Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1381 5.5 警告
Local
ERLANG Erl Interface
Erlang/OTP
ERLANGのErl Interface等の複数製品におけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-49760 2026-06-16 13:40 2026-06-10 Show GitHub Exploit DB Packet Storm
1382 5.7 警告
Adjacent
nuxt nuxt/webpack-builder
nuxt/rspack-builder
Nuxtのnuxt/rspack-builder等の複数製品における危険なメソッドや機能の公開に関する脆弱性 CWE-749
危険なメソッドや機能の公開
CVE-2026-49993 2026-06-16 13:39 2026-06-12 Show GitHub Exploit DB Packet Storm
1383 9.8 緊急
Network
jmespath project jmespath JMESPathにおける複数の脆弱性 CWE-116
CWE-20
CWE-94
CVE-2026-54133 2026-06-16 13:39 2026-06-12 Show GitHub Exploit DB Packet Storm
1384 5.5 警告
Local
- アップルのmacOSにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2025-24165 2026-06-16 13:39 2026-06-11 Show GitHub Exploit DB Packet Storm
1385 5.5 警告
Local
- アップルのmacOSにおけるUNIX Symbolic Link のフォローに関する脆弱性 CWE-61
UNIX Symbolic Link のフォロー
CVE-2025-43278 2026-06-16 13:39 2026-06-11 Show GitHub Exploit DB Packet Storm
1386 5.5 警告
Local
- アップルのmacOSにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2025-46313 2026-06-16 13:39 2026-06-11 Show GitHub Exploit DB Packet Storm
1387 7.2 重要
Network
QNAP Systems QuTS hero QNAP SystemsのQuTS heroにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-62850 2026-06-16 13:39 2026-06-10 Show GitHub Exploit DB Packet Storm
1388 7.2 重要
Network
QNAP Systems QuTS hero
QNAP QTS
QNAP SystemsのQNAP QTS等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2025-66273 2026-06-16 13:39 2026-06-10 Show GitHub Exploit DB Packet Storm
1389 7.2 重要
Network
QNAP Systems QuTS hero
QNAP QTS
QNAP SystemsのQNAP QTS等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2025-66279 2026-06-16 13:39 2026-06-10 Show GitHub Exploit DB Packet Storm
1390 7.2 重要
Network
QNAP Systems QuTS hero
QNAP QTS
QNAP SystemsのQNAP QTS等の複数製品における複数の脆弱性 CWE-121
CWE-190
CVE-2025-66280 2026-06-16 13:39 2026-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 26, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
320831 - - - An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated attacker with admin privileges to achieve remote code execution. - CVE-2024-34785 2024-09-12 11:15 2024-09-12 Show GitHub Exploit DB Packet Storm
320832 - - - An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated attacker with admin privileges to achieve remote code execution. - CVE-2024-34783 2024-09-12 11:15 2024-09-12 Show GitHub Exploit DB Packet Storm
320833 - - - An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated attacker with admin privileges to achieve remote code execution. - CVE-2024-34779 2024-09-12 11:15 2024-09-12 Show GitHub Exploit DB Packet Storm
320834 - - - An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated attacker with admin privileges to achieve remote code execution. - CVE-2024-32848 2024-09-12 11:15 2024-09-12 Show GitHub Exploit DB Packet Storm
320835 - - - An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated attacker with admin privileges to achieve remote code execution. - CVE-2024-32846 2024-09-12 11:15 2024-09-12 Show GitHub Exploit DB Packet Storm
320836 - - - An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated attacker with admin privileges to achieve remote code execution. - CVE-2024-32845 2024-09-12 11:15 2024-09-12 Show GitHub Exploit DB Packet Storm
320837 - - - An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated attacker with admin privileges to achieve remote code execution. - CVE-2024-32843 2024-09-12 11:15 2024-09-12 Show GitHub Exploit DB Packet Storm
320838 - - - An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated attacker with admin privileges to achieve remote code execution. - CVE-2024-32842 2024-09-12 11:15 2024-09-12 Show GitHub Exploit DB Packet Storm
320839 - - - An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated attacker with admin privileges to achieve remote code execution. - CVE-2024-32840 2024-09-12 11:15 2024-09-12 Show GitHub Exploit DB Packet Storm
320840 - - - Deserialization of untrusted data in the agent portal of Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote unauthenticated attacker to achieve remote code execution. - CVE-2024-29847 2024-09-12 11:15 2024-09-12 Show GitHub Exploit DB Packet Storm