Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 12:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223211 4.3 警告 Drupal - Drupal 用 EventCalendar モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1607 2014-02-18 17:31 2014-01-23 Show GitHub Exploit DB Packet Storm
223212 7.5 危険 Restlet - Restlet の ObjectRepresentation クラスのデフォルト設定における任意の Java コードを実行される脆弱性 CWE-16
環境設定
CVE-2013-4271 2014-02-18 17:24 2013-09-7 Show GitHub Exploit DB Packet Storm
223213 7.5 危険 Restlet - Restlet の ObjectRepresentation クラスのデフォルト設定における任意の Java コードを実行される脆弱性 CWE-16
環境設定
CVE-2013-4221 2014-02-18 17:23 2013-09-7 Show GitHub Exploit DB Packet Storm
223214 4.7 警告 Linux - Linux Kernel の net/llc/af_llc.c における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-3231 2014-02-18 17:17 2013-04-7 Show GitHub Exploit DB Packet Storm
223215 6.8 警告 PostgreSQL.org
レッドハット
- PostgreSQL におけるサービス運用妨害 (サーバクラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-0255 2014-02-18 15:26 2013-02-7 Show GitHub Exploit DB Packet Storm
223216 9.3 危険 Poster Software - Poster Software PUBLISH-iT におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0980 2014-02-18 10:41 2014-02-5 Show GitHub Exploit DB Packet Storm
223217 5 警告 GNU Project
レッドハット
- glibc におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0242 2014-02-17 18:43 2013-02-8 Show GitHub Exploit DB Packet Storm
223218 4.3 警告 レッドハット - Spacewalk および Red Hat Network Satellite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4415 2014-02-17 15:11 2013-06-28 Show GitHub Exploit DB Packet Storm
223219 3.5 注意 レッドハット - Spacewalk および Red Hat Network Satellite の account/EditAddress.do におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1871 2014-02-17 15:10 2013-03-19 Show GitHub Exploit DB Packet Storm
223220 3.5 注意 レッドハット - Spacewalk および Red Hat Network Satellite の systems/sdc/notes.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6149 2014-02-17 15:10 2012-11-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
921 7.5 HIGH
Network
perl dbi DBI versions before 1.648 for Perl saved errors in a limited-sized buffer. Error messages that were returned when RaiseError, PrintError or HandleError were set were written to a 200-byte buffer wit… New CWE-787
 Out-of-bounds Write
CVE-2026-9698 2026-06-10 02:20 2026-06-9 Show GitHub Exploit DB Packet Storm
922 9.8 CRITICAL
Network
- - YesWiki is a wiki system written in PHP. Prior to version 4.6.6, an unsafe execution vulnerability exists in the Bazar form field calculator (CalcField.php) of YesWiki. The application attempts to sa… New CWE-94
CWE-1333
Code Injection
 Inefficient Regular Expression Complexity
CVE-2026-52778 2026-06-10 02:17 2026-06-9 Show GitHub Exploit DB Packet Storm
923 6.5 MEDIUM
Network
- - Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized attacker to perform spoofing over a network. New CWE-200
Information Exposure
CVE-2026-50508 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
924 8.8 HIGH
Network
- - Hermes WebUI before version 0.51.311 contains a remote code execution vulnerability that allows authenticated attackers to execute arbitrary commands by placing malicious executable Git configuration… New CWE-78
OS Command 
CVE-2026-49959 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
925 5.0 MEDIUM
Local
- - Hermes WebUI before version 0.51.303 contains a time-of-check time-of-use (TOCTOU) race condition vulnerability in the git_discard function within api/workspace_git.py that allows attackers to delete… New CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-49958 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
926 5.3 MEDIUM
Network
- - Hermes WebUI before version 0.51.270 contains a resource exhaustion vulnerability that allows unauthenticated remote attackers to degrade service availability by repeatedly calling the passkey option… New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-49955 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
927 6.5 MEDIUM
Network
- - The Apache Airflow Samba provider's `GCSToSambaOperator` joined GCS object names to the SMB destination path without a containment check, so an object named with `../` segments resolved a write path … New CWE-22
Path Traversal
CVE-2026-49818 2026-06-10 02:17 2026-06-9 Show GitHub Exploit DB Packet Storm
928 7.8 HIGH
Local
- - Improper access control in Microsoft PC Manager allows an authorized attacker to bypass a security feature locally. New CWE-284
Improper Access Control
CVE-2026-49161 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
929 7.1 HIGH
Local
- - Improper input validation in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally. New CWE-20
CWE-23
 Improper Input Validation 
 Relative Path Traversal
CVE-2026-48569 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
930 7.8 HIGH
Local
- - Untrusted search path in Windows Narrator Braille allows an authorized attacker to elevate privileges locally. New CWE-426
 Untrusted Search Path
CVE-2026-48565 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm