Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
132691 6.5 警告
Network
Google
Fedora Project
Google Chrome
Fedora
Google Chrome の Site isolation における同一生成元ポリシー違反に関する脆弱性 CWE-346
同一生成元ポリシー違反
CVE-2021-21175 2021-11-12 12:28 2021-03-2 Show GitHub Exploit DB Packet Storm
132692 6.5 警告
Network
Google
Fedora Project
Google Chrome
Fedora
Google Chrome のフルスクリーンモードにおける脆弱性 CWE-noinfo
情報不足
CVE-2021-21176 2021-11-12 12:21 2021-03-2 Show GitHub Exploit DB Packet Storm
132693 7.2 重要
Network
Netshield Corporation Nano 25 ファームウェア Netshield NANO 25 における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2021-3149 2021-11-12 12:20 2021-02-21 Show GitHub Exploit DB Packet Storm
132694 7.5 重要
Network
Acronis International GmbH Cyber Protect Acronis Cyber Protect における脆弱性 CWE-noinfo
情報不足
CVE-2020-35556 2021-11-12 12:20 2020-12-29 Show GitHub Exploit DB Packet Storm
132695 6.1 警告
Network
MantisBT Group MantisBT MantisBT におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2020-35571 2021-11-12 12:20 2020-12-17 Show GitHub Exploit DB Packet Storm
132696 6.1 警告
Network
Acronis International GmbH Cyber Protect Acronis Cyber Protect におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2020-35664 2021-11-12 12:20 2020-12-29 Show GitHub Exploit DB Packet Storm
132697 7.4 重要
Network
Django Software Foundation Channels Django Channels における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2020-35681 2021-11-12 12:20 2020-12-24 Show GitHub Exploit DB Packet Storm
132698 6.7 警告
Local
クアルコム PM6350 ファームウェア
AQT1000 ファームウェア
PM3003A ファームウェア
PM660 ファームウェア
PM6150A ファームウェア
PM456 ファームウェア
PM6250 ファームウェア
PM6150 ファームウェア
PM6125 ファ…
複数の Qualcomm 製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2020-11147 2021-11-12 12:20 2020-03-19 Show GitHub Exploit DB Packet Storm
132699 9.8 緊急
Network
クアルコム AQT1000 ファームウェア
PM3003A ファームウェア
APQ8017 ファームウェア
PM4125 ファームウェア
AR8035 ファームウェア
MSM8917 ファームウェア
PM439 ファームウェア
PM4250 ファームウェア
CSRB31024&nb…
複数の Qualcomm 製品における配列インデックスの検証に関する脆弱性 CWE-129
配列インデックスの不適切な検証
CVE-2020-11163 2021-11-12 12:20 2020-08-3 Show GitHub Exploit DB Packet Storm
132700 9.8 緊急
Network
クアルコム APQ8053 ファームウェア
APQ8060A ファームウェア
APQ8009W ファームウェア
APQ8056 ファームウェア
APQ8017 ファームウェア
APQ8009 ファームウェア
APQ8030 ファームウェア
APQ8037 ファームウェア
APQ80…
複数の Qualcomm 製品における古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2020-11170 2021-11-12 12:20 2020-08-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1221 - - - Idira Secrets Manager Self-Hosted versions 13.8.0 and lower exhibit improper access control within internal cluster endpoints. A remote, authenticated attacker possessing standard node-level credenti… CWE-284
Improper Access Control
CVE-2026-45178 2026-06-12 05:56 2026-06-12 Show GitHub Exploit DB Packet Storm
1222 7.6 HIGH
Network
- - An integer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base). In sasl_io_start_packet(), adding sizeof(uint32_t) to a crafted SASL packet length prefix of 0xFFFFFFFC… CWE-190
 Integer Overflow or Wraparound
CVE-2026-11774 2026-06-12 05:56 2026-06-12 Show GitHub Exploit DB Packet Storm
1223 6.5 MEDIUM
Network
- - An out-of-bounds write vulnerability was found in GStreamer's H.266/VVC PPS picture partition parser in gst-plugins-bad. In the multi-slice-in-tile processing of gst_h266_parser_parse_picture_partiti… CWE-787
 Out-of-bounds Write
CVE-2026-53701 2026-06-12 05:56 2026-06-12 Show GitHub Exploit DB Packet Storm
1224 6.5 MEDIUM
Network
- - A stack buffer overflow flaw was found in the GStreamer H.265 codec parser library (gst-plugins-bad). When parsing a buffering period SEI message, the parser uses an incorrect loop bound derived from… CWE-787
 Out-of-bounds Write
CVE-2026-53702 2026-06-12 05:56 2026-06-12 Show GitHub Exploit DB Packet Storm
1225 - - - Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within internal agent validation processes. A local attacker could potentially bypass built-in security c… CWE-295
Improper Certificate Validation 
CVE-2026-45175 2026-06-12 05:56 2026-06-12 Show GitHub Exploit DB Packet Storm
1226 - - - FPDI is a collection of PHP classes that facilitate reading pages from existing PDF documents and using them as templates in FPDF. Prior to version 2.6.7, an attacker can upload a small, malicious PD… CWE-400
CWE-770
 Uncontrolled Resource Consumption
 Allocation of Resources Without Limits or Throttling
CVE-2026-45802 2026-06-12 05:51 2026-06-12 Show GitHub Exploit DB Packet Storm
1227 5.3 MEDIUM
Network
- - CodexBar before 0.33.0 contains a credential forwarding vulnerability that allows network-adjacent attackers to intercept sensitive credentials by issuing cross-origin or HTTP-downgrade redirects to … CWE-522
 Insufficiently Protected Credentials
CVE-2026-49949 2026-06-12 05:50 2026-06-12 Show GitHub Exploit DB Packet Storm
1228 4.3 MEDIUM
Network
- - Summarize before 0.17.0 contains a resource exhaustion vulnerability that allows remote attackers to cause disk exhaustion by serving media responses that bypass the enforced size limit through missi… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-53781 2026-06-12 05:50 2026-06-12 Show GitHub Exploit DB Packet Storm
1229 7.4 HIGH
Network
- - Summarize before 0.17.0 contains a server-side request forgery vulnerability that allows attackers who control a podcast RSS feed to direct the host to fetch transcript content from loopback addresse… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-53782 2026-06-12 05:50 2026-06-12 Show GitHub Exploit DB Packet Storm
1230 9.1 CRITICAL
Network
- - Metrics::Any::Adapter::DogStatsd versions before 0.04 for Perl does not protect against metric injections. The statsd protocol (and extensions such as dogstatsd) allow mutiple metrics,separated by n… CWE-93
CRLF Injection
CVE-2026-50638 2026-06-12 05:16 2026-06-11 Show GitHub Exploit DB Packet Storm