Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2891 5.3 警告
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-31388 2026-05-21 10:53 2026-05-19 Show GitHub Exploit DB Packet Storm
2892 8.8 重要
Network
Linux Linux Kernel LinuxのLinux Kernelにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-31435 2026-05-21 10:53 2026-04-22 Show GitHub Exploit DB Packet Storm
2893 9.8 緊急
Network
Linux Linux Kernel LinuxのLinux KernelにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-31436 2026-05-21 10:53 2026-04-22 Show GitHub Exploit DB Packet Storm
2894 5.5 警告
Local
Linux Linux Kernel LinuxのLinux KernelにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-31437 2026-05-21 10:53 2026-04-22 Show GitHub Exploit DB Packet Storm
2895 5.5 警告
Local
Linux Linux Kernel LinuxのLinux KernelにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-31438 2026-05-21 10:53 2026-04-22 Show GitHub Exploit DB Packet Storm
2896 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-31439 2026-05-21 10:53 2026-04-22 Show GitHub Exploit DB Packet Storm
2897 6.1 警告
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-31906 2026-05-21 10:53 2026-05-19 Show GitHub Exploit DB Packet Storm
2898 7.5 重要
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-31909 2026-05-21 10:53 2026-05-19 Show GitHub Exploit DB Packet Storm
2899 7.5 重要
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-31910 2026-05-21 10:53 2026-05-19 Show GitHub Exploit DB Packet Storm
2900 9.1 緊急
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおけるハードコードされた暗号鍵の使用に関する脆弱性 CWE-321
ハードコードされた暗号鍵の使用
CVE-2026-31986 2026-05-21 10:53 2026-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
319111 - - - Inappropriate implementation in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low) - CVE-2024-7024 2024-09-26 22:32 2024-09-24 Show GitHub Exploit DB Packet Storm
319112 - - - Insufficient data validation in Updater in Google Chrome prior to 128.0.6537.0 allowed a remote attacker to perform privilege escalation via a malicious file. (Chromium security severity: Medium) - CVE-2024-7023 2024-09-26 22:32 2024-09-24 Show GitHub Exploit DB Packet Storm
319113 - - - Uninitialized Use in V8 in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Medium) - CVE-2024-7022 2024-09-26 22:32 2024-09-24 Show GitHub Exploit DB Packet Storm
319114 - - - Inappropriate implementation in Autofill in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low) - CVE-2024-7020 2024-09-26 22:32 2024-09-24 Show GitHub Exploit DB Packet Storm
319115 - - - Inappropriate implementation in UI in Google Chrome prior to 124.0.6367.60 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML p… - CVE-2024-7019 2024-09-26 22:32 2024-09-24 Show GitHub Exploit DB Packet Storm
319116 - - - Heap buffer overflow in PDF in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium) - CVE-2024-7018 2024-09-26 22:32 2024-09-24 Show GitHub Exploit DB Packet Storm
319117 - - - Inappropriate implementation in Navigation in Google Chrome prior to 113.0.5672.63 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform domain spoofing via a cr… - CVE-2023-7282 2024-09-26 22:32 2024-09-24 Show GitHub Exploit DB Packet Storm
319118 - - - Inappropriate implementation in Compositing in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium) - CVE-2023-7281 2024-09-26 22:32 2024-09-24 Show GitHub Exploit DB Packet Storm
319119 - - - Use after free in Extensions in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) - CVE-2021-38023 2024-09-26 22:32 2024-09-24 Show GitHub Exploit DB Packet Storm
319120 - - - A cross-site scripting (XSS) vulnerability in HelpDeskZ v2.0.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name text field of Custom Fields messa… - CVE-2024-46639 2024-09-26 22:32 2024-09-24 Show GitHub Exploit DB Packet Storm