Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
131 5.9 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおける重要な情報を含むキャッシュの使用に関する脆弱性 New CWE-524
重要な情報を含むキャッシュの使用
CVE-2026-41841 2026-06-10 14:28 2026-06-9 Show GitHub Exploit DB Packet Storm
132 7.5 重要
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-41842 2026-06-10 14:28 2026-06-9 Show GitHub Exploit DB Packet Storm
133 5.9 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-41843 2026-06-10 14:28 2026-06-9 Show GitHub Exploit DB Packet Storm
134 7.5 重要
Network
VMware Spring Framework VMwareのSpring Frameworkにおける整数オーバーフローの脆弱性 New CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-41849 2026-06-10 14:28 2026-06-9 Show GitHub Exploit DB Packet Storm
135 7.5 重要
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるアルゴリズムの複雑さに関する脆弱性 New CWE-407
アルゴリズムの複雑性
CVE-2026-41850 2026-06-10 14:28 2026-06-9 Show GitHub Exploit DB Packet Storm
136 7.5 重要
Network
VMware Spring Framework VMwareのSpring Frameworkにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 New CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-41851 2026-06-10 14:27 2026-06-9 Show GitHub Exploit DB Packet Storm
137 9.1 緊急
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおける誤った領域へのリソースの漏えいに関する脆弱性 New CWE-668
誤った領域へのリソースの漏えい
CVE-2026-42535 2026-06-10 14:27 2026-06-8 Show GitHub Exploit DB Packet Storm
138 7.5 重要
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおけるヒープベースのバッファオーバーフローの脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-42536 2026-06-10 14:27 2026-06-8 Show GitHub Exploit DB Packet Storm
139 7.1 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 New CWE-noinfo
情報不足
CVE-2026-46150 2026-06-10 14:27 2026-05-28 Show GitHub Exploit DB Packet Storm
140 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける有効期限後のメモリの解放の欠如に関する脆弱性 New CWE-401
有効期限後のメモリの解放の欠如
CVE-2026-46151 2026-06-10 14:27 2026-05-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310471 - adobe acrobat_reader
acrobat
Integer overflow in CoolType.dll in Adobe Reader 8.2.3 and 9.3.3, and Acrobat 9.3.3, allows remote attackers to execute arbitrary code via a TrueType font with a large maxCompositePoints value in a M… CWE-189
Numeric Errors
CVE-2010-2862 2024-11-21 10:17 2010-08-6 Show GitHub Exploit DB Packet Storm
310472 - joachim_fritschi phpcas Cross-site scripting (XSS) vulnerability in phpCAS before 1.1.2, when proxy mode is enabled, allows remote attackers to inject arbitrary web script or HTML via a callback URL. CWE-79
Cross-site Scripting
CVE-2010-2796 2024-11-21 10:17 2010-08-6 Show GitHub Exploit DB Packet Storm
310473 - joachim_fritschi phpcas phpCAS before 1.1.2 allows remote authenticated users to hijack sessions via a query string containing a crafted ticket value. CWE-20
 Improper Input Validation 
CVE-2010-2795 2024-11-21 10:17 2010-08-6 Show GitHub Exploit DB Packet Storm
310474 - apache http_server mod_proxy in httpd in Apache HTTP Server 2.2.9, when running on Unix, does not close the backend connection if a timeout occurs when reading a response from a persistent connection, which allows remo… CWE-200
Information Exposure
CVE-2010-2791 2024-11-21 10:17 2010-08-6 Show GitHub Exploit DB Packet Storm
310475 - nalin_dahyabhai vte The vte_sequence_handler_window_manipulation function in vteseq.c in libvte (aka libvte9) in VTE 0.25.1 and earlier, as used in gnome-terminal, does not properly handle escape sequences, which allows… NVD-CWE-Other
CVE-2010-2713 2024-11-21 10:17 2010-08-6 Show GitHub Exploit DB Packet Storm
310476 - hp openview_network_node_manager Stack-based buffer overflow in webappmon.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via a long OvJavaLocale value in a cookie. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-2709 2024-11-21 10:17 2010-08-6 Show GitHub Exploit DB Packet Storm
310477 - avscripts av_arcade SQL injection vulnerability in AV Scripts AV Arcade 3 allows remote attackers to execute arbitrary SQL commands via the ava_code cookie to the "main page," related to index.php and the login task. CWE-89
SQL Injection
CVE-2010-2933 2024-11-21 10:17 2010-08-5 Show GitHub Exploit DB Packet Storm
310478 - barcodewiz barcode_activex_control Buffer overflow in BarCodeWiz BarCode 3.29 ActiveX control (BarcodeWiz.dll) allows remote attackers to execute arbitrary code via a long argument to the LoadProperties method. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-2932 2024-11-21 10:17 2010-08-5 Show GitHub Exploit DB Packet Storm
310479 - topazsystems sigplus_pro_activex_control Stack-based buffer overflow in SigPlus Pro 3.74 ActiveX control allows remote attackers to execute arbitrary code via a long eighth argument (HexString) to the LCDWriteString method. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-2931 2024-11-21 10:17 2010-08-5 Show GitHub Exploit DB Packet Storm
310480 - zabbix zabbix Multiple cross-site scripting (XSS) vulnerabilities in the formatQuery function in frontends/php/include/classes/class.curl.php in Zabbix before 1.8.3rc1 allow remote attackers to inject arbitrary we… CWE-79
Cross-site Scripting
CVE-2010-2790 2024-11-21 10:17 2010-08-5 Show GitHub Exploit DB Packet Storm