Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2081 - - - サーバ製品におけるインテル社公表脆弱性(INTEL-SA-01171)による影響について - CVE-2025-24851
CVE-2025-27243
CVE-2025-32003
2026-06-4 17:07 2026-05-29 Show GitHub Exploit DB Packet Storm
2082 - - (複数のベンダ) (複数の製品) Collibra Platform Agentにおける複数の脆弱性 - - 2026-06-4 11:37 2026-06-3 Show GitHub Exploit DB Packet Storm
2083 - - (複数のベンダ) (複数の製品) Appsmithにおけるクロスサイトスクリプティングの脆弱性 - - 2026-06-4 11:37 2026-06-3 Show GitHub Exploit DB Packet Storm
2084 - - (複数のベンダ) (複数の製品) CISA ICS Advisory / ICS Medical Advisory(2026年06月02日) - - 2026-06-4 11:37 2026-06-3 Show GitHub Exploit DB Packet Storm
2085 - - - サーバ製品におけるインテル社公表脆弱性(INTEL-SA-01234)による影響について - CVE-2025-20027
CVE-2025-20028
CVE-2025-20064
CVE-2025-20068
CVE-2025-20073
CVE-2025-20105
CVE-2025-22444
CVE-2025-22850
2026-06-3 17:42 2026-04-24 Show GitHub Exploit DB Packet Storm
2086 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23268 2026-06-3 17:05 2026-03-18 Show GitHub Exploit DB Packet Storm
2087 7.1 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-23269 2026-06-3 17:05 2026-03-18 Show GitHub Exploit DB Packet Storm
2088 9.8 緊急
Network
InHand Networks ir302 ファームウェア
IR615 ファームウェア
IR315 Firmware
IR305 Firmware
InHand Networksのir302 ファームウェア等の複数製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-38702 2026-06-3 17:05 2026-05-28 Show GitHub Exploit DB Packet Storm
2089 9.8 緊急
Network
InHand Networks ir302 ファームウェア
IR615 ファームウェア
IR315 Firmware
IR305 Firmware
InHand Networksのir302 ファームウェア等の複数製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-38703 2026-06-3 17:05 2026-05-28 Show GitHub Exploit DB Packet Storm
2090 9.8 緊急
Network
InHand Networks ir302 ファームウェア
IR615 ファームウェア
IR315 Firmware
IR305 Firmware
InHand Networksのir302 ファームウェア等の複数製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-38704 2026-06-3 17:05 2026-05-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311101 - adobe flash_player Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris, and 10.1.95.1 on Android, does not properly handle unspecified encodings during the parsing o… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3636 2024-11-21 10:19 2010-11-8 Show GitHub Exploit DB Packet Storm
311102 - justsystems ichitaro Unspecified vulnerability in JustSystems Ichitaro and Ichitaro Government allows remote attackers to execute arbitrary code via a crafted document, a different vulnerability than CVE-2010-3915. NVD-CWE-noinfo
CVE-2010-3916 2024-11-21 10:19 2010-11-6 Show GitHub Exploit DB Packet Storm
311103 - justsystems ichitaro Unspecified vulnerability in JustSystems Ichitaro and Ichitaro Government allows remote attackers to execute arbitrary code via a crafted document, a different vulnerability than CVE-2010-3916. NVD-CWE-noinfo
CVE-2010-3915 2024-11-21 10:19 2010-11-6 Show GitHub Exploit DB Packet Storm
311104 - redhat luci The default configuration of Luci 0.22.4 and earlier in Red Hat Conga uses "[INSERT SECRET HERE]" as its secret key for cookies, which makes it easier for remote attackers to bypass repoze.who authen… CWE-287
Improper Authentication
CVE-2010-3852 2024-11-21 10:19 2010-11-6 Show GitHub Exploit DB Packet Storm
311105 - poppler
foolabs
kde
glyphandcog
poppler
xpdf
kdegraphics
xpdfreader
The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, kdegraphics, and possibly other products allows co… CWE-20
 Improper Input Validation 
CVE-2010-3704 2024-11-21 10:19 2010-11-6 Show GitHub Exploit DB Packet Storm
311106 - poppler poppler The PostScriptFunction::PostScriptFunction function in poppler/Function.cc in the PDF parser in poppler 0.8.7 and possibly other versions up to 0.15.1, and possibly other products, allows context-dep… CWE-20
 Improper Input Validation 
CVE-2010-3703 2024-11-21 10:19 2010-11-6 Show GitHub Exploit DB Packet Storm
311107 - freedesktop
xpdfreader
apple
fedoraproject
opensuse
suse
debian
redhat
canonical
poppler
xpdf
cups
fedora
opensuse
linux_enterprise_server
debian_linux
enterprise_linux_server
enterprise_linux_workstation
enterprise_linux_desktop
ubuntu_linux
The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent atta… CWE-476
 NULL Pointer Dereference
CVE-2010-3702 2024-11-21 10:19 2010-11-6 Show GitHub Exploit DB Packet Storm
311108 - transware active\!_mail CRLF injection vulnerability in TransWARE Active! mail 6 build 6.40.010047750 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unsp… CWE-94
Code Injection
CVE-2010-3913 2024-11-21 10:19 2010-11-6 Show GitHub Exploit DB Packet Storm
311109 - jsecurity
apache
jsecurity
shiro
Apache Shiro before 1.1.0, and JSecurity 0.9.x, does not canonicalize URI paths before comparing them to entries in the shiro.ini file, which allows remote attackers to bypass intended access restric… CWE-22
Path Traversal
CVE-2010-3863 2024-11-21 10:19 2010-11-6 Show GitHub Exploit DB Packet Storm
311110 - nongnu cvs Array index error in the apply_rcs_change function in rcs.c in CVS 1.11.23 allows local users to gain privileges via an RCS file containing crafted delta fragment changes that trigger a heap-based bu… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-3846 2024-11-21 10:19 2010-11-6 Show GitHub Exploit DB Packet Storm