Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223041 10 危険 Mozilla Foundation - 複数の Mozilla 製品の nsXBLProtoImpl::InstallImplementation 関数における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-1524 2014-05-27 17:32 2014-04-29 Show GitHub Exploit DB Packet Storm
223042 4.3 警告 Mozilla Foundation - 複数の Mozilla 製品の read_u32 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-1523 2014-05-27 16:43 2014-04-29 Show GitHub Exploit DB Packet Storm
223043 10 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-1518 2014-05-27 16:41 2014-04-29 Show GitHub Exploit DB Packet Storm
223044 6.5 警告 PostgreSQL.org - PostgreSQL の contrib/hstore/hstore_io.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2014-2669 2014-05-26 18:17 2014-02-20 Show GitHub Exploit DB Packet Storm
223045 - - アドビシステムズ - Adobe Shockwave Player に旧バージョンの Flash ランタイムが同梱されている問題 - - 2014-05-26 18:10 2012-12-19 Show GitHub Exploit DB Packet Storm
223046 5.8 警告 Ruby-lang.org - Ruby の openssl 拡張機能における Ruby スクリプトのコンテキスト中の署名を偽装される脆弱性 CWE-399
リソース管理の問題
CVE-2014-2734 2014-05-26 18:09 2014-04-16 Show GitHub Exploit DB Packet Storm
223047 6.8 警告 Moxiecode Systems AB - WordPress 用 TinyMCE Color Picker プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-3845 2014-05-26 15:33 2014-05-12 Show GitHub Exploit DB Packet Storm
223048 5 警告 Moxiecode Systems AB - WordPress 用 TinyMCE Color Picker プラグインにおけるプラグイン設定を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3844 2014-05-26 15:32 2014-05-12 Show GitHub Exploit DB Packet Storm
223049 6.8 警告 Zemanta - WordPress 用 Search Everything プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-3843 2014-05-26 15:32 2014-05-7 Show GitHub Exploit DB Packet Storm
223050 4.3 警告 iMember360 - WordPress 用 iMember360 プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3842 2014-05-26 15:32 2014-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 29, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2461 - - - An authentication bypass security issue exists within FactoryTalk Historian Site Edition. By continually sending requests to the login endpoint, an attacker may obtain a valid authentication token. CWE-362
Race Condition
CVE-2025-13036 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
2462 - - - A security issue was identified in Pavilion due to improper authorization enforcement in API endpoints. This vulnerability can allow an unauthorized actor to execute privileged operations, including … CWE-862
 Missing Authorization
CVE-2025-14272 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
2463 - - - A denial-of-service security issue exists within the 1794-AENTR adapter due to improper memory handling of CIP protocol requests. This vulnerability can result in the adapter faulting and losing conn… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2026-0646 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
2464 - - - An improper authentication security issue exists within the 1794-AENTR adapter's embedded web server. The vulnerability allows an unauthenticated attacker to change the device's web interface passwor… CWE-306
Missing Authentication for Critical Function
CVE-2026-0647 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
2465 - - - A denial of service security issue exists in the affected product. The security issue stems from a fault occurring when a crafted CIP message is sent. Devices with less memory are more likely to be a… CWE-404
 Improper Resource Shutdown or Release
CVE-2026-11317 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
2466 7.5 HIGH
Network
- - A command injection vulnerability was found in galaxy_ng. The do_git_checkout() function in the legacy role import API (v1) interpolates unsanitized git ref names (branch/tag names) into shell comman… CWE-78
OS Command 
CVE-2026-12398 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
2467 - - - A sensitive information disclosure security issue exists within the affected CompactLogix controllers. The controller's web server exposes CIP Connection IDs on the diagnostics webpage, which are acc… CWE-497
 Exposure of Sensitive System Information to an Unauthorized Control Sphere
CVE-2026-9307 2026-06-17 00:26 2026-06-17 Show GitHub Exploit DB Packet Storm
2468 7.5 HIGH
Network
- - In Spring Cloud Sleuth, it is possible for a user to provide specially crafted calls that may cause a denial-of-service (DoS) condition. The application is vulnerable when it uses a vulnerable versio… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-41708 2026-06-17 00:23 2026-06-16 Show GitHub Exploit DB Packet Storm
2469 8.6 HIGH
Network
- - In Spring AI Vector Stores, special characters could be used to force the execution of arbitrary queries in Elasticsearch, OpenSearch, and GemFire VectorDB. Affected components: spring-ai-elasticsear… CWE-943
 Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-47835 2026-06-17 00:23 2026-06-16 Show GitHub Exploit DB Packet Storm
2470 8.6 HIGH
Network
- - Spring Cloud Gateway Server forwards the X-Forwarded-For and Forwarded headers from untrusted proxies in certain configuration scenarios. This affects both the WebMVC and WebFlux Gateway Servers. Af… CWE-346
 Origin Validation Error
CVE-2026-47825 2026-06-17 00:23 2026-06-16 Show GitHub Exploit DB Packet Storm