Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
132571 7.8 重要
Local
Prusa3D PrusaSlicer Prusa Research PrusaSlicer における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2020-28596 2021-11-2 17:58 2020-12-14 Show GitHub Exploit DB Packet Storm
132572 7.8 重要
Local
SoftMaker SoftMaker Software GmbH SoftMaker Office PlanMaker 2021 SoftMaker Software GmbH SoftMaker Office PlanMaker 2021 における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2020-27250 2021-11-2 17:58 2020-11-30 Show GitHub Exploit DB Packet Storm
132573 8.8 重要
Network
accusoft imagegear Accusoft ImageGear における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2020-13585 2021-11-2 17:58 2020-11-17 Show GitHub Exploit DB Packet Storm
132574 7.5 重要
Network
Micrium uC-HTTP Micrium uC-HTTP における脆弱性 CWE-noinfo
情報不足
CVE-2020-13583 2021-11-2 17:58 2020-11-2 Show GitHub Exploit DB Packet Storm
132575 7.8 重要
Local
SoftMaker SoftMaker Software GmbH SoftMaker Office PlanMaker 2021 SoftMaker Software GmbH SoftMaker Office PlanMaker 2021 における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2020-13581 2021-11-2 17:58 2020-11-2 Show GitHub Exploit DB Packet Storm
132576 5.3 警告
Network
MB CONNECT LINE mymbCONNECT24
mbCONNECT24
MB CONNECT LINE 製 mymbCONNECT24 および mbCONNECT24 における誤って解決された名前や参照の使用に関する脆弱性 CWE-706
誤って解決された名前や参照の使用
CVE-2020-35566 2021-11-2 17:52 2020-07-16 Show GitHub Exploit DB Packet Storm
132577 7.8 重要
Local
アドビシステムズ Adobe Acrobat DC
Adobe Acrobat
Adobe Acrobat Reader DC
Adobe Reader および Acrobat における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2021-39839 2021-11-2 17:42 2021-09-14 Show GitHub Exploit DB Packet Storm
132578 7.8 重要
Local
アドビシステムズ Adobe Acrobat DC
Adobe Acrobat
Adobe Acrobat Reader DC
Adobe Reader および Acrobat における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2021-39838 2021-11-2 17:42 2021-09-14 Show GitHub Exploit DB Packet Storm
132579 7.8 重要
Local
アドビシステムズ Adobe Acrobat DC
Adobe Acrobat
Adobe Acrobat Reader DC
Adobe Reader および Acrobat における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2021-39837 2021-11-2 17:42 2021-09-14 Show GitHub Exploit DB Packet Storm
132580 7.8 重要
Local
アドビシステムズ Adobe Acrobat DC
Adobe Acrobat
Adobe Acrobat Reader DC
Adobe Reader および Acrobat における制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2021-35982 2021-11-2 17:42 2021-09-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
351 - - - FPDI is a collection of PHP classes that facilitate reading pages from existing PDF documents and using them as templates in FPDF. Prior to version 2.6.7, an attacker can upload a small, malicious PD… New CWE-400
CWE-770
 Uncontrolled Resource Consumption
 Allocation of Resources Without Limits or Throttling
CVE-2026-45802 2026-06-12 05:51 2026-06-12 Show GitHub Exploit DB Packet Storm
352 8.1 HIGH
Network
- - SolidInvoice is an open-source invoicing platform. Prior to version 2.3.17, API tokens used to authenticate all REST API requests are stored as plaintext strings in the api_tokens database table. Any… New CWE-312
 Cleartext Storage of Sensitive Information
CVE-2026-46622 2026-06-12 05:50 2026-06-12 Show GitHub Exploit DB Packet Storm
353 5.3 MEDIUM
Network
- - CodexBar before 0.33.0 contains a credential forwarding vulnerability that allows network-adjacent attackers to intercept sensitive credentials by issuing cross-origin or HTTP-downgrade redirects to … New CWE-522
 Insufficiently Protected Credentials
CVE-2026-49949 2026-06-12 05:50 2026-06-12 Show GitHub Exploit DB Packet Storm
354 9.4 CRITICAL
Network
- - Hermes WebUI before version 0.51.358 contains an improper access control vulnerability that allows unauthenticated remote attackers to hijack initial setup by submitting the _set_password parameter t… New CWE-306
Missing Authentication for Critical Function
CVE-2026-49973 2026-06-12 05:50 2026-06-12 Show GitHub Exploit DB Packet Storm
355 4.3 MEDIUM
Network
- - Summarize before 0.17.0 contains a resource exhaustion vulnerability that allows remote attackers to cause disk exhaustion by serving media responses that bypass the enforced size limit through missi… New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-53781 2026-06-12 05:50 2026-06-12 Show GitHub Exploit DB Packet Storm
356 7.4 HIGH
Network
- - Summarize before 0.17.0 contains a server-side request forgery vulnerability that allows attackers who control a podcast RSS feed to direct the host to fetch transcript content from loopback addresse… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-53782 2026-06-12 05:50 2026-06-12 Show GitHub Exploit DB Packet Storm
357 9.1 CRITICAL
Network
- - Metrics::Any::Adapter::DogStatsd versions before 0.04 for Perl does not protect against metric injections. The statsd protocol (and extensions such as dogstatsd) allow mutiple metrics,separated by n… New CWE-93
CRLF Injection
CVE-2026-50638 2026-06-12 05:16 2026-06-11 Show GitHub Exploit DB Packet Storm
358 8.2 HIGH
Network
- - Metrics::Any::Adapter::Statsd versions before 0.04 for Perl does not protect against metric injections. The statsd protocol (and extensions) allow mutiple metrics,separated by newlines, to be sent p… New CWE-93
CRLF Injection
CVE-2026-50637 2026-06-12 05:16 2026-06-11 Show GitHub Exploit DB Packet Storm
359 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… New - CVE-2026-12038 2026-06-12 05:16 2026-06-12 Show GitHub Exploit DB Packet Storm
360 4.0 MEDIUM
Local
nsa ghidra Ghidra before 11.2 contains a use after free vulnerability in the Sleigh backend caused by undefined static initialization order of the SleighArchitecture::translators and XmlArchitectureCapability s… New CWE-758
 Reliance on Undefined, Unspecified, or Implementation-Defined Behavior
CVE-2024-58350 2026-06-12 04:53 2026-06-10 Show GitHub Exploit DB Packet Storm