Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
132651 6.3 警告
Network
アルバネットワークス株式会社 AirWave Aruba AirWave Management Platform におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2021-26970 2021-11-4 17:11 2021-02-23 Show GitHub Exploit DB Packet Storm
132652 6.3 警告
Network
アルバネットワークス株式会社 AirWave Aruba AirWave Management Platform における脆弱性 CWE-noinfo
情報不足
CVE-2021-26971 2021-11-4 17:07 2021-02-23 Show GitHub Exploit DB Packet Storm
132653 6.1 警告
Network
Secomea GateManager ファームウェア Secomea GateManager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2020-29028 2021-11-4 16:59 2020-11-24 Show GitHub Exploit DB Packet Storm
132654 5.4 警告
Network
PEEL PEEL SHOPPING PEEL SHOPPING におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-27190 2021-11-4 16:49 2021-02-11 Show GitHub Exploit DB Packet Storm
132655 7.5 重要
Network
Debian
Privoxy Developers
Privoxy
Debian GNU/Linux
privoxy における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2021-20273 2021-11-4 16:27 2021-03-8 Show GitHub Exploit DB Packet Storm
132656 7.5 重要
Network
Privoxy Developers Privoxy privoxy における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2021-20274 2021-11-4 16:23 2021-03-8 Show GitHub Exploit DB Packet Storm
132657 7.5 重要
Network
Debian
Privoxy Developers
Privoxy
Debian GNU/Linux
privoxy におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2021-20275 2021-11-4 16:20 2021-03-8 Show GitHub Exploit DB Packet Storm
132658 2.7
Network
Fleet Device Management fleet Fleet におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2021-21296 2021-11-4 16:17 2021-02-4 Show GitHub Exploit DB Packet Storm
132659 6.1 警告
Network
phpGACL
OpenEMR
phpGACL
OpenEMR
phpGACL および OpenEMR におけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2020-13565 2021-11-4 16:17 2020-10-21 Show GitHub Exploit DB Packet Storm
132660 7.5 重要
Network
Issuer Issuer Issuer における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2020-24838 2021-11-4 16:17 2020-08-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
621 6.7 MEDIUM
Local
- - A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges … New CWE-122
Heap-based Buffer Overflow
CVE-2026-48914 2026-06-13 01:06 2026-06-12 Show GitHub Exploit DB Packet Storm
622 - - - A Missing Required Cryptographic Step vulnerability has been identified in Moxa's embedded Linux firmware for industrial computers and controllers. This vulnerability represents an incomplete remedia… New CWE-325
 Missing Required Cryptographic Step
CVE-2026-9266 2026-06-13 01:06 2026-06-12 Show GitHub Exploit DB Packet Storm
623 8.7 HIGH
Network
- - vm2 is an open source vm/sandbox for Node.js. Prior to version 3.11.4, Symbol.for override in setup-sandbox.js only intercepts 2 of 9 dangerous Node.js cross-realm symbols. Combined with the bridge's… New CWE-693
 Protection Mechanism Failure
CVE-2026-47135 2026-06-13 01:03 2026-06-13 Show GitHub Exploit DB Packet Storm
624 10.0 CRITICAL
Network
- - vm2 is an open source vm/sandbox for Node.js. Prior to version 3.11.4, the fix for GHSA-8hg8-63c5-gwmx (CVE-2023-37903) introduced a check in nodevm.js line 263 that blocks the combination nesting: t… New CWE-913
 Improper Control of Dynamically-Managed Code Resources
CVE-2026-47137 2026-06-13 01:03 2026-06-13 Show GitHub Exploit DB Packet Storm
625 8.6 HIGH
Network
- - vm2 is an open source vm/sandbox for Node.js. Prior to version 3.11.4, the BaseHandler.set trap in bridge.js (line 1231) ignores the receiver parameter and unconditionally writes to the host target o… New CWE-693
 Protection Mechanism Failure
CVE-2026-47209 2026-06-13 01:03 2026-06-13 Show GitHub Exploit DB Packet Storm
626 8.0 HIGH
Network
microsoft sharepoint_server Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. Update CWE-285
Improper Authorization
CVE-2026-47298 2026-06-13 01:00 2026-06-10 Show GitHub Exploit DB Packet Storm
627 8.8 HIGH
Network
- - The SSH service of CelloOS developed by Cellopoint has an Improper Access Control vulnerability, allowing authenticated remote attackers to bypass the enforced command restrictions and execute operat… New CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2026-12059 2026-06-13 01:00 2026-06-12 Show GitHub Exploit DB Packet Storm
628 6.5 MEDIUM
Network
- - Heptabase developed by Hepta Platforms has a Exposed Dangerous Method or Function vulnerability, allowing unauthenticated remote attackers to leverage social engineering techniques to trick a victim … New CWE-749
 Exposed Dangerous Method or Function
CVE-2026-12060 2026-06-13 01:00 2026-06-12 Show GitHub Exploit DB Packet Storm
629 4.9 MEDIUM
Network
- - The iVEC-IEI Virtualization Edge Computer developed by IEI Integration Corp has a Arbitrary File Read vulnerability, allowing privileged remote attackers to access files outside the intended director… New CWE-22
Path Traversal
CVE-2026-11844 2026-06-13 01:00 2026-06-12 Show GitHub Exploit DB Packet Storm
630 7.2 HIGH
Network
- - The iVEC-IEI Virtualization Edge Computer developed by IEI Integration Corp has a OS Command Injection vulnerability, allowing privileged remote attackers to inject arbitrary OS commands and execute … New CWE-78
OS Command 
CVE-2026-11845 2026-06-13 01:00 2026-06-12 Show GitHub Exploit DB Packet Storm