Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1911 8.5 重要
Network
IBM IBM WebSphere Application Server IBMのIBM WebSphere Application Serverにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-9330 2026-06-8 11:44 2026-06-1 Show GitHub Exploit DB Packet Storm
1912 - - (複数のベンダ) (複数の製品) Securly Chrome Extensionにおける複数の脆弱性 - - 2026-06-5 13:34 2026-06-4 Show GitHub Exploit DB Packet Storm
1913 6.7 警告
Adjacent
TP-Link Systems Inc. Tapo P300
Tapo L535E
Tapo D100C
複数のTP-LINK製品における重要情報の平文送信の脆弱性 CWE-Other
その他
CVE-2026-34126 2026-06-5 12:08 2026-06-5 Show GitHub Exploit DB Packet Storm
1914 9.8 緊急
Network
deltasql Project deltasql deltasql Projectのdeltasqlにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2018-25412 2026-06-5 10:52 2026-05-30 Show GitHub Exploit DB Packet Storm
1915 7.5 重要
Network
WinMTR WinMTR WinMTRにおける古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2018-25426 2026-06-5 10:52 2026-05-30 Show GitHub Exploit DB Packet Storm
1916 7.8 重要
Local
4mhz Base64 Decoder 4mhzのBase64 Decoderにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2019-25634 2026-06-5 10:52 2026-03-24 Show GitHub Exploit DB Packet Storm
1917 7.8 重要
Local
Google Android XR GoogleのAndroid XRにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-0072 2026-06-5 10:52 2026-06-1 Show GitHub Exploit DB Packet Storm
1918 9.8 緊急
Network
TRENDnet TEW-432BRP Firmware TRENDnetのTEW-432BRP Firmwareにおける複数の脆弱性 CWE-74
CWE-77
CVE-2026-10060 2026-06-5 10:52 2026-05-29 Show GitHub Exploit DB Packet Storm
1919 9.8 緊急
Network
TRENDnet TEW-432BRP Firmware TRENDnetのTEW-432BRP Firmwareにおける複数の脆弱性 CWE-74
CWE-77
CVE-2026-10061 2026-06-5 10:52 2026-05-29 Show GitHub Exploit DB Packet Storm
1920 9.8 緊急
Network
TRENDnet TEW-432BRP Firmware TRENDnetのTEW-432BRP Firmwareにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-10062 2026-06-5 10:52 2026-05-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310761 - banshee-project banshee The (1) banshee-1 and (2) muinshee scripts in Banshee 1.8.0 and earlier place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse share… NVD-CWE-Other
CVE-2010-3998 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310762 - adobe shockwave_player Use-after-free vulnerability in an unspecified compatibility component in Adobe Shockwave Player before 11.5.9.620 allows user-assisted remote attackers to execute arbitrary code via a crafted web si… CWE-399
 Resource Management Errors
CVE-2010-4092 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310763 - onlinetechtools.com oasys_professional SQL injection vulnerability in process.asp in OnlineTechTools Online Work Order System (OWOS) Professional Edition 2.10 allows remote attackers to execute arbitrary SQL commands via the password para… CWE-89
SQL Injection
CVE-2010-4186 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310764 - energine energine SQL injection vulnerability in index.php in Energine, possibly 2.3.8 and earlier, allows remote attackers to execute arbitrary SQL commands via the NRGNSID cookie. CWE-89
SQL Injection
CVE-2010-4185 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310765 - netsupportsoftware netsupport_manager NetSupport Manager (NSM) before 11.00.0005 sends HTTP headers with cleartext fields containing details about client machines, which allows remote attackers to obtain potentially sensitive information… CWE-310
Cryptographic Issues
CVE-2010-4184 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310766 - htmlpurifier htmlpurifier Multiple cross-site scripting (XSS) vulnerabilities in HTML Purifier before 4.1.0, when Internet Explorer is used, allow remote attackers to inject arbitrary web script or HTML via a crafted (1) back… CWE-79
Cross-site Scripting
CVE-2010-4183 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310767 - gnucash gnucash gnc-test-env in GnuCash 2.3.15 and earlier places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current wor… NVD-CWE-Other
CVE-2010-3999 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310768 - cstr festival festival_server in Centre for Speech Technology Research (CSTR) Festival, probably 2.0.95-beta and earlier, places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gai… NVD-CWE-Other
CVE-2010-3996 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310769 - microsoft windows_xp
windows_7
windows_vista
windows_server_2003
Untrusted search path vulnerability in the Data Access Objects (DAO) library (dao360.dll) in Microsoft Windows XP Professional SP3, Windows Server 2003 R2 Enterprise Edition SP3, Windows Vista Busine… NVD-CWE-Other
CVE-2010-4182 2024-11-21 10:20 2010-11-5 Show GitHub Exploit DB Packet Storm
310770 - yaws yaws Directory traversal vulnerability in Yaws 1.89 allows remote attackers to read arbitrary files via ..\ (dot dot backslash) and other sequences. CWE-22
Path Traversal
CVE-2010-4181 2024-11-21 10:20 2010-11-5 Show GitHub Exploit DB Packet Storm