Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1861 6.5 警告
Network
The Go Project Net The Go ProjectのNetにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-25680 2026-06-3 17:05 2026-05-22 Show GitHub Exploit DB Packet Storm
1862 6.1 警告
Network
The Go Project Net The Go ProjectのNetにおけるレンダリングされたユーザインターフェースレイヤまたはフレームの不適切な制限に関する脆弱性 CWE-1021
レンダリングされたユーザインターフェースレイヤまたはフレームの不適切な制限
CVE-2026-25681 2026-06-3 17:05 2026-05-22 Show GitHub Exploit DB Packet Storm
1863 6.1 警告
Network
The Go Project Net The Go ProjectのNetにおけるレンダリングされたユーザインターフェースレイヤまたはフレームの不適切な制限に関する脆弱性 CWE-1021
レンダリングされたユーザインターフェースレイヤまたはフレームの不適切な制限
CVE-2026-27136 2026-06-3 17:05 2026-05-22 Show GitHub Exploit DB Packet Storm
1864 9.8 緊急
Network
Linaro Open Asymmetric Multi Processing (OpenAMP) LinaroのOpen Asymmetric Multi Processing (OpenAMP)における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-37540 2026-06-3 17:05 2026-05-1 Show GitHub Exploit DB Packet Storm
1865 9.6 緊急
Network
The Go Project Net The Go ProjectのNetにおける安全でない等式による入力の不適切な検証に関する脆弱性 CWE-1289
安全でない等式による入力の不適切な検証
CVE-2026-39821 2026-06-3 17:05 2026-05-22 Show GitHub Exploit DB Packet Storm
1866 7.5 重要
Network
マイクロソフト Microsoft Planetary Computer Pro (GeoCatalog) Microsoft Planetary Computer Pro の情報漏えいの脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-41104 2026-06-3 17:04 2026-05-22 Show GitHub Exploit DB Packet Storm
1867 9.6 緊急
Network
charm Wish charmのWishにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-41589 2026-06-3 17:04 2026-05-7 Show GitHub Exploit DB Packet Storm
1868 9.1 緊急
Network
i18next i18next-http-backend i18nextのi18next-http-backendにおける複数の脆弱性 CWE-22
CWE-74
CVE-2026-41691 2026-06-3 17:04 2026-05-7 Show GitHub Exploit DB Packet Storm
1869 4.7 警告
Network
i18next i18nextify i18nextのi18nextifyにおける複数の脆弱性 CWE-79
CWE-94
CVE-2026-41692 2026-06-3 17:04 2026-05-7 Show GitHub Exploit DB Packet Storm
1870 10 緊急
Network
th30d4y OpenLearnX th30d4yのOpenLearnXにおける複数の脆弱性 CWE-250
CWE-284
CWE-693
CWE-78
CWE-94
CVE-2026-41900 2026-06-3 17:04 2026-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310871 - oracle supply_chain_products_suite Unspecified vulnerability in the Agile Core component in Oracle Supply Chain Products Suite 9.3.0.2 and 9.3.1 allows remote authenticated users to affect confidentiality via unknown vectors related t… NVD-CWE-noinfo
CVE-2010-3505 2024-11-21 10:18 2011-01-20 Show GitHub Exploit DB Packet Storm
310872 - linux linux_kernel include/asm-x86/futex.h in the Linux kernel before 2.6.25 does not properly implement exception fixup, which allows local users to cause a denial of service (panic) via an invalid application that tr… NVD-CWE-Other
CVE-2010-3086 2024-11-21 10:18 2011-01-15 Show GitHub Exploit DB Packet Storm
310873 - fribidi
kobi_zamir
gnu_fribidi
pyfribidi
Buffer overflow in the log2vis_utf8 function in pyfribidi.c in GNU FriBidi 0.19.1, 0.19.2, and possibly other versions, as used in PyFriBidi 0.10.1, allows remote attackers to cause a denial of servi… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-3444 2024-11-21 10:18 2011-01-11 Show GitHub Exploit DB Packet Storm
310874 - freetype freetype Integer overflow in base/ftstream.c in libXft (aka the X FreeType library) in FreeType before 2.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrar… CWE-189
Numeric Errors
CVE-2010-3311 2024-11-21 10:18 2011-01-8 Show GitHub Exploit DB Packet Storm
310875 - netwin surgemail Cross-site scripting (XSS) vulnerability in NetWin Surgemail before 4.3g allows remote attackers to inject arbitrary web script or HTML via the username_ex parameter to the surgeweb program. CWE-79
Cross-site Scripting
CVE-2010-3201 2024-11-21 10:18 2011-01-8 Show GitHub Exploit DB Packet Storm
310876 - linux linux_kernel drivers/platform/x86/thinkpad_acpi.c in the Linux kernel before 2.6.34 on ThinkPad devices, when the X.Org X server is used, does not properly restrict access to the video output control state, which… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3448 2024-11-21 10:18 2011-01-4 Show GitHub Exploit DB Packet Storm
310877 - intel
symantec
intel_alert_management_system
antivirus
endpoint_protection
The GetStringAMSHandler function in prgxhndl.dll in hndlrsvc.exe in the Intel Alert Handler service (aka Symantec Intel Handler service) in Intel Alert Management System (AMS), as used in Symantec An… CWE-20
 Improper Input Validation 
CVE-2010-3268 2024-11-21 10:18 2010-12-23 Show GitHub Exploit DB Packet Storm
310878 - microsoft internet_explorer Microsoft Internet Explorer 6, 7, and 8 does not prevent rendering of cached content as HTML, which allows remote attackers to access content from a different (1) domain or (2) zone via unspecified s… CWE-200
Information Exposure
CVE-2010-3348 2024-11-21 10:18 2010-12-17 Show GitHub Exploit DB Packet Storm
310879 - microsoft internet_explorer Microsoft Internet Explorer 6, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialize… CWE-908
 Use of Uninitialized Resource
CVE-2010-3346 2024-11-21 10:18 2010-12-17 Show GitHub Exploit DB Packet Storm
310880 - microsoft internet_explorer Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) i… CWE-908
 Use of Uninitialized Resource
CVE-2010-3345 2024-11-21 10:18 2010-12-17 Show GitHub Exploit DB Packet Storm