Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
132841 6.7 警告
Network
Okta, Inc. Okta Access Gateway Okta Access Gateway における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2021-28113 2021-12-8 12:07 2021-04-2 Show GitHub Exploit DB Packet Storm
132842 6.5 警告
Network
Wire Swiss GmbH wire-webapp wire-webapp における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2021-21400 2021-12-8 12:07 2021-03-15 Show GitHub Exploit DB Packet Storm
132843 7.3 重要
Network
uu_od project uu_od Rust 用 uu_od crate における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2021-29934 2021-12-8 12:04 2021-02-17 Show GitHub Exploit DB Packet Storm
132844 7.3 重要
Network
rocket project rocket Rust 用 rocket crate における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2021-29935 2021-12-8 12:00 2021-02-9 Show GitHub Exploit DB Packet Storm
132845 9.8 緊急
Network
adtensor project adtensor Rust 用 adtensor crate における初期化されていないリソースの使用に関する脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2021-29936 2021-12-8 11:49 2021-01-11 Show GitHub Exploit DB Packet Storm
132846 9.8 緊急
Network
telemetry project telemetry Rust 用 telemetry crate における脆弱性 CWE-noinfo
情報不足
CVE-2021-29937 2021-12-8 11:45 2021-02-17 Show GitHub Exploit DB Packet Storm
132847 7.5 重要
Network
slice-deque project slice-deque Rust 用 slice-deque crate における二重解放に関する脆弱性 CWE-415
二重解放
CVE-2021-29938 2021-12-8 11:35 2021-02-19 Show GitHub Exploit DB Packet Storm
132848 5.5 警告
Network
oauth2_proxy project oauth2_proxy OAuth2-Proxy における不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2021-21411 2021-12-8 11:32 2021-03-26 Show GitHub Exploit DB Packet Storm
132849 5.5 警告
Local
WiZ Connected Lighting Co., Ltd. WiZ Colors A60 ファームウェア WiZ Colors A60 における重要な情報の平文保存に関する脆弱性 CWE-312
重要な情報の平文保存
CVE-2020-11924 2021-12-8 11:32 2020-09-10 Show GitHub Exploit DB Packet Storm
132850 5.5 警告
Local
WiZ Connected Lighting Co., Ltd. WiZ Colors A60 ファームウェア WiZ Colors A60 における重要な情報の平文保存に関する脆弱性 CWE-312
重要な情報の平文保存
CVE-2020-11923 2021-12-8 11:32 2020-09-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1601 - - - A Reflected Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the dashboard-view component. CWE-79
Cross-site Scripting
CVE-2026-50701 2026-06-25 23:04 2026-06-25 Show GitHub Exploit DB Packet Storm
1602 - - - A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the Desk desktop icon renderer. CWE-79
Cross-site Scripting
CVE-2026-50703 2026-06-25 23:04 2026-06-25 Show GitHub Exploit DB Packet Storm
1603 - - - A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the File View breadcrumb renderer. CWE-79
Cross-site Scripting
CVE-2026-50704 2026-06-25 23:04 2026-06-25 Show GitHub Exploit DB Packet Storm
1604 - - - A Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of untrusted input in the Form Dashboard headline renderer. CWE-79
Cross-site Scripting
CVE-2026-50705 2026-06-25 23:04 2026-06-25 Show GitHub Exploit DB Packet Storm
1605 - - - A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the MultiSelectDialog component. CWE-79
Cross-site Scripting
CVE-2026-50708 2026-06-25 23:04 2026-06-25 Show GitHub Exploit DB Packet Storm
1606 - - - A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the Notifications > Events panel. CWE-79
Cross-site Scripting
CVE-2026-50709 2026-06-25 23:04 2026-06-25 Show GitHub Exploit DB Packet Storm
1607 - - - A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to unsafe evaluation of user-controlled data in the Number Card component. CWE-79
Cross-site Scripting
CVE-2026-50710 2026-06-25 23:04 2026-06-25 Show GitHub Exploit DB Packet Storm
1608 - - - A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the Number Card component. CWE-79
Cross-site Scripting
CVE-2026-50711 2026-06-25 23:04 2026-06-25 Show GitHub Exploit DB Packet Storm
1609 - - - A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the frappe.ui.Tree component CWE-79
Cross-site Scripting
CVE-2026-50712 2026-06-25 23:04 2026-06-25 Show GitHub Exploit DB Packet Storm
1610 8.7 HIGH
Network
- - Capgo before 12.128.2 contains a cross-domain SSO account takeover vulnerability in the provision-user endpoint that allows attackers to merge arbitrary victim accounts based on email match without v… CWE-287
Improper Authentication
CVE-2026-56223 2026-06-25 23:03 2026-06-24 Show GitHub Exploit DB Packet Storm