Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
133741 7.8 重要
Local
Git Large File Storage project Git Large File Storage Git LFS における信頼できない検索パスに関する脆弱性 CWE-426
信頼性のない検索パス
CVE-2021-21237 2021-10-11 17:48 2021-01-14 Show GitHub Exploit DB Packet Storm
133742 8.1 重要
Network
マイクロフォーカス株式会社 Application Lifecycle Management Micro Focus Application Lifecycle Management 製品における XML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2021-22498 2021-10-11 17:29 2021-01-14 Show GitHub Exploit DB Packet Storm
133743 9.8 緊急
Network
カスペルスキー TinyCheck TinyCheck におけるハードコードされた認証情報の使用に関する脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2020-35929 2021-10-11 17:24 2020-12-18 Show GitHub Exploit DB Packet Storm
133744 5.3 警告
Network
Taylor Otwell Laravel Laravel におけるインジェクションに関する脆弱性 CWE-74
インジェクション
CVE-2021-21263 2021-10-11 17:17 2021-01-13 Show GitHub Exploit DB Packet Storm
133745 6.5 警告
Network
シスコシステムズ Cisco SD-WAN vManage Cisco SD-WAN vManage ソフトウェアにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2021-1259 2021-10-11 16:54 2021-01-20 Show GitHub Exploit DB Packet Storm
133746 7.8 重要
Local
シスコシステムズ Cisco SD-WAN vManage
Cisco SD-WAN ファームウェア
Cisco SD-WAN vBond Orchestrator
Cisco SD-WAN vSmart Controller ファームウェア
複数の Cisco SD-WAN 製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2021-1260 2021-10-11 16:38 2021-01-20 Show GitHub Exploit DB Packet Storm
133747 7.8 重要
Local
シスコシステムズ Cisco SD-WAN vManage
Cisco SD-WAN ファームウェア
Cisco SD-WAN vBond Orchestrator
Cisco SD-WAN vSmart Controller ファームウェア
複数の Cisco SD-WAN 製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2021-1261 2021-10-11 16:33 2021-01-20 Show GitHub Exploit DB Packet Storm
133748 7.8 重要
Local
シスコシステムズ Cisco SD-WAN vManage
Cisco SD-WAN ファームウェア
Cisco SD-WAN vBond Orchestrator
Cisco SD-WAN vSmart Controller ファームウェア
複数の Cisco SD-WAN 製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2021-1262 2021-10-11 16:21 2021-01-20 Show GitHub Exploit DB Packet Storm
133749 9.8 緊急
Network
freedesktop.org gst-plugins-bad gst-plugins-bad における古典的バッファオーバーフローの脆弱性 CWE-120
CWE-121
CVE-2021-3185 2021-10-11 16:19 2021-01-18 Show GitHub Exploit DB Packet Storm
133750 7.5 重要
Network
cPanel cPanel cPanel における脆弱性 CWE-Other
その他
CVE-2021-26267 2021-10-11 16:19 2021-01-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
11 6.5 MEDIUM
Network
redhat directory_server
389_directory_server
enterprise_linux
A flaw was found in 389 Directory Server. The SMD5 password storage plugin performs unsigned integer underflow when computing salt length from a crafted password hash shorter than 16 bytes, causing a… Update CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2026-11789 2026-06-13 03:30 2026-06-9 Show GitHub Exploit DB Packet Storm
12 4.9 MEDIUM
Network
redhat directory_server
389_directory_server
enterprise_linux
A flaw was found in 389 Directory Server. The PBKDF2-SHA256 password storage plugin does not enforce an upper bound on the iteration count extracted from stored password hashes. A privileged attacker… Update CWE-400
 Uncontrolled Resource Consumption
CVE-2026-11790 2026-06-13 03:21 2026-06-9 Show GitHub Exploit DB Packet Storm
13 5.3 MEDIUM
Network
- - Crypt::PBKDF2 versions before 0.261630 for Perl have a weak default algorithm and number of iterations. The default algorithm is HMAC-SHA1, which should only be used for legacy systems. These versi… New CWE-916
 Use of Password Hash With Insufficient Computational Effort
CVE-2026-9641 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
14 7.5 HIGH
Network
- - Crypt::PBKDF2 versions before 0.261630 for Perl generate insecure random values for salts. These versions use the built-in rand function, which is predictable and unsuitable for cryptography. New CWE-338
 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2026-9638 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
15 7.6 HIGH
Network
- - Cap-go prior to 12.128.2 contains an account takeover vulnerability in its email change mechanism that allows an attacker with temporary authenticated session access to change the registered email ad… New CWE-306
Missing Authentication for Critical Function
CVE-2026-53981 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
16 7.8 HIGH
Local
- - Insufficient Verification of Data Authenticity in Remote Control for Zoom Contact Center for Windows before version 7.0.0 may allow an authenticated user to enable an escalation of privilege via loca… New CWE-345
 Insufficient Verification of Data Authenticity
CVE-2026-53406 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
17 10.0 CRITICAL
Network
- - SimpleHelp versions 5.5.15 and prior and 6.0 pre-release versions contain an authentication bypass vulnerability in the OIDC authentication flow. When OIDC authentication is configured, identity toke… New CWE-347
 Improper Verification of Cryptographic Signature
CVE-2026-48558 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
18 8.0 HIGH
Network
- - MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27, 10.11.1 to before 10.11.18, 11.4.1 to before 11.4.12, 11.8.1 to before 11.8.8, and 12.3.1, a high… New CWE-78
OS Command 
CVE-2026-48165 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
19 8.0 HIGH
Network
- - MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27, 10.11.1 to before 10.11.18, 11.4.1 to before 11.4.12, 11.8.1 to before 11.8.8, and 12.3.1, during… New CWE-78
OS Command 
CVE-2026-48163 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm
20 7.8 HIGH
Local
- - Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. E… New CWE-787
 Out-of-bounds Write
CVE-2026-47965 2026-06-13 03:16 2026-06-13 Show GitHub Exploit DB Packet Storm