Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226101 5 警告 オラクル - Oracle E-Business Suite の Oracle Application Object Library における Discoverer に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0398 2014-01-17 12:13 2014-01-14 Show GitHub Exploit DB Packet Storm
226102 5.5 警告 オラクル - Oracle E-Business Suite の Oracle Payroll における Exception Reporting に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5890 2014-01-17 12:12 2014-01-14 Show GitHub Exploit DB Packet Storm
226103 1.7 注意 オラクル - Oracle E-Business Suite の Oracle Application Object Library における Logging に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5874 2014-01-17 12:11 2014-01-14 Show GitHub Exploit DB Packet Storm
226104 5 警告 オラクル - Oracle Fusion Middleware の Oracle WebCenter Portal における Page Service に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5869 2014-01-17 12:07 2014-01-14 Show GitHub Exploit DB Packet Storm
226105 2.6 注意 オラクル - Oracle Fusion Middleware の Oracle iPlanet Web Proxy Server における Administration に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5808 2014-01-17 12:06 2014-01-14 Show GitHub Exploit DB Packet Storm
226106 7.5 危険 オラクル - Oracle Fusion Middleware の Oracle Reports Developer における Security および Authentication に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5785 2014-01-17 12:06 2014-01-14 Show GitHub Exploit DB Packet Storm
226107 5 警告 Google - Google Chrome の url/url_canon_relative.cc の DoResolveRelativeHost 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-2920 2014-01-17 11:57 2013-10-1 Show GitHub Exploit DB Packet Storm
226108 6.8 警告 Google - Google Chrome で使用される Blink のリソースローダにおけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2013-2921 2014-01-17 11:56 2013-10-1 Show GitHub Exploit DB Packet Storm
226109 6.8 警告 Google - Google Chrome で使用される Blink の core/html/HTMLTemplateElement.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-2922 2014-01-17 11:55 2013-10-1 Show GitHub Exploit DB Packet Storm
226110 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-2923 2014-01-17 11:53 2013-10-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
651 6.9 MEDIUM
Network
- - A flaw was found in the Pen Drive report generator. Cluster-sourced data is rendered into HTML reports without proper escaping or sanitization. An attacker with cluster administrator privileges can i… CWE-79
Cross-site Scripting
CVE-2026-13083 2026-06-27 13:17 2026-06-26 Show GitHub Exploit DB Packet Storm
652 - - - Flowise through 2.2.4 contains an unauthenticated arbitrary file upload vulnerability in the /api/v1/attachments endpoint when storageType is set to local. Attackers can exploit path traversal in the… CWE-73
 External Control of File Name or Path
CVE-2025-71333 2026-06-27 13:17 2026-06-26 Show GitHub Exploit DB Packet Storm
653 - - - AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.32, there is a DoS vulnerability in AITextSummarizerBlock. Mali… CWE-405
CWE-770
 Asymmetric Resource Consumption (Amplification)
 Allocation of Resources Without Limits or Throttling
CVE-2025-32394 2026-06-27 13:17 2026-06-27 Show GitHub Exploit DB Packet Storm
654 5.4 MEDIUM
Network
getgrav grav Grav before 1.6.30 contains a cross-site scripting vulnerability in the Admin plugin page editor default security configuration. Privileged users with page editing capabilities can inject malicious s… CWE-79
Cross-site Scripting
CVE-2020-37256 2026-06-27 13:17 2026-06-26 Show GitHub Exploit DB Packet Storm
655 - - - A command injection vulnerability has been identified in the DHCP option processing logic in multiple TP-Link router models, due to insufficient validation of externally supplied DHCP option data. An… CWE-78
OS Command 
CVE-2026-11834 2026-06-27 07:16 2026-06-23 Show GitHub Exploit DB Packet Storm
656 7.5 HIGH
Network
imagemagick imagemagick ImageMagick before 7.1.2-15 contains a memory leak vulnerability in multiple coders that write raw pixel data where allocated objects are not properly freed. Attackers can trigger this leak by proces… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2026-56368 2026-06-27 06:51 2026-06-24 Show GitHub Exploit DB Packet Storm
657 7.8 HIGH
Local
imagemagick imagemagick ImageMagick before 7.1.2-19 contains an out-of-bounds access vulnerability in ConnectedComponentsImage() when processing connected-components artifacts with invalid indices. Attackers can trigger acc… CWE-125
Out-of-bounds Read
CVE-2026-56370 2026-06-27 06:50 2026-06-24 Show GitHub Exploit DB Packet Storm
658 7.5 HIGH
Network
angularjs angularjs Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.1, 21.2.17, and 20.3.25, a Denial of Service (DoS) vu… CWE-400
CWE-1333
 Uncontrolled Resource Consumption
 Inefficient Regular Expression Complexity
CVE-2026-54268 2026-06-27 06:36 2026-06-23 Show GitHub Exploit DB Packet Storm
659 9.8 CRITICAL
Network
langflow langflow IBM Langflow OSS 1.0.0 through 1.8.4 could allow unauthenticated attackers to access protected MCP project resources and execute MCP operations due to improper authorization enforcement in the Stream… CWE-287
NVD-CWE-noinfo
Improper Authentication
CVE-2026-7664 2026-06-27 06:29 2026-06-23 Show GitHub Exploit DB Packet Storm
660 6.1 MEDIUM
Network
ibm datacap
datacap_navigator
IBM Datacap 9.1.7, 9.1.8, and 9.1.9 and IBM Datacap Navigator 9.1.7, 9.1.8, and 9.1.9 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary J… CWE-79
Cross-site Scripting
CVE-2026-8059 2026-06-27 06:27 2026-06-23 Show GitHub Exploit DB Packet Storm