Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 12:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
11 8.1 重要
Network
Palo Alto Networks Idira Secrets Manager
Idira Secrets Manager Credential Providers
Palo Alto NetworksのIdira Secrets Manager等の複数製品におけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-45178 2026-06-24 10:00 2026-06-11 Show GitHub Exploit DB Packet Storm
12 6.5 警告
Network
デル PowerFlex Manager デルのPowerFlex Managerにおける証明書検証に関する脆弱性 New CWE-295
不正な証明書検証
CVE-2024-47477 2026-06-24 10:00 2026-06-17 Show GitHub Exploit DB Packet Storm
13 7.2 重要
Network
Open Source Geospatial Foundation geoserver Open Source Geospatial Foundationのgeoserverにおける複数の脆弱性 New CWE-502
CWE-74
CVE-2025-27511 2026-06-24 10:00 2026-06-18 Show GitHub Exploit DB Packet Storm
14 7.2 重要
Network
Open Source Geospatial Foundation geoserver Open Source Geospatial Foundationのgeoserverにおけるファイル名やパス名の外部制御に関する脆弱性 New CWE-73
ファイル名やパス名の外部制御
CVE-2025-52465 2026-06-24 10:00 2026-06-18 Show GitHub Exploit DB Packet Storm
15 8.2 重要
Network
Open Source Geospatial Foundation geoserver Open Source Geospatial Foundationのgeoserverにおける複数の脆弱性 New CWE-20
CWE-611
CWE-918
CVE-2025-58175 2026-06-24 10:00 2026-06-18 Show GitHub Exploit DB Packet Storm
16 9.8 緊急
Network
Ivanti standalone sentry Ivantiのstandalone sentryにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 New CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2026-10523 2026-06-24 10:00 2026-06-9 Show GitHub Exploit DB Packet Storm
17 7.5 重要
Network
デル PowerFlex Manager デルのPowerFlex Managerにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 New CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-22283 2026-06-24 10:00 2026-06-17 Show GitHub Exploit DB Packet Storm
18 6.5 警告
Network
Eclipse Foundation Theia Eclipse FoundationのTheiaにおける複数の脆弱性 New CWE-201
CWE-829
CVE-2026-22551 2026-06-24 10:00 2026-06-18 Show GitHub Exploit DB Packet Storm
19 5.4 警告
Network
Outlook.com Microsoft Edge Chromium Microsoft Edge (Chromium ベース) のなりすましの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-32208 2026-06-24 10:00 2026-06-19 Show GitHub Exploit DB Packet Storm
20 8.1 重要
Adjacent
デル PowerFlex Manager デルのPowerFlex Managerにおける認証に関する脆弱性 New CWE-287
不適切な認証
CVE-2026-32804 2026-06-24 09:59 2026-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
190991 5.3 MEDIUM
Network
valine.js valine Valine 1.4.14 allows remote attackers to cause a denial of service (application outage) by supplying a ua (aka User-Agent) value that only specifies the product and version. NVD-CWE-noinfo
CVE-2021-34801 2024-11-21 15:11 2021-06-17 Show GitHub Exploit DB Packet Storm
190992 8.2 HIGH
Network
wago 750-8100_firmware
750-8101_firmware
750-8101\/025-000_firmware
750-8102_firmware
750-8102\/025-000_firmware
750-8202_firmware
750-8202\/000-011_firmware
750-8202\/000-012_firmwar…
In WAGO I/O-Check Service in multiple products an unauthenticated remote attacker can send a specially crafted packet containing OS commands to provoke a denial of service and an limited out-of-bound… - CVE-2021-34567 2024-11-21 15:10 2022-11-10 Show GitHub Exploit DB Packet Storm
190993 7.5 HIGH
Network
opensc_project opensc Stack overflow vulnerability in OpenSC smart card middleware before 0.23 via crafted responses to APDUs. CWE-787
 Out-of-bounds Write
CVE-2021-34193 2024-11-21 15:10 2023-08-23 Show GitHub Exploit DB Packet Storm
190994 6.1 MEDIUM
Network
microsoft edge_chromium Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability NVD-CWE-noinfo
CVE-2021-34506 2024-11-21 15:10 2023-07-1 Show GitHub Exploit DB Packet Storm
190995 5.4 MEDIUM
Network
microsoft edge_chromium Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2021-34475 2024-11-21 15:10 2023-07-1 Show GitHub Exploit DB Packet Storm
190996 6.3 MEDIUM
Local
gnu mailman An issue was discovered in Mailman Core before 3.3.5. An attacker with access to the REST API could use timing attacks to determine the value of the configured REST API password and then make arbitra… NVD-CWE-noinfo
CVE-2021-34337 2024-11-21 15:10 2023-04-16 Show GitHub Exploit DB Packet Storm
190997 7.5 HIGH
Network
online_book_store_project online_book_store SQL injection vulnerability in sourcecodester online-book-store 1.0 allows remote attackers to view sensitive information via the id paremeter in application URL. CWE-89
SQL Injection
CVE-2021-34249 2024-11-21 15:10 2023-02-25 Show GitHub Exploit DB Packet Storm
190998 7.5 HIGH
Network
phoenixcontact fl_mguard_dm In Phoenix Contact: FL MGUARD DM version 1.12.0 and 1.13.0 access to the Apache web server being installed as part of the FL MGUARD DM on Microsoft Windows does not require login credentials even if … NVD-CWE-noinfo
CVE-2021-34579 2024-11-21 15:10 2022-11-10 Show GitHub Exploit DB Packet Storm
190999 6.5 MEDIUM
Adjacent
kadenvodomery picoflux_air_firmware In the Kaden PICOFLUX AiR water meter an adversary can read the values through wireless M-Bus mode 5 with a hardcoded shared key while being adjacent to the device. - CVE-2021-34577 2024-11-21 15:10 2022-11-10 Show GitHub Exploit DB Packet Storm
191000 9.8 CRITICAL
Network
wago 750-8100_firmware
750-8101_firmware
750-8101\/025-000_firmware
750-8102_firmware
750-8102\/025-000_firmware
750-8202_firmware
750-8202\/000-011_firmware
750-8202\/000-012_firmwar…
In WAGO I/O-Check Service in multiple products an attacker can send a specially crafted packet containing OS commands to crash the diagnostic tool and write memory. - CVE-2021-34569 2024-11-21 15:10 2022-11-10 Show GitHub Exploit DB Packet Storm