Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223671 4.3 警告 Potix Corporation - ZK Framework におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5966 2013-11-21 14:37 2013-10-8 Show GitHub Exploit DB Packet Storm
223672 6.8 警告 ISC, Inc. - ISC BIND などの製品で使用される Microsoft Windows Server 2008 の Winsock WSAIoctl API における IP アドレス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6230 2013-11-20 18:06 2013-11-5 Show GitHub Exploit DB Packet Storm
223673 2.1 注意 Linux - Linux Kernel の kernel/signal.c における重要な情報を取得される脆弱性 CWE-399
リソース管理の問題
CVE-2013-2141 2013-11-20 18:03 2013-04-25 Show GitHub Exploit DB Packet Storm
223674 6.4 警告 レッドハット - Red Hat JBoss Enterprise Application Platform におけるセッションをハイジャックされる脆弱性 CWE-16
環境設定
CVE-2013-4128 2013-11-20 17:36 2013-08-12 Show GitHub Exploit DB Packet Storm
223675 7.2 危険 VMware - Linux 上で稼働する VMware Workstation および VMware Player におけるホスト OS の権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5972 2013-11-20 17:14 2013-11-14 Show GitHub Exploit DB Packet Storm
223676 5.8 警告 Google - Google Chrome におけるサンドボックスの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6802 2013-11-20 16:56 2013-11-14 Show GitHub Exploit DB Packet Storm
223677 4.3 警告 Percipient Studios - Umbraco CMS 用 Percipient Studios ImageGen の imagegen.ashx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0741 2013-11-20 16:46 2013-10-31 Show GitHub Exploit DB Packet Storm
223678 3.5 注意 D-Link Systems, Inc. - D-Link DSL-2760U ゲートウェイにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5223 2013-11-20 15:18 2013-11-12 Show GitHub Exploit DB Packet Storm
223679 7.6 危険 D-Link Systems, Inc. - D-Link DSL-2740B ゲートウェイのファームウェアにおける認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2271 2013-11-20 15:18 2013-11-14 Show GitHub Exploit DB Packet Storm
223680 6.8 警告 Sunil Nanda - WordPress 用 Blue Wrench Video Widget プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-6797 2013-11-20 15:01 2013-10-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
661 6.5 MEDIUM
Network
google android In multiple functions of ubsan_throwing_runtime.cpp, there is a possible UBSan failure due to an integer overflow. This could lead to remote denial of service with no additional execution privileges … New CWE-190
 Integer Overflow or Wraparound
CVE-2026-0041 2026-06-3 03:45 2026-06-2 Show GitHub Exploit DB Packet Storm
662 6.5 MEDIUM
Network
google android In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a crash due to an integer overflow. This could lead to remote denial of service with no additional execution priv… New CWE-190
 Integer Overflow or Wraparound
CVE-2026-0040 2026-06-3 03:44 2026-06-2 Show GitHub Exploit DB Packet Storm
663 6.5 MEDIUM
Network
google android In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer overflow. This could lead to remote denial of service with no additional execut… New CWE-190
 Integer Overflow or Wraparound
CVE-2026-0039 2026-06-3 03:44 2026-06-2 Show GitHub Exploit DB Packet Storm
664 5.5 MEDIUM
Local
google android In multiple functions of AccessibilityManagerService.java, there is a possible persistent denial of service due to improper input validation. This could lead to local denial of service with no additi… New CWE-20
 Improper Input Validation 
CVE-2026-0018 2026-06-3 03:44 2026-06-2 Show GitHub Exploit DB Packet Storm
665 7.1 HIGH
Network
ibm engineering_lifecycle_management IBM Engineering Lifecycle Management 7.0.3 Interim Fix 001 through  Interim Fix 021, 7.1.0  Interim Fix 001 through  Interim Fix 009, and 7.2.0 and 7.2.0 Interim Fix 001 is vulnerable to an XML exter… Update CWE-611
XXE
CVE-2026-3603 2026-06-3 03:44 2026-05-27 Show GitHub Exploit DB Packet Storm
666 7.5 HIGH
Network
viewcomponent view_component view_component is a framework for building reusable, testable, and encapsulated view components in Ruby on Rails. From 3.0.0 to 4.9.0, the system test entrypoint canonicalizes a user-controlled file … Update CWE-187
 Partial String Comparison
CVE-2026-44837 2026-06-3 03:43 2026-05-27 Show GitHub Exploit DB Packet Storm
667 3.3 LOW
Local
google android In updateProvidersWhenServiceRemoved of CredentialManagerService.java, there is a possible way to override settings across users due to a permissions bypass. This could lead to local information disc… New CWE-269
 Improper Privilege Management
CVE-2026-0016 2026-06-3 03:41 2026-06-2 Show GitHub Exploit DB Packet Storm
668 7.5 HIGH
Network
ibm websphere_application_server IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to HTTP request smuggl… Update CWE-444
HTTP Request Smuggling
CVE-2026-8620 2026-06-3 03:40 2026-05-27 Show GitHub Exploit DB Packet Storm
669 9.8 CRITICAL
Network
shepherdwind velocity.js Velocity.js is a JavaScript implementation of the Apache Velocity template engine. In 2.1.5 and earlier, a prototype pollution vulnerability was discovered in velocityjs. This issue occurs during the… Update CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2026-44966 2026-06-3 03:40 2026-05-27 Show GitHub Exploit DB Packet Storm
670 8.2 HIGH
Network
github enterprise_server A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to send crafted requests to internal services by exploiting insu… Update CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-9312 2026-06-3 03:31 2026-05-27 Show GitHub Exploit DB Packet Storm