Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2861 9.8 緊急
Network
Zeit, Inc. Turborepo Vercel, Inc. (旧 Zeit, Inc.)のTurborepoにおける信頼できない検索パスに関する脆弱性 CWE-426
信頼性のない検索パス
CVE-2026-45772 2026-05-21 10:54 2026-05-15 Show GitHub Exploit DB Packet Storm
2862 6.5 警告
Network
Zeit, Inc. Turborepo Vercel, Inc. (旧 Zeit, Inc.)のTurborepoにおける複数の脆弱性 CWE-352
CWE-384
CVE-2026-45773 2026-05-21 10:54 2026-05-15 Show GitHub Exploit DB Packet Storm
2863 7.8 重要
Local
Zeit, Inc. The Turborepo Language Server Protocol (LSP) Vercel, Inc. (旧 Zeit, Inc.)のThe Turborepo Language Server Protocol (LSP)におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-46508 2026-05-21 10:54 2026-05-15 Show GitHub Exploit DB Packet Storm
2864 9.1 緊急
Network
FreeRTOS coreMQTT FreeRTOSのcoreMQTTにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-8686 2026-05-21 10:54 2026-05-15 Show GitHub Exploit DB Packet Storm
2865 9.1 緊急
Network
Aden OpenHive AdenのOpenHiveにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-8757 2026-05-21 10:54 2026-05-17 Show GitHub Exploit DB Packet Storm
2866 6.5 警告
Network
Kilo Code Kilo Code Kilo Codeにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-8765 2026-05-21 10:54 2026-05-17 Show GitHub Exploit DB Packet Storm
2867 6.5 警告
Network
Kilo Code Kilo Code Kilo Codeにおける複数の脆弱性 CWE-200
CWE-284
CWE-noinfo
CVE-2026-8766 2026-05-21 10:54 2026-05-17 Show GitHub Exploit DB Packet Storm
2868 3.3
Local
Continue Continue Continueにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-8770 2026-05-21 10:54 2026-05-18 Show GitHub Exploit DB Packet Storm
2869 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40901 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
2870 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40902 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312381 - oracle database_server Unspecified vulnerability in the Application Express component in Oracle Database Server 3.2.0.00.27 allows remote attackers to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2010-0892 2024-11-21 10:13 2010-07-14 Show GitHub Exploit DB Packet Storm
312382 - oracle timesten_in-memory_database Unspecified vulnerability in the Data Server component in Oracle TimesTen In-Memory Database 7.0.6.0 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NVD-CWE-noinfo
CVE-2010-0873 2024-11-21 10:13 2010-07-14 Show GitHub Exploit DB Packet Storm
312383 - oracle e-business_suite Unspecified vulnerability in the Oracle Knowledge Management component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.2 allows remote attackers to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2010-0836 2024-11-21 10:13 2010-07-14 Show GitHub Exploit DB Packet Storm
312384 - oracle fusion_middleware Unspecified vulnerability in the Wireless component in Oracle Fusion Middleware 10.1.2.3 allows remote attackers to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2010-0835 2024-11-21 10:13 2010-07-14 Show GitHub Exploit DB Packet Storm
312385 - canonical ubuntu_linux pam_motd (aka the MOTD module) in libpam-modules before 1.1.0-2ubuntu1.1 in PAM on Ubuntu 9.10 and libpam-modules before 1.1.1-2ubuntu5 in PAM on Ubuntu 10.04 LTS allows local users to change the own… CWE-59
Link Following
CVE-2010-0832 2024-11-21 10:13 2010-07-13 Show GitHub Exploit DB Packet Storm
312386 9.8 CRITICAL
Network
libpng
google
apple
fedoraproject
suse
opensuse
vmware
canonical
debian
mozilla
libpng
chrome
itunes
safari
iphone_os
mac_os_x_server
mac_os_x
fedora
linux_enterprise_server
opensuse
player
workstation
ubuntu_linux
debian_linux
firefox
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers… CWE-120
Classic Buffer Overflow
CVE-2010-1205 2024-11-21 10:13 2010-07-1 Show GitHub Exploit DB Packet Storm
312387 - mozilla bugzilla Search.pm in Bugzilla 2.17.1 through 3.2.6, 3.3.1 through 3.4.6, 3.5.1 through 3.6, and 3.7 allows remote attackers to obtain potentially sensitive time-tracking information via a crafted search URL,… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-1204 2024-11-21 10:13 2010-06-29 Show GitHub Exploit DB Packet Storm
312388 - mozilla firefox
seamonkey
The startDocumentLoad function in browser/base/content/browser.js in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, and SeaMonkey before 2.0.6, does not properly implement the Same Origi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-1206 2024-11-21 10:13 2010-06-26 Show GitHub Exploit DB Packet Storm
312389 - mozilla firefox The JavaScript engine in Mozilla Firefox 3.6.x before 3.6.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vector… NVD-CWE-noinfo
CVE-2010-1203 2024-11-21 10:13 2010-06-24 Show GitHub Exploit DB Packet Storm
312390 - mozilla firefox
seamonkey
thunderbird
Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allow remote attacker… NVD-CWE-noinfo
CVE-2010-1202 2024-11-21 10:13 2010-06-24 Show GitHub Exploit DB Packet Storm