Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224391 4 警告 オラクル - Oracle Siebel CRM の Siebel Enterprise Application Integration における Web Services の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-0416 2013-11-8 11:50 2013-04-16 Show GitHub Exploit DB Packet Storm
224392 7.5 危険 MySQL AB
オラクル
- MySQL で使用される yaSSL におけるバッファオーバーフローの脆弱性性 CWE-119
バッファエラー
CVE-2013-1492 2013-11-8 11:49 2013-02-5 Show GitHub Exploit DB Packet Storm
224393 6 警告 オラクル - Oracle Sun Solaris 10 における Bind/Postinstall script の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-0415 2013-11-8 11:49 2013-01-15 Show GitHub Exploit DB Packet Storm
224394 3.3 注意 オラクル - Oracle Sun Solaris 11 における Utility/ksh93 の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-0414 2013-11-8 11:48 2013-01-15 Show GitHub Exploit DB Packet Storm
224395 3.3 注意 Debian
Marc Vertes
- Debian txt2man などの製品で使用される txt2man 用の特定の Debian パッチにおける任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2013-1444 2013-11-8 11:47 2013-09-25 Show GitHub Exploit DB Packet Storm
224396 4.4 警告 オラクル - Oracle Sun Solaris 10 および 11 における Remote Execution Service の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-0413 2013-11-8 11:47 2013-04-16 Show GitHub Exploit DB Packet Storm
224397 3.6 注意 オラクル - Oracle Sun Solaris 8、9、10、および 11 における Utility/pax の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-0412 2013-11-8 11:46 2013-04-16 Show GitHub Exploit DB Packet Storm
224398 5.9 警告 オラクル - Oracle Sun Solaris 8、9、および 10 における RBAC Configuration の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-0411 2013-11-8 11:45 2013-04-16 Show GitHub Exploit DB Packet Storm
224399 4.3 警告 オラクル - Oracle Supply Chain Products Suite の Agile EDM における Base Component - Common Objects の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-0410 2013-11-8 11:44 2013-04-16 Show GitHub Exploit DB Packet Storm
224400 5 警告 オラクル - Oracle Sun Solaris 10 における CPU パフォーマンスカウンターデバイスの処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-0408 2013-11-8 11:43 2013-04-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2321 - - - SOPlanning is vulnerable to Path Traversal in backup endpoints. Authenticated remote attacker is able to exploit a vulnerable endpoint and construct payloads that allow reading and executing files p… CWE-22
Path Traversal
CVE-2026-40547 2026-06-2 01:37 2026-06-1 Show GitHub Exploit DB Packet Storm
2322 - - - SOPlanning does not verify uploaded file extension. An authenticated attacker with access to the backup functionality can upload a crafted ZIP archive containing a legitimate user.csv file alongside … CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-40548 2026-06-2 01:37 2026-06-1 Show GitHub Exploit DB Packet Storm
2323 - - - SOPlanning is vulnerable to Cross‑Site Request Forgery (CSRF) in groupe_save create, modify and delete endpoints. An attacker can craft a malicious website that, when visited by an authenticated user… CWE-352
 Origin Validation Error
CVE-2026-40549 2026-06-2 01:37 2026-06-1 Show GitHub Exploit DB Packet Storm
2324 - - - Use of hard-coded credentials in KS-SOMED allowed an unauthorized attacker access to FTP server that hosted the application's update packages. The attacker with these credentials could upload a malic… CWE-798
 Use of Hard-coded Credentials
CVE-2026-42251 2026-06-2 01:37 2026-06-2 Show GitHub Exploit DB Packet Storm
2325 8.8 HIGH
Network
google chrome Integer overflow in WTF in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) CWE-472
 External Control of Assumed-Immutable Web Parameter
CVE-2026-10015 2026-06-2 00:26 2026-05-29 Show GitHub Exploit DB Packet Storm
2326 7.5 HIGH
Network
google chrome Use after free in Views in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (C… CWE-416
 Use After Free
CVE-2026-10003 2026-06-2 00:25 2026-05-29 Show GitHub Exploit DB Packet Storm
2327 8.8 HIGH
Network
google chrome Use after free in SVG in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) CWE-416
 Use After Free
CVE-2026-10007 2026-06-2 00:17 2026-05-29 Show GitHub Exploit DB Packet Storm
2328 5.3 MEDIUM
Network
- - A vulnerability was discovered on Stormshield Network Security  * 4.3.0 to 4.3.41,  * 4.8.0 to 4.8.15,  * 5.0.0 to 5.0.5 It is possible to execute a reflected XSS attack on the … CWE-79
Cross-site Scripting
CVE-2026-8474 2026-06-2 00:17 2026-06-1 Show GitHub Exploit DB Packet Storm
2329 5.3 MEDIUM
Network
apache fesod Server-Side Request Forgery (SSRF) in the UrlImageConverter component of Apache Fesod (Incubating) fesod-sheet before 2.0.2-incubating allows attackers to cause outbound network requests to internal … CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-49328 2026-06-2 00:16 2026-06-1 Show GitHub Exploit DB Packet Storm
2330 - - - NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. In 0.24.8 and earlier, quic_stream_recv can dereference a null substream pointer when a substream is in reopen state. The code fi… CWE-476
 NULL Pointer Dereference
CVE-2026-45151 2026-06-2 00:16 2026-05-30 Show GitHub Exploit DB Packet Storm