Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
133041 9.8 緊急
Network
アルバネットワークス株式会社 AirWave Glass AirWave Glass における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2020-24639 2021-09-22 17:31 2020-08-25 Show GitHub Exploit DB Packet Storm
133042 7.2 重要
Network
アルバネットワークス株式会社 AirWave Glass AirWave Glass における脆弱性 CWE-noinfo
情報不足
CVE-2020-24638 2021-09-22 17:31 2020-08-25 Show GitHub Exploit DB Packet Storm
133043 6.1 警告
Network
ownCloud ownCloud ownCloud におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2020-16255 2021-09-22 17:31 2020-08-6 Show GitHub Exploit DB Packet Storm
133044 9.8 緊急
Network
Johan Eenfeldt Limit Login Attempts WordPress 用 Limit Login Attempts プラグインにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2012-10001 2021-09-22 17:07 2021-01-6 Show GitHub Exploit DB Packet Storm
133045 7.8 重要
Local
SoftMaker Office TextMaker 2021 SoftMaker Office 2021 TextMaker における数値型間の変換の誤りに関する脆弱性 CWE-681
CWE-787
CVE-2020-13545 2021-09-22 16:21 2020-10-8 Show GitHub Exploit DB Packet Storm
133046 5 警告
Local
Google Android Android における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2021-0322 2021-09-22 16:14 2021-01-4 Show GitHub Exploit DB Packet Storm
133047 5.5 警告
Local
Google Android Android における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2021-0321 2021-09-22 16:14 2021-01-4 Show GitHub Exploit DB Packet Storm
133048 4.7 警告
Local
Google Android Android における競合状態に関する脆弱性 CWE-362
競合状態
CVE-2021-0320 2021-09-22 16:14 2021-01-4 Show GitHub Exploit DB Packet Storm
133049 7.3 重要
Local
Google Android Android における不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2021-0319 2021-09-22 16:14 2021-01-4 Show GitHub Exploit DB Packet Storm
133050 7.8 重要
Local
Google Android Android における境界外書き込みに関する脆弱性 CWE-416
CWE-787
CVE-2021-0318 2021-09-22 16:14 2021-01-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
171 7.3 HIGH
Local
- - Graphite before 1.3.15 has an integer underflow and resultant out-of-bounds write via Graphite actions, because slotat does not ensure that an offset is within the allowed slot-map range. New CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2026-50593 2026-06-6 01:06 2026-06-5 Show GitHub Exploit DB Packet Storm
172 6.3 MEDIUM
Local
- - NAVTOR NavBox through version 4.16.1.20 contains hard-coded credentials within its Windows Communication Foundation (SOAP) implementation. If the SOAP functionality is enabled, a local attacker can e… New CWE-798
 Use of Hard-coded Credentials
CVE-2026-21404 2026-06-6 01:05 2026-06-5 Show GitHub Exploit DB Packet Storm
173 6.1 MEDIUM
Network
- - HCL Digital Experience Compose is affected by a reflected cross-site scripting (XSS) vulnerability in the search center.  An attacker could execute arbitrary JavaScript in the victim's browser. New CWE-79
Cross-site Scripting
CVE-2026-21825 2026-06-6 01:05 2026-06-5 Show GitHub Exploit DB Packet Storm
174 6.1 MEDIUM
Network
- - HCL Digital Experience and HCL Digital Experience Compose could be susceptible to Host header injection.  An attacker can manipulate the Host header and cause the application to behave in unexpected … New CWE-601
Open Redirect
CVE-2026-21826 2026-06-6 01:05 2026-06-5 Show GitHub Exploit DB Packet Storm
175 - - - HCL Digital Experience is affected by an OS command injection vulnerability in the Digital Asset Management API.  An attacker may execute arbitrary operating system commands, typically inheriting the… New CWE-78
OS Command 
CVE-2026-21837 2026-06-6 01:05 2026-06-5 Show GitHub Exploit DB Packet Storm
176 - - - A vulnerability in the JCE editor extension for Joomla allows the creation of new editor profiles for unauthenticated users, ultimately resulting in PHP code upload and execution. New CWE-284
Improper Access Control
CVE-2026-48907 2026-06-6 01:05 2026-06-5 Show GitHub Exploit DB Packet Storm
177 6.3 MEDIUM
Network
- - Cross Site Scripting (XSS) vulnerability in the "Task in Progress / Recent" page in Arket Globe Document Intelligence 5.0.0.559 due to improper sanitization of user input in text fields when creating… New CWE-79
Cross-site Scripting
CVE-2025-65640 2026-06-6 01:04 2026-06-5 Show GitHub Exploit DB Packet Storm
178 5.3 MEDIUM
Network
- - HelloTalk through 3.4.1 stores full-precision GPS coordinates even when the user had intended to share only a country or city. Furthermore, these coordinates are placed into a database on the client … New CWE-359
 Exposure of Private Personal Information to an Unauthorized Actor
CVE-2020-25900 2026-06-6 01:04 2026-06-6 Show GitHub Exploit DB Packet Storm
179 6.3 MEDIUM
Network
- - A security vulnerability has been detected in tittuvarghese CollegeManagementSystem 3e476335cfbfb9a049e09f474c7ec885f69a9df3/a38852979f7e27ae67b610dce5979500ef8ebe01. The impacted element is an unkno… New CWE-284
CWE-434
Improper Access Control
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-11333 2026-06-6 01:04 2026-06-6 Show GitHub Exploit DB Packet Storm
180 7.3 HIGH
Network
- - A vulnerability was detected in tittuvarghese CollegeManagementSystem 3e476335cfbfb9a049e09f474c7ec885f69a9df3/a38852979f7e27ae67b610dce5979500ef8ebe01. This affects an unknown function of the file d… New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11334 2026-06-6 01:04 2026-06-6 Show GitHub Exploit DB Packet Storm