Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226121 7.8 危険 Squid-cache.org - Squid の errorpage.cc の strHdrAcptLangGetItem 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1839 2013-10-3 14:08 2013-03-14 Show GitHub Exploit DB Packet Storm
226122 10 危険 IBM - IBM SPSS Collaboration and Deployment Services における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-5370 2013-10-3 11:11 2013-09-26 Show GitHub Exploit DB Packet Storm
226123 10 危険 IBM - IBM SPSS Collaboration and Deployment Services における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-4042 2013-10-3 11:05 2013-09-26 Show GitHub Exploit DB Packet Storm
226124 8.3 危険 日立 - JP1/Base における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
- 2013-10-3 10:56 2013-09-30 Show GitHub Exploit DB Packet Storm
226125 8.3 危険 日立 - JP1/Automatic Job Management System 3 および JP1/Automatic Job Management System 2 における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
- 2013-10-3 10:51 2013-09-30 Show GitHub Exploit DB Packet Storm
226126 3.5 注意 Zabbix - Zabbix における LDAP バインドパスワードを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5572 2013-10-3 10:37 2013-08-23 Show GitHub Exploit DB Packet Storm
226127 4.3 警告 IBM - IBM Maximo Asset Management におけるアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-5395 2013-10-2 19:53 2013-09-25 Show GitHub Exploit DB Packet Storm
226128 3.5 注意 IBM - IBM Maximo Asset Management における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-5382 2013-10-2 19:46 2013-09-25 Show GitHub Exploit DB Packet Storm
226129 1.9 注意 IBM - IBM Maximo Asset Management における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-5380 2013-10-2 19:38 2013-09-25 Show GitHub Exploit DB Packet Storm
226130 5.5 警告 IBM - IBM Maximo Asset Management におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4027 2013-10-2 19:34 2013-09-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
4031 7.8 HIGH
Local
- - Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which can potentially incorrectly compute the size of an internal buffer, leading to a heap memory out-of-bounds read in notification han… CWE-125
Out-of-bounds Read
CVE-2026-47333 2026-05-29 11:45 2026-05-29 Show GitHub Exploit DB Packet Storm
4032 5.5 MEDIUM
Local
- - Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly sleep while holding a spinlock in notification handling code. The bug can be triggered by an unprivileged local user an… CWE-833
 Deadlock
CVE-2026-47334 2026-05-29 11:45 2026-05-29 Show GitHub Exploit DB Packet Storm
4033 5.5 MEDIUM
Local
- - Ubuntu Linux 6.8 contains SAUCE patches with a possible NULL pointer dereference in the handling of AppArmor notifications. The bug can be triggered by an unprivileged local user. This can lead to a … CWE-476
 NULL Pointer Dereference
CVE-2026-47335 2026-05-29 11:45 2026-05-29 Show GitHub Exploit DB Packet Storm
4034 3.3 LOW
Local
- - Ubuntu Linux 6.8 contains SAUCE patches with a possible use of an uninitialized variable in AppArmor AF_INET/AF_INET6 socket mediation code. The bug can be triggered by an unprivileged local user and… CWE-457
 Use of Uninitialized Variable
CVE-2026-47336 2026-05-29 11:45 2026-05-29 Show GitHub Exploit DB Packet Storm
4035 3.3 LOW
Local
- - Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible NULL pointer dereference in the handling of AF_INET/AF_INET6 socket mediation. The bug can be triggered by an unprivileged local u… CWE-476
 NULL Pointer Dereference
CVE-2026-47337 2026-05-29 11:45 2026-05-29 Show GitHub Exploit DB Packet Storm
4036 9.8 CRITICAL
Network
- - The Advanced Custom Fields: Extended plugin for WordPress is vulnerable to Privilege Escalation via Validation Bypass in all versions up to and including 0.9.2.5. The vulnerability exists due to the … CWE-269
 Improper Privilege Management
CVE-2026-8809 2026-05-29 11:40 2026-05-29 Show GitHub Exploit DB Packet Storm
4037 - - - Use after free in SurfaceCapture in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) CWE-416
 Use After Free
CVE-2026-9961 2026-05-29 11:35 2026-05-29 Show GitHub Exploit DB Packet Storm
4038 - - - Out of bounds write in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) CWE-787
 Out-of-bounds Write
CVE-2026-9965 2026-05-29 11:35 2026-05-29 Show GitHub Exploit DB Packet Storm
4039 7.5 HIGH
Network
benoitc hackney Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in benoitc hackney allows HTTP Request/Response Splitting. The WebSocket upgrade code in src/hackney_ws.erl copies the host,… CWE-93
CRLF Injection
CVE-2026-47072 2026-05-29 05:27 2026-05-26 Show GitHub Exploit DB Packet Storm
4040 7.5 HIGH
Network
benoitc hackney Improper Neutralization of CRLF Sequences vulnerability in benoitc hackney allows HTTP Request Splitting. hackney does not percent-encode carriage return (\r) or line feed (\n) characters in the URL … CWE-93
CRLF Injection
CVE-2026-47075 2026-05-29 05:26 2026-05-26 Show GitHub Exploit DB Packet Storm