Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251201 7.2 危険 マイクロソフト - Microsoft Windows のカーネルモードドライバ内にある win32k.sys における権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2010-3942 2011-01-17 14:35 2010-12-14 Show GitHub Exploit DB Packet Storm
251202 7.2 危険 マイクロソフト - Microsoft Windows のカーネルモードドライバ内にある win32k.sys における権限昇格の脆弱性 CWE-399
リソース管理の問題
CVE-2010-3941 2011-01-17 14:29 2010-12-14 Show GitHub Exploit DB Packet Storm
251203 7.2 危険 マイクロソフト - Microsoft Windows のカーネルモードドライバ内にある win32k.sys における権限昇格の脆弱性 CWE-399
リソース管理の問題
CVE-2010-3940 2011-01-14 15:55 2010-12-14 Show GitHub Exploit DB Packet Storm
251204 7.2 危険 マイクロソフト - Microsoft Windows のカーネルモードドライバ内にある win32k.sys におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-3939 2011-01-14 15:53 2010-12-14 Show GitHub Exploit DB Packet Storm
251205 9.3 危険 マイクロソフト - Microsoft Windows の Internet Connection Signup Wizard における権限昇格の脆弱性 CWE-Other
その他
CVE-2010-3144 2011-01-14 15:49 2010-12-14 Show GitHub Exploit DB Packet Storm
251206 9.3 危険 マイクロソフト - Windows Address Book の wab.exe における権限昇格の脆弱性 CWE-Other
その他
CVE-2010-3147 2011-01-14 15:47 2010-12-14 Show GitHub Exploit DB Packet Storm
251207 6.9 警告 マイクロソフト - Microsoft Windows における権限昇格の脆弱性 CWE-Other
その他
CVE-2010-3966 2011-01-14 15:42 2010-12-14 Show GitHub Exploit DB Packet Storm
251208 6.9 警告 マイクロソフト - Windows Media Encoder における権限昇格の脆弱性 CWE-Other
その他
CVE-2010-3965 2011-01-14 15:39 2010-12-14 Show GitHub Exploit DB Packet Storm
251209 6.9 警告 マイクロソフト - Microsoft Windows Movie Maker における権限昇格の脆弱性 CWE-Other
その他
CVE-2010-3967 2011-01-14 15:36 2010-12-14 Show GitHub Exploit DB Packet Storm
251210 7.2 危険 マイクロソフト - Microsoft Windows の Windows Task Scheduler における権限昇格の脆弱性 CWE-20
不適切な入力確認
CVE-2010-3338 2011-01-14 15:31 2010-12-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 28, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
671 9.8 CRITICAL
Network
filigran openaev OpenAEV is an open source platform allowing organizations to plan, schedule and conduct cyber adversary simulation campaign and tests. Starting in version 1.0.0 and prior to version 2.0.13, OpenAEV's… Update CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2026-24467 2026-04-26 03:00 2026-04-21 Show GitHub Exploit DB Packet Storm
672 8.8 HIGH
Network
hcltech aion HCL AION is affected by a Cookie with Insecure, Improper, or Missing SameSite vulnerability. This can allow cookies to be sent in cross-site requests, potentially increasing exposure to cross-site r… New CWE-1275
 Sensitive Cookie with Improper SameSite Attribute
CVE-2025-52628 2026-04-26 02:59 2026-02-4 Show GitHub Exploit DB Packet Storm
673 8.8 HIGH
Network
hcltech aion HCL AION está afectado por una Cookie con vulnerabilidad de SameSite insegura, impropia o ausente. Esto puede permitir que las cookies se envíen en peticiones entre sitios, aumentando potencialmente … New CWE-1275
 Sensitive Cookie with Improper SameSite Attribute
CVE-2025-52628 2026-04-26 02:59 2026-02-4 Show GitHub Exploit DB Packet Storm
674 7.5 HIGH
Network
hcltech aion Root File System Not Mounted as Read-Only configuration vulnerability. This can allow unintended modifications to critical system files, potentially increasing the risk of system compromise or unauth… New CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2025-52627 2026-04-26 02:59 2026-02-4 Show GitHub Exploit DB Packet Storm
675 7.5 HIGH
Network
hcltech aion Vulnerabilidad de configuración: Sistema de archivos raíz no montado como solo lectura. Esto puede permitir modificaciones no intencionadas a archivos críticos del sistema, aumentando potencialmente … New CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2025-52627 2026-04-26 02:59 2026-02-4 Show GitHub Exploit DB Packet Storm
676 9.8 CRITICAL
Network
hcltech aion A Potential Command Injection vulnerability in HCL AION.  An This can allow unintended command execution, potentially leading to unauthorized actions on the underlying system.This issue affects AIO… New CWE-78
OS Command 
CVE-2025-52626 2026-04-26 02:58 2026-02-4 Show GitHub Exploit DB Packet Storm
677 9.8 CRITICAL
Network
hcltech aion Una posible vulnerabilidad de inyección de comandos en HCL AION. Esto puede permitir la ejecución no intencionada de comandos, lo que podría llevar a acciones no autorizadas en el sistema subyacente.… New CWE-78
OS Command 
CVE-2025-52626 2026-04-26 02:58 2026-02-4 Show GitHub Exploit DB Packet Storm
678 7.5 HIGH
Network
hcltech aion A vulnerability  Cacheable SSL Page Found vulnerability has been identified in HCL AION.  Cached data may expose credentials, system identifiers, or internal file paths to attackers with access t… New CWE-525
 Use of Web Browser Cache Containing Sensitive Information
CVE-2025-52625 2026-04-26 02:58 2025-10-10 Show GitHub Exploit DB Packet Storm
679 7.5 HIGH
Network
- - A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_data() processing path. When a specially crafted RAR5 archive is processe… Update CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-4111 2026-04-26 02:16 2026-03-14 Show GitHub Exploit DB Packet Storm
680 7.5 HIGH
Network
- - Se identificó una vulnerabilidad en la lógica de descompresión de archivos RAR5 de la biblioteca libarchive, específicamente dentro de la ruta de procesamiento de archive_read_data(). Cuando se proce… Update CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-4111 2026-04-26 02:16 2026-03-14 Show GitHub Exploit DB Packet Storm