show GitHub Exploit DB Packet Storm
449 5.5 MEDIUM
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulner… CWE-416
 Use After Free
CVE-2026-47924 2026-06-13 04:23 2026-06-10 Show GitHub Exploit DB Packet Storm
450 7.8 HIGH
Local
microsoft powertoys Improper authorization in Microsoft PowerToys allows an authorized attacker to elevate privileges locally. CWE-285
Improper Authorization
CVE-2026-42902 2026-06-13 04:23 2026-06-10 Show GitHub Exploit DB Packet Storm