Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1661 3.1
Network
Django Software Foundation Django Django Software FoundationのDjangoにおける重要な情報を含むキャッシュの使用に関する脆弱性 CWE-524
重要な情報を含むキャッシュの使用
CVE-2026-35193 2026-06-8 12:31 2026-06-3 Show GitHub Exploit DB Packet Storm
1662 6.1 警告
Network
citeum opencti citeumのopenctiにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-35212 2026-06-8 12:31 2026-06-2 Show GitHub Exploit DB Packet Storm
1663 8.2 重要
Network
Mosaic5G Flexric Mosaic5GのFlexricにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-37234 2026-06-8 12:31 2026-06-1 Show GitHub Exploit DB Packet Storm
1664 7.8 重要
Local
radare radare2 radareのradare2におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-40527 2026-06-8 12:31 2026-04-17 Show GitHub Exploit DB Packet Storm
1665 7.5 重要
Network
quic-go project quic-go quic-go projectのquic-goにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-40898 2026-06-8 12:31 2026-06-4 Show GitHub Exploit DB Packet Storm
1666 6.5 警告
Network
VMware Spring Cloud Function VMwareのSpring Cloud Functionにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-40989 2026-06-8 12:31 2026-06-1 Show GitHub Exploit DB Packet Storm
1667 6.5 警告
Network
VMware Spring Cloud Function VMwareのSpring Cloud Functionにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-40990 2026-06-8 12:31 2026-06-1 Show GitHub Exploit DB Packet Storm
1668 7.5 重要
Network
librechat librechat LibreChatにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-4276 2026-06-8 12:31 2026-03-16 Show GitHub Exploit DB Packet Storm
1669 4.8 警告
Network
ERLANG Erlang/OTP ERLANGのErlang/OTPにおける複数の脆弱性 CWE-295
CWE-296
CVE-2026-42789 2026-06-8 12:31 2026-05-27 Show GitHub Exploit DB Packet Storm
1670 6.1 警告
Network
Prometheus Prometheus Prometheusにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-44903 2026-06-8 12:31 2026-05-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310431 - google chrome libvpx, as used in Google Chrome before 8.0.552.215 and possibly other products, allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WebM video. NOTE: this vulner… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-4489 2024-11-21 10:21 2010-12-8 Show GitHub Exploit DB Packet Storm
310432 - google chrome Google Chrome before 8.0.552.215 does not properly handle HTTP proxy authentication, which allows remote attackers to cause a denial of service (application crash) via unspecified vectors. CWE-287
Improper Authentication
CVE-2010-4488 2024-11-21 10:21 2010-12-8 Show GitHub Exploit DB Packet Storm
310433 - google chrome Incomplete blacklist vulnerability in Google Chrome before 8.0.552.215 on Linux and Mac OS X allows remote attackers to have an unspecified impact via a "dangerous file." NVD-CWE-noinfo
CVE-2010-4487 2024-11-21 10:21 2010-12-8 Show GitHub Exploit DB Packet Storm
310434 - google chrome Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to history handling. CWE-399
 Resource Management Errors
CVE-2010-4486 2024-11-21 10:21 2010-12-8 Show GitHub Exploit DB Packet Storm
310435 - google chrome Google Chrome before 8.0.552.215 does not properly restrict the generation of file dialogs, which allows remote attackers to cause a denial of service (reduced usability and possible application cras… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-4485 2024-11-21 10:21 2010-12-8 Show GitHub Exploit DB Packet Storm
310436 - google chrome Google Chrome before 8.0.552.215 does not properly handle HTML5 databases, which allows attackers to cause a denial of service (application crash) via unspecified vectors. NVD-CWE-noinfo
CVE-2010-4484 2024-11-21 10:21 2010-12-8 Show GitHub Exploit DB Packet Storm
310437 - google chrome Google Chrome before 8.0.552.215 does not properly restrict read access to videos derived from CANVAS elements, which allows remote attackers to bypass the Same Origin Policy and obtain potentially s… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-4483 2024-11-21 10:21 2010-12-8 Show GitHub Exploit DB Packet Storm
310438 - google chrome Unspecified vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to bypass the pop-up blocker via unknown vectors. NVD-CWE-noinfo
CVE-2010-4482 2024-11-21 10:21 2010-12-8 Show GitHub Exploit DB Packet Storm
310439 - clamav clamav Unspecified vulnerability in pdf.c in libclamav in ClamAV before 0.96.5 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF d… NVD-CWE-noinfo
CVE-2010-4479 2024-11-21 10:21 2010-12-7 Show GitHub Exploit DB Packet Storm
310440 - openbsd openssh OpenSSH 5.6 and earlier, when J-PAKE is enabled, does not properly validate the public parameters in the J-PAKE protocol, which allows remote attackers to bypass the need for knowledge of the shared … CWE-287
Improper Authentication
CVE-2010-4478 2024-11-21 10:21 2010-12-7 Show GitHub Exploit DB Packet Storm