Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2111 7.8 重要
Local
アドビシステムズ Adobe Substance 3D Designer アドビのAdobe Substance 3D Designerにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-34683 2026-05-15 11:02 2026-05-12 Show GitHub Exploit DB Packet Storm
2112 7.8 重要
Local
アドビシステムズ Adobe Substance 3D Designer アドビのAdobe Substance 3D Designerにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-34684 2026-05-15 11:02 2026-05-12 Show GitHub Exploit DB Packet Storm
2113 8.7 重要
Network
アドビシステムズ Adobe Commerce
Adobe Commerce B2B
magento
アドビのAdobe Commerce等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-34686 2026-05-15 11:02 2026-05-12 Show GitHub Exploit DB Packet Storm
2114 7.8 重要
Local
アドビシステムズ Adobe After Effects アドビのAdobe After Effectsにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-34690 2026-05-15 11:02 2026-05-12 Show GitHub Exploit DB Packet Storm
2115 4.4 警告
Local
PNG Development Group
Debian
Debian GNU/Linux
libpng
Debian等の複数ベンダの製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-34757 2026-05-15 11:02 2026-04-9 Show GitHub Exploit DB Packet Storm
2116 7.7 重要
Local
Pengutronix e.K. barebox Pengutronix e.K.のbareboxにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-34961 2026-05-15 11:02 2026-05-11 Show GitHub Exploit DB Packet Storm
2117 5.5 警告
Local
Pengutronix e.K. barebox Pengutronix e.K.のbareboxにおける無限ループに関する脆弱性 CWE-835
無限ループ
CVE-2026-34962 2026-05-15 11:02 2026-05-11 Show GitHub Exploit DB Packet Storm
2118 7.8 重要
Local
Pengutronix e.K. barebox Pengutronix e.K.のbareboxにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-34963 2026-05-15 11:02 2026-05-11 Show GitHub Exploit DB Packet Storm
2119 8.8 重要
Network
マイクロソフト Microsoft SharePoint Server Microsoft SharePoint Server のリモートでコードが実行される脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-35439 2026-05-15 11:02 2026-05-12 Show GitHub Exploit DB Packet Storm
2120 5.9 警告
Network
IBM IBM WebSphere Application Server IBMのIBM WebSphere Application Serverにおける権限管理に関する脆弱性 CWE-269
CWE-noinfo
CVE-2026-3621 2026-05-15 11:02 2026-04-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311441 7.7 HIGH
Network
adobe commerce
magento
Adobe Commerce versions 3.2.5 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could lead to a security feature bypass. A low privileged attacker could exploit this… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2024-49521 2024-11-19 03:44 2024-11-13 Show GitHub Exploit DB Packet Storm
311442 8.8 HIGH
Network
oretnom23 online_veterinary_appointment_system A vulnerability classified as critical was found in SourceCodester Online Veterinary Appointment System 1.0. This vulnerability affects unknown code of the file /admin/services/view_service.php. The … CWE-89
SQL Injection
CVE-2024-10990 2024-11-19 03:42 2024-11-8 Show GitHub Exploit DB Packet Storm
311443 7.8 HIGH
Local
adobe animate Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue… CWE-416
 Use After Free
CVE-2024-49526 2024-11-19 03:41 2024-11-13 Show GitHub Exploit DB Packet Storm
311444 8.8 HIGH
Network
codezips online_institute_management_system A vulnerability has been found in Codezips Online Institute Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /edit_user.php. Th… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-10994 2024-11-19 03:41 2024-11-8 Show GitHub Exploit DB Packet Storm
311445 8.8 HIGH
Network
codezips online_institute_management_system A vulnerability, which was classified as critical, was found in Codezips Online Institute Management System 1.0. Affected is an unknown function of the file /manage_website.php. The manipulation of t… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-10993 2024-11-19 03:41 2024-11-8 Show GitHub Exploit DB Packet Storm
311446 9.8 CRITICAL
Network
codezips hospital_appointment_system A vulnerability, which was classified as critical, has been found in Codezips Hospital Appointment System 1.0. This issue affects some unknown processing of the file /editBranchResult.php. The manipu… CWE-89
SQL Injection
CVE-2024-10991 2024-11-19 03:41 2024-11-8 Show GitHub Exploit DB Packet Storm
311447 5.5 MEDIUM
Local
adobe animate Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to byp… CWE-125
Out-of-bounds Read
CVE-2024-49527 2024-11-19 03:39 2024-11-13 Show GitHub Exploit DB Packet Storm
311448 - - - A cross-site scripting (XSS) vulnerability in LemonLDAP::NG before 2.20.1 allows remote attackers to inject arbitrary web script or HTML via the url parameter of the upgrade session confirmation page… - CVE-2024-52947 2024-11-19 03:35 2024-11-18 Show GitHub Exploit DB Packet Storm
311449 - - - In Flagsmith before 2.134.1, the get_document endpoint is not correctly protected by permissions. - CVE-2024-52872 2024-11-19 03:35 2024-11-17 Show GitHub Exploit DB Packet Storm
311450 - - - In Flagsmith before 2.134.1, it is possible to bypass the ALLOW_REGISTRATION_WITHOUT_INVITE setting. - CVE-2024-52871 2024-11-19 03:35 2024-11-17 Show GitHub Exploit DB Packet Storm