Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 12:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
132991 7.8 重要
Local
Linux Linux Kernel Linux Kernel の net/xfrm/xfrm_user.c の xfrm_replay_verify_len 関数における root 権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-7184 2021-10-15 16:14 2017-03-29 Show GitHub Exploit DB Packet Storm
132992 5.4 警告
Network
Flarum Flarum Sticky Flarum Sticky 拡張におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-21283 2021-10-15 16:14 2021-01-26 Show GitHub Exploit DB Packet Storm
132993 7.1 重要
Local
NVIDIA Linux for Tegra 複数の NVIDIA Jetson 製品における脆弱性 CWE-Other
その他
CVE-2021-1070 2021-10-15 16:06 2021-01-25 Show GitHub Exploit DB Packet Storm
132994 5.5 警告
Local
NVIDIA Linux for Tegra 複数の NVIDIA Jetson 製品の Tegra カーネルにおける脆弱性 CWE-Other
その他
CVE-2021-1071 2021-10-15 16:00 2021-01-25 Show GitHub Exploit DB Packet Storm
132995 8.6 重要
Network
decal project decal decal における脆弱性 CWE-Other
その他
CVE-2020-28450 2021-10-15 15:54 2020-12-14 Show GitHub Exploit DB Packet Storm
132996 8.6 重要
Network
decal project decal decal における脆弱性 CWE-Other
その他
CVE-2020-28449 2021-10-15 15:54 2020-12-14 Show GitHub Exploit DB Packet Storm
132997 5.4 警告
Network
SquaredUp SquaredUp SquaredUp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2020-9390 2021-10-15 15:54 2020-02-25 Show GitHub Exploit DB Packet Storm
132998 5.9 警告
Network
SquaredUp SquaredUp SquaredUp におけるセキュリティ関連の処理に対するレスポンスの違いに起因する情報漏えいに関する脆弱性 CWE-203
セキュリティ関連の処理に対するレスポンスの違いに起因する情報漏えい
CVE-2020-9389 2021-10-15 15:54 2020-02-25 Show GitHub Exploit DB Packet Storm
132999 6.5 警告
Network
HCL Software OneTest Performance HCL OneTest Performance におけるセッション期限に関する脆弱性 CWE-613
不適切なセッション期限
CVE-2020-14247 2021-10-15 15:53 2020-06-17 Show GitHub Exploit DB Packet Storm
133000 7.5 重要
Network
HCL Software OneTest Performance HCL OneTest Performance における暗号アルゴリズムの使用に関する脆弱性 CWE-327
不完全、または危険な暗号アルゴリズムの使用
CVE-2020-14246 2021-10-15 15:53 2020-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
551 8.8 HIGH
Network
google chrome Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) Update CWE-416
 Use After Free
CVE-2026-10943 2026-06-10 04:02 2026-06-5 Show GitHub Exploit DB Packet Storm
552 8.8 HIGH
Network
google chrome Use after free in PDF in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code inside a sandbox via a crafted… Update CWE-416
 Use After Free
CVE-2026-10945 2026-06-10 04:01 2026-06-5 Show GitHub Exploit DB Packet Storm
553 4.7 MEDIUM
Network
google chrome Insufficient policy enforcement in FoldableAPIs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted H… Update CWE-20
 Improper Input Validation 
CVE-2026-11233 2026-06-10 03:58 2026-06-5 Show GitHub Exploit DB Packet Storm
554 4.3 MEDIUM
Network
google chrome Inappropriate implementation in Passwords in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low) Update CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-11294 2026-06-10 03:55 2026-06-5 Show GitHub Exploit DB Packet Storm
555 4.3 MEDIUM
Network
google chrome Inappropriate implementation in FoldableAPIs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML pag… Update CWE-693
 Protection Mechanism Failure
CVE-2026-11234 2026-06-10 03:54 2026-06-5 Show GitHub Exploit DB Packet Storm
556 7.5 HIGH
Network
google chrome Heap buffer overflow in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code inside a sandbox via a… Update CWE-122
Heap-based Buffer Overflow
CVE-2026-10946 2026-06-10 03:53 2026-06-5 Show GitHub Exploit DB Packet Storm
557 8.8 HIGH
Network
google chrome Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) Update CWE-416
 Use After Free
CVE-2026-10947 2026-06-10 03:53 2026-06-5 Show GitHub Exploit DB Packet Storm
558 8.8 HIGH
Network
google chrome Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) Update CWE-416
 Use After Free
CVE-2026-10948 2026-06-10 03:52 2026-06-5 Show GitHub Exploit DB Packet Storm
559 8.3 HIGH
Network
google chrome Heap buffer overflow in Video in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML pag… Update CWE-122
Heap-based Buffer Overflow
CVE-2026-10949 2026-06-10 03:52 2026-06-5 Show GitHub Exploit DB Packet Storm
560 8.8 HIGH
Network
google chrome Use after free in Actor in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) Update CWE-416
 Use After Free
CVE-2026-10954 2026-06-10 03:49 2026-06-5 Show GitHub Exploit DB Packet Storm