Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
132411 9.8 緊急
Network
CASAP Automated Enrollment System project CASAP Automated Enrollment System CASAP Automated Enrollment System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2021-26201 2021-11-5 18:07 2021-01-21 Show GitHub Exploit DB Packet Storm
132412 9.8 緊急
Network
Library System project Library System Library System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2021-26200 2021-11-5 18:07 2021-01-21 Show GitHub Exploit DB Packet Storm
132413 5.5 警告
Local
Dekart Private Disk Dekart Private Disk における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2021-27203 2021-11-5 18:02 2021-02-16 Show GitHub Exploit DB Packet Storm
132414 8.8 重要
Network
Racom MIDGE ファームウェア Racom MIDGE ファームウェアにおける OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2021-20074 2021-11-5 18:02 2021-02-16 Show GitHub Exploit DB Packet Storm
132415 8.8 重要
Network
Racom MIDGE ファームウェア Racom MIDGE ファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2021-20073 2021-11-5 18:02 2021-02-16 Show GitHub Exploit DB Packet Storm
132416 7.2 重要
Network
Racom MIDGE ファームウェア Racom MIDGE ファームウェアにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2021-20072 2021-11-5 18:02 2021-02-16 Show GitHub Exploit DB Packet Storm
132417 5.3 警告
Network
Racom MIDGE ファームウェア Racom MIDGE ファームウェアにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2021-20067 2021-11-5 18:02 2021-02-16 Show GitHub Exploit DB Packet Storm
132418 5.6 警告
Network
JSDom JSDom JSDom における脆弱性 CWE-noinfo
情報不足
CVE-2021-20066 2021-11-5 18:02 2021-02-16 Show GitHub Exploit DB Packet Storm
132419 4.4 警告
Local
OPC Foundation UA .NET Standard OPC UA .NET Standard Stack における証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2020-29457 2021-11-5 18:02 2020-12-2 Show GitHub Exploit DB Packet Storm
132420 7.8 重要
Local
Apache Software Foundation
Sebastian Hildebrandt
Apache Cordova
systeminformation
systeminformation における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2021-21315 2021-11-5 18:02 2021-02-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221 4.9 MEDIUM
Network
redhat directory_server
389_directory_server
enterprise_linux
A flaw was found in 389 Directory Server. The PBKDF2-SHA256 password storage plugin does not enforce an upper bound on the iteration count extracted from stored password hashes. A privileged attacker… Update CWE-400
 Uncontrolled Resource Consumption
CVE-2026-11790 2026-06-13 03:21 2026-06-9 Show GitHub Exploit DB Packet Storm
222 7.5 HIGH
Network
- - Crypt::PBKDF2 versions before 0.261630 for Perl generate insecure random values for salts. These versions use the built-in rand function, which is predictable and unsuitable for cryptography. New CWE-338
 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2026-9638 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
223 7.6 HIGH
Network
- - Cap-go prior to 12.128.2 contains an account takeover vulnerability in its email change mechanism that allows an attacker with temporary authenticated session access to change the registered email ad… New CWE-306
Missing Authentication for Critical Function
CVE-2026-53981 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
224 7.8 HIGH
Local
- - Insufficient Verification of Data Authenticity in Remote Control for Zoom Contact Center for Windows before version 7.0.0 may allow an authenticated user to enable an escalation of privilege via loca… New CWE-345
 Insufficient Verification of Data Authenticity
CVE-2026-53406 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
225 10.0 CRITICAL
Network
- - SimpleHelp versions 5.5.15 and prior and 6.0 pre-release versions contain an authentication bypass vulnerability in the OIDC authentication flow. When OIDC authentication is configured, identity toke… New CWE-347
 Improper Verification of Cryptographic Signature
CVE-2026-48558 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
226 8.0 HIGH
Network
- - MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27, 10.11.1 to before 10.11.18, 11.4.1 to before 11.4.12, 11.8.1 to before 11.8.8, and 12.3.1, a high… New CWE-78
OS Command 
CVE-2026-48165 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
227 8.0 HIGH
Network
- - MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27, 10.11.1 to before 10.11.18, 11.4.1 to before 11.4.12, 11.8.1 to before 11.8.8, and 12.3.1, during… New CWE-78
OS Command 
CVE-2026-48163 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
228 7.8 HIGH
Local
- - Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. E… New CWE-787
 Out-of-bounds Write
CVE-2026-47965 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
229 - - - Typesense is a fast, typo-tolerant search engine. Prior to versions 29.1 and 30.2, there is a cache isolation issue affecting search requests that use both server-side search result caching and Scope… New CWE-524
 Use of Cache Containing Sensitive Information
CVE-2026-47225 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
230 5.4 MEDIUM
Network
- - NanaZip is the 7-Zip derivative intended for the modern Windows experience. From version 3.0.1000.0 to before version 6.0.1698.0, a heap out-of-bounds read exists in the Android Verified Boot (AVB) v… New CWE-125
CWE-191
Out-of-bounds Read
 Integer Underflow (Wrap or Wraparound)
CVE-2026-47222 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm