Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2231 5.3 警告
Network
Esri ArcGIS Server EsriのArcGIS Serverにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-2812 2026-05-25 10:23 2026-05-20 Show GitHub Exploit DB Packet Storm
2232 4.1 警告
Network
Esri ArcGIS Server EsriのArcGIS Serverにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-2813 2026-05-25 10:23 2026-05-20 Show GitHub Exploit DB Packet Storm
2233 7 重要
Local
Samba Project rsync Samba ProjectのrsyncにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-29518 2026-05-25 10:23 2026-05-20 Show GitHub Exploit DB Packet Storm
2234 7.1 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-31430 2026-05-25 10:23 2026-04-20 Show GitHub Exploit DB Packet Storm
2235 8.8 重要
Network
Linux Linux Kernel LinuxのLinux Kernelにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-31432 2026-05-25 10:23 2026-04-22 Show GitHub Exploit DB Packet Storm
2236 4.3 警告
Network
GLPI-PROJECT.ORG GLPI GLPI-PROJECT.ORGのGLPIにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-32312 2026-05-25 10:23 2026-05-19 Show GitHub Exploit DB Packet Storm
2237 7.8 重要
Local
mullvad mullvad vpn mullvadのmullvad vpnにおける複数の脆弱性 CWE-269
CWE-345
CWE-427
CWE-noinfo
CVE-2026-32323 2026-05-25 10:23 2026-05-19 Show GitHub Exploit DB Packet Storm
2238 6.5 警告
Network
Faraday Project Faraday Faraday ProjectのFaradayにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-33637 2026-05-25 10:22 2026-05-19 Show GitHub Exploit DB Packet Storm
2239 8.8 重要
Local
FreeBSD FreeBSD FreeBSDにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-39461 2026-05-25 10:22 2026-05-21 Show GitHub Exploit DB Packet Storm
2240 6.5 警告
Network
plane plane planeにおけるデータクエリロジックの特殊要素の不適切な中立化に関する脆弱性 CWE-943
データクエリロジックの特殊要素の不適切な中立化
CVE-2026-40102 2026-05-25 10:22 2026-05-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311451 - plone plone Cross-site scripting (XSS) vulnerability in PortalTransforms in Plone 2.1 through 3.3.4 before hotfix 20100612 allows remote attackers to inject arbitrary web script or HTML via the safe_html transfo… CWE-79
Cross-site Scripting
CVE-2010-2422 2024-11-21 10:16 2010-06-24 Show GitHub Exploit DB Packet Storm
311452 - apple cups The cupsDoAuthentication function in auth.c in the client in CUPS before 1.4.4, when HAVE_GSSAPI is omitted, does not properly handle a demand for authorization, which allows remote CUPS servers to c… CWE-399
 Resource Management Errors
CVE-2010-2432 2024-11-21 10:16 2010-06-23 Show GitHub Exploit DB Packet Storm
311453 - apple cups The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cach… CWE-59
Link Following
CVE-2010-2431 2024-11-21 10:16 2010-06-23 Show GitHub Exploit DB Packet Storm
311454 - opera opera_browser Multiple unspecified vulnerabilities in Opera before 10.54 have unknown impact and attack vectors related to (1) "extremely severe," (2) "highly severe," (3) "moderately severe," and (4) "less severe… NVD-CWE-noinfo
CVE-2010-2421 2024-11-21 10:16 2010-06-23 Show GitHub Exploit DB Packet Storm
311455 - fenrir-inc activegeckobrowser Multiple unspecified vulnerabilities in Fenrir Inc. ActiveGeckoBrowser 1.0.0 and 1.0.5 alpha, a module for the Sleipnir web browser, allow remote attackers to cause a denial of service (crash) and po… NVD-CWE-noinfo
CVE-2010-2420 2024-11-21 10:16 2010-06-23 Show GitHub Exploit DB Packet Storm
311456 - activewebsoftwares ewebquiz SQL injection vulnerability in eWebQuiz.asp in ActiveWebSoftwares.com eWebquiz 8 allows remote attackers to execute arbitrary SQL commands via the QuizType parameter, a different vector than CVE-2007… CWE-89
SQL Injection
CVE-2010-2359 2024-11-21 10:16 2010-06-22 Show GitHub Exploit DB Packet Storm
311457 - jeffkilroy nakid_cms PHP remote file inclusion vulnerability in modules/catalog/upload_photo.php in Nakid CMS 0.5.2, when magic_quotes_gpc is disabled and register_globals is enabled, allows remote attackers to execute a… CWE-94
Code Injection
CVE-2010-2358 2024-11-21 10:16 2010-06-22 Show GitHub Exploit DB Packet Storm
311458 - eicrasoft eicra_realestate_script SQL injection vulnerability in index.php in Eicra Realestate Script 1.0 and 1.6.0 allows remote attackers to execute arbitrary SQL commands via the p_id parameter. NOTE: some of these details are ob… CWE-89
SQL Injection
CVE-2010-2357 2024-11-21 10:16 2010-06-22 Show GitHub Exploit DB Packet Storm
311459 - pilotgroup elms_pro Cross-site scripting (XSS) vulnerability in subscribe.php in Pilot Group (PG) eLMS Pro allows remote attackers to inject arbitrary web script or HTML via the course_id parameter. CWE-79
Cross-site Scripting
CVE-2010-2356 2024-11-21 10:16 2010-06-22 Show GitHub Exploit DB Packet Storm
311460 - pilotgroup elms_pro Cross-site scripting (XSS) vulnerability in error.php in Pilot Group (PG) eLMS Pro allows remote attackers to inject arbitrary web script or HTML via the message parameter. NOTE: the provenance of t… CWE-79
Cross-site Scripting
CVE-2010-2355 2024-11-21 10:16 2010-06-22 Show GitHub Exploit DB Packet Storm