Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2511 4.3 警告
Network
Google Google Chrome GoogleのGoogle Chromeにおける同一生成元ポリシー違反に関する脆弱性 CWE-346
同一生成元ポリシー違反
CVE-2026-11309 2026-06-9 14:15 2026-06-5 Show GitHub Exploit DB Packet Storm
2512 8.8 重要
Local
レッドハット Red Hat OpenShift Container Platform レッドハットのRed Hat OpenShift Container Platformにおけるシステム構成または設定の外部制御に関する脆弱性 CWE-15
システム構成または設定の外部制御
CVE-2026-1784 2026-06-9 14:15 2026-06-2 Show GitHub Exploit DB Packet Storm
2513 6.1 警告
Network
シスコシステムズ Cisco WebEx Meetings シスコシステムズのCisco WebEx Meetingsにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-20233 2026-06-9 14:14 2026-06-3 Show GitHub Exploit DB Packet Storm
2514 6 警告
Network
Arista Networks, Inc. NG Firewall Arista Networks, Inc.のNG FirewallにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-25620 2026-06-9 14:14 2026-06-5 Show GitHub Exploit DB Packet Storm
2515 6 警告
Network
Arista Networks, Inc. NG Firewall Arista Networks, Inc.のNG FirewallにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-25621 2026-06-9 14:14 2026-06-5 Show GitHub Exploit DB Packet Storm
2516 6 警告
Network
Arista Networks, Inc. NG Firewall Arista Networks, Inc.のNG FirewallにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-25622 2026-06-9 14:14 2026-06-5 Show GitHub Exploit DB Packet Storm
2517 6 警告
Network
Arista Networks, Inc. NG Firewall Arista Networks, Inc.のNG FirewallにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-25623 2026-06-9 14:14 2026-06-5 Show GitHub Exploit DB Packet Storm
2518 4.8 警告
Network
Arista Networks, Inc. NG Firewall Arista Networks, Inc.のNG Firewallにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-25624 2026-06-9 14:14 2026-06-5 Show GitHub Exploit DB Packet Storm
2519 6.8 警告
Adjacent
レッドハット
Samba Project
Red Hat OpenShift Container Platform
Samba
Red Hat Enterprise Linux
レッドハット等の複数ベンダの製品におけるデータの信頼性についての不十分な検証に関する脆弱性 CWE-345
データの信頼性についての不十分な検証
CVE-2026-3012 2026-06-9 14:14 2026-05-27 Show GitHub Exploit DB Packet Storm
2520 2.2
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける例外的な状態のチェックに関する脆弱性 CWE-754
例外的な状態における不適切なチェック
CVE-2026-3109 2026-06-9 14:14 2026-03-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
4071 - - - Improper access control for register interface in the input-output memory management unit (IOMMU) could allow a privileged attacker to cause non-coherent accesses by the AMD secure processor (ASP) po… CWE-1262
 Improper Access Control for Register Interface
CVE-2025-54509 2026-06-10 03:16 2026-06-10 Show GitHub Exploit DB Packet Storm
4072 8.6 HIGH
Network
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ibmveth: Disable GSO for packets with small MSS Some physical adapters on Power systems do not support segmentation offload when … NVD-CWE-noinfo
CVE-2026-46273 2026-06-10 02:31 2026-06-4 Show GitHub Exploit DB Packet Storm
4073 8.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: drm/xe/pf: Fix sysfs initialization In case of devm_add_action_or_reset() failure the provided cleanup action will be run immedia… CWE-416
 Use After Free
CVE-2026-46264 2026-06-10 02:26 2026-06-4 Show GitHub Exploit DB Packet Storm
4074 8.1 HIGH
Network
google chrome Inappropriate implementation in Plugins in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (… CWE-346
 Origin Validation Error
CVE-2026-11693 2026-06-10 02:26 2026-06-9 Show GitHub Exploit DB Packet Storm
4075 5.4 MEDIUM
Network
google chrome Inappropriate implementation in Guest View in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium) CWE-20
NVD-CWE-noinfo
 Improper Input Validation 
CVE-2026-11701 2026-06-10 02:24 2026-06-9 Show GitHub Exploit DB Packet Storm
4076 7.5 HIGH
Network
perl dbi DBI versions before 1.648 for Perl saved errors in a limited-sized buffer. Error messages that were returned when RaiseError, PrintError or HandleError were set were written to a 200-byte buffer wit… CWE-787
 Out-of-bounds Write
CVE-2026-9698 2026-06-10 02:20 2026-06-9 Show GitHub Exploit DB Packet Storm
4077 9.8 CRITICAL
Network
- - YesWiki is a wiki system written in PHP. Prior to version 4.6.6, an unsafe execution vulnerability exists in the Bazar form field calculator (CalcField.php) of YesWiki. The application attempts to sa… CWE-94
CWE-1333
Code Injection
 Inefficient Regular Expression Complexity
CVE-2026-52778 2026-06-10 02:17 2026-06-9 Show GitHub Exploit DB Packet Storm
4078 6.5 MEDIUM
Network
- - Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized attacker to perform spoofing over a network. CWE-200
Information Exposure
CVE-2026-50508 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
4079 8.8 HIGH
Network
- - Hermes WebUI before version 0.51.311 contains a remote code execution vulnerability that allows authenticated attackers to execute arbitrary commands by placing malicious executable Git configuration… CWE-78
OS Command 
CVE-2026-49959 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
4080 5.0 MEDIUM
Local
- - Hermes WebUI before version 0.51.303 contains a time-of-check time-of-use (TOCTOU) race condition vulnerability in the git_discard function within api/workspace_git.py that allows attackers to delete… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-49958 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm