Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
221971 7.2 危険 Little Kernel project - MSM デバイス用 Qualcomm Innovation Center Android コントリビューションなどで配布される Little Kernel ブートローダにおけるブートイメージの認証要件を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-0973 2014-08-26 15:37 2014-06-13 Show GitHub Exploit DB Packet Storm
221972 4.6 警告 SaltStack - Salt における脆弱性 CWE-59
リンク解釈の問題
CVE-2014-3563 2014-08-26 15:16 2014-08-1 Show GitHub Exploit DB Packet Storm
221973 9.4 危険 ヒューレット・パッカード - HP Service Manager におけるアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2014-2634 2014-08-26 14:55 2014-08-22 Show GitHub Exploit DB Packet Storm
221974 6.8 警告 ヒューレット・パッカード - HP Service Manager のサーバにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-2633 2014-08-26 14:54 2014-08-22 Show GitHub Exploit DB Packet Storm
221975 10 危険 ヒューレット・パッカード - HP Service Manager の WebTier コンポーネントにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-2632 2014-08-26 14:54 2014-08-22 Show GitHub Exploit DB Packet Storm
221976 4.3 警告 ヒューレット・パッカード - HP Service Manager の Mobility Web Client および Service Request Catalog コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6222 2014-08-26 14:53 2013-10-21 Show GitHub Exploit DB Packet Storm
221977 4.6 警告 IBM - IBM Power 7 システムにおける Service Processor 特権を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-6306 2014-08-26 12:27 2014-08-19 Show GitHub Exploit DB Packet Storm
221978 10 危険 Shenzhen Tenda Technology Co.,Ltd. - Shenzhen Tenda Technology Tenda A5s ルータのファームウェアにおける認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-5246 2014-08-26 11:43 2014-08-17 Show GitHub Exploit DB Packet Storm
221979 4.7 警告 Xen プロジェクト - Xen の特定の MMU 仮想化操作におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-5149 2014-08-26 11:29 2014-08-12 Show GitHub Exploit DB Packet Storm
221980 4.7 警告 Xen プロジェクト - Xen の特定の MMU 仮想化操作におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-5146 2014-08-26 11:28 2014-08-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
581 5.3 MEDIUM
Network
fasterxml jackson-databind jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, in BeanDeserializer._deserializeUsingPropertyBa… Update CWE-863
 Incorrect Authorization
CVE-2026-54517 2026-06-28 05:51 2026-06-24 Show GitHub Exploit DB Packet Storm
582 6.5 MEDIUM
Network
fasterxml jackson-databind jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, UnwrappedPropertyHandler.processUnwrappedCreato… Update CWE-863
 Incorrect Authorization
CVE-2026-54518 2026-06-28 05:49 2026-06-24 Show GitHub Exploit DB Packet Storm
583 7.5 HIGH
Network
sentry sentry Sentry is an error tracking and performance monitoring tool. From 24.4.0 until 26.5.2, a Regular Expression Denial of Service (ReDoS) vulnerability exists in Sentry's event ingestion pipeline, where … Update CWE-1333
 Inefficient Regular Expression Complexity
CVE-2026-52794 2026-06-28 05:45 2026-06-25 Show GitHub Exploit DB Packet Storm
584 7.5 HIGH
Network
aquasec trivy Trivy is a security scanner. Prior to 0.71.1, when Trivy downloads an OCI artifact, it uses the org.opencontainers.image.title annotation from the artifact manifest as the destination filename withou… Update CWE-22
Path Traversal
CVE-2026-55092 2026-06-28 05:45 2026-06-26 Show GitHub Exploit DB Packet Storm
585 7.1 HIGH
Network
bitwarden server Bitwarden Server before 2026.5.0 contains a privilege escalation vulnerability that allows authenticated Custom users with ManageUsers permission to remove Admin accounts from an organization by expl… Update CWE-862
 Missing Authorization
CVE-2026-57520 2026-06-28 05:41 2026-06-26 Show GitHub Exploit DB Packet Storm
586 4.3 MEDIUM
Network
bitwarden server Bitwarden Server before 2026.5.0 contains a broken access control vulnerability that allows any authenticated user to access arbitrary organization billing data by supplying an arbitrary organization… Update CWE-862
 Missing Authorization
CVE-2026-57521 2026-06-28 05:40 2026-06-26 Show GitHub Exploit DB Packet Storm
587 5.0 MEDIUM
Network
bitwarden server Bitwarden Server before 2026.5.0 contains a JSON injection vulnerability in IntegrationTemplateProcessor.ReplaceTokens(), which substitutes user-controlled values into event-integration templates wit… Update CWE-74
Injection
CVE-2026-57522 2026-06-28 05:39 2026-06-26 Show GitHub Exploit DB Packet Storm
588 5.3 MEDIUM
Network
wolfssl wolfssl Integer underflow in wc_PKCS7_DecryptOri when handling crafted Other Recipient Info, leading to incorrect length handling during decryption. Update CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2026-6678 2026-06-28 05:37 2026-06-26 Show GitHub Exploit DB Packet Storm
589 7.5 HIGH
Network
wolfssl wolfssl A heap buffer overflow could occur in the DTLS 1.3 ACK serialization path before the connecting peer is authenticated. The buffer overflow was due to an integer truncation when computing the length o… Update CWE-190
CWE-197
CWE-787
 Integer Overflow or Wraparound
 Numeric Truncation Error
 Out-of-bounds Write
CVE-2026-6679 2026-06-28 05:26 2026-06-26 Show GitHub Exploit DB Packet Storm
590 7.1 HIGH
Local
docling docling Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.45.0 until 2.91.0, the METS-GBS backend's XML parsing and the inp… Update CWE-409
CWE-611
CWE-776
 Improper Handling of Highly Compressed Data (Data Amplification)
XXE
XML Entity Expansion
CVE-2026-44018 2026-06-28 05:25 2026-06-27 Show GitHub Exploit DB Packet Storm