Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1861 7.8 重要
Local
Zeit, Inc. The Turborepo Language Server Protocol (LSP) Vercel, Inc. (旧 Zeit, Inc.)のThe Turborepo Language Server Protocol (LSP)におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-46508 2026-05-21 10:54 2026-05-15 Show GitHub Exploit DB Packet Storm
1862 9.1 緊急
Network
FreeRTOS coreMQTT FreeRTOSのcoreMQTTにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-8686 2026-05-21 10:54 2026-05-15 Show GitHub Exploit DB Packet Storm
1863 9.1 緊急
Network
Aden OpenHive AdenのOpenHiveにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-8757 2026-05-21 10:54 2026-05-17 Show GitHub Exploit DB Packet Storm
1864 6.5 警告
Network
Kilo Code Kilo Code Kilo Codeにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-8765 2026-05-21 10:54 2026-05-17 Show GitHub Exploit DB Packet Storm
1865 6.5 警告
Network
Kilo Code Kilo Code Kilo Codeにおける複数の脆弱性 CWE-200
CWE-284
CWE-noinfo
CVE-2026-8766 2026-05-21 10:54 2026-05-17 Show GitHub Exploit DB Packet Storm
1866 3.3
Local
Continue Continue Continueにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-8770 2026-05-21 10:54 2026-05-18 Show GitHub Exploit DB Packet Storm
1867 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40901 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1868 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40902 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1869 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40903 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
1870 5.4 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40904 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345211 - apple quicktime Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted BMP image. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-0536 2017-09-19 10:30 2010-04-1 Show GitHub Exploit DB Packet Storm
345212 - apple quicktime Per: http://lists.apple.com/archives/security-announce/2010//Mar/msg00002.html ' This issue does not affect Mac OS X systems.' CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-0536 2017-09-19 10:30 2010-04-1 Show GitHub Exploit DB Packet Storm
345213 - apple safari
webkit
Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows remote attackers to inject arbitrary w… CWE-79
Cross-site Scripting
CVE-2010-0544 2017-09-19 10:30 2010-06-12 Show GitHub Exploit DB Packet Storm
345214 - cisco ios Cisco IOS 12.1 through 12.4, when Cisco Unified Communications Manager Express (CME) or Cisco Unified Survivable Remote Site Telephony (SRST) is enabled, allows remote attackers to cause a denial of … NVD-CWE-noinfo
CVE-2010-0586 2017-09-19 10:30 2010-03-26 Show GitHub Exploit DB Packet Storm
345215 - google chrome Google Chrome before 4.0.249.89 attempts to make direct connections to web sites when all configured proxy servers are unavailable, which allows remote HTTP servers to obtain potentially sensitive in… CWE-200
Information Exposure
CVE-2010-0643 2017-09-19 10:30 2010-02-19 Show GitHub Exploit DB Packet Storm
345216 - google chrome Google Chrome before 4.0.249.89, when a SOCKS 5 proxy server is configured, sends DNS queries directly, which allows remote DNS servers to obtain potentially sensitive information about the identity … CWE-200
Information Exposure
CVE-2010-0644 2017-09-19 10:30 2010-02-19 Show GitHub Exploit DB Packet Storm
345217 - google chrome Multiple integer overflows in factory.cc in Google V8 before r3560, as used in Google Chrome before 4.0.249.89, allow remote attackers to execute arbitrary code in the Chrome sandbox via crafted use … CWE-189
Numeric Errors
CVE-2010-0645 2017-09-19 10:30 2010-02-19 Show GitHub Exploit DB Packet Storm
345218 - google chrome Multiple integer signedness errors in factory.cc in Google V8 before r3560, as used in Google Chrome before 4.0.249.89, allow remote attackers to execute arbitrary code in the Chrome sandbox via craf… CWE-189
Numeric Errors
CVE-2010-0646 2017-09-19 10:30 2010-02-19 Show GitHub Exploit DB Packet Storm
345219 - apple
google
webkit
chrome
WebKit before r53525, as used in Google Chrome before 4.0.249.89, allows remote attackers to execute arbitrary code in the Chrome sandbox via a malformed RUBY element, as demonstrated by a <ruby>><ta… CWE-94
Code Injection
CVE-2010-0647 2017-09-19 10:30 2010-02-19 Show GitHub Exploit DB Packet Storm
345220 - mozilla firefox Mozilla Firefox, possibly before 3.6, allows remote attackers to discover a redirect's target URL, for the session of a specific user of a web site, by placing the site's URL in the HREF attribute of… CWE-200
Information Exposure
CVE-2010-0648 2017-09-19 10:30 2010-02-19 Show GitHub Exploit DB Packet Storm