Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
133071 9.3 緊急
Network
Polr Project Polr Polr における不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2021-21276 2021-10-19 17:23 2021-01-29 Show GitHub Exploit DB Packet Storm
133072 3.3
Local
GNOME Project Evolution GNOME Evolution におけるデータの信頼性についての不十分な検証に関する脆弱性 CWE-345
データの信頼性についての不十分な検証
CVE-2021-3349 2021-10-19 17:23 2021-02-1 Show GitHub Exploit DB Packet Storm
133073 7.8 重要
Local
ヒューレット・パッカード・エンタープライズ HPE Cloudline CL3100 Gen10 Server ファームウェア
HPE Cloudline CL5200 Gen9 Server ファームウェア
HPE Cloudline CL5800 Gen10 Server フ…
複数の HPE Cloudline 製品における古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2021-25123 2021-10-19 17:23 2021-01-21 Show GitHub Exploit DB Packet Storm
133074 6.5 警告
Network
Tendermint Tendermint Tendermint Core におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2021-21271 2021-10-19 17:23 2021-01-19 Show GitHub Exploit DB Packet Storm
133075 8.8 重要
Network
easycms EasyCMS EasyCMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2020-24271 2021-10-19 17:17 2020-08-5 Show GitHub Exploit DB Packet Storm
133076 5 警告
Network
openHAB openHAB openHAB における XML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2021-21266 2021-10-19 17:10 2021-01-28 Show GitHub Exploit DB Packet Storm
133077 8.8 重要
Network
WWBN AVideo AVideo プラットフォームにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2021-21286 2021-10-19 17:07 2021-01-30 Show GitHub Exploit DB Packet Storm
133078 5.3 警告
Network
JetBrains YouTrack JetBrains YouTrack における不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2020-25208 2021-10-19 17:06 2020-09-9 Show GitHub Exploit DB Packet Storm
133079 6.5 警告
Network
SolarWinds Serv-U SolarWinds Serv-U におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2020-27994 2021-10-19 17:06 2020-12-21 Show GitHub Exploit DB Packet Storm
133080 9.8 緊急
Network
Zoho Corporation ManageEngine OpManager Zoho ManageEngine OpManager における脆弱性 CWE-noinfo
情報不足
CVE-2020-28653 2021-10-19 17:06 2020-11-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
551 7.9 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a security feature locally. New CWE-1329
 Reliance on Component That is Not Updateable
CVE-2026-48573 2026-06-11 02:15 2026-06-10 Show GitHub Exploit DB Packet Storm
552 6.8 MEDIUM
Physics
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack. New CWE-306
Missing Authentication for Critical Function
CVE-2026-50507 2026-06-11 01:33 2026-06-10 Show GitHub Exploit DB Packet Storm
553 6.5 MEDIUM
Network
- - Silverpeas through 6.4.6 mishandles the "Personal space" feature that is selected when no componentId is set. New CWE-36
 Absolute Path Traversal
CVE-2026-53698 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm
554 - - - Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Nomachine allows Argument Injection.This issue affects Nomachine: before 9.5.7, before 8.23.2. New CWE-88
Argument Injection
CVE-2026-53694 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm
555 - - - A stored cross-site scripting vulnerability existed in MISP BSimVis tag rendering code. Several client-side rendering paths interpolated tag names, collection names, entity identifiers, cluster names… New CWE-79
CWE-116
Cross-site Scripting
 Improper Encoding or Escaping of Output
CVE-2026-53693 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm
556 9.6 CRITICAL
Network
- - A flaw was found in migration-planner. The agent-API middleware processes JSON Web Tokens (JWTs) for authentication, but its UpdateSourceInventory and UpdateAgentStatus handlers fail to validate the … New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-53471 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm
557 5.3 MEDIUM
Network
- - Jenkins 2.567 and earlier, LTS 2.555.2 and earlier does not encrypt secrets from POST config.xml submissions before storing them in job configurations unencrypted in job config.xml files on the Jenki… New CWE-311
Missing Encryption of Sensitive Data
CVE-2026-53442 2026-06-11 01:17 2026-06-10 Show GitHub Exploit DB Packet Storm
558 4.3 MEDIUM
Network
- - Jenkins 2.567 and earlier, LTS 2.555.2 and earlier does not ensure that the "from" parameter in the "Delegate to servlet container" security realm is safe to redirect to after login, allowing attacke… New CWE-601
Open Redirect
CVE-2026-53440 2026-06-11 01:17 2026-06-10 Show GitHub Exploit DB Packet Storm
559 7.8 HIGH
Local
- - Ghidra before 12.0.4 contains a path traversal vulnerability in the theme import functionality that allows attackers to write files outside the intended theme directory. Attackers can craft malicious… New CWE-22
Path Traversal
CVE-2026-52755 2026-06-11 01:17 2026-06-10 Show GitHub Exploit DB Packet Storm
560 5.5 MEDIUM
Local
- - Ghidra before 12.0.3 contains an out-of-memory vulnerability in the rust_demangle function that allocates unbounded output buffers without size limits. Attackers can craft malicious Rust symbol names… New CWE-789
 Memory Allocation with Excessive Size Value
CVE-2026-52753 2026-06-11 01:17 2026-06-10 Show GitHub Exploit DB Packet Storm