Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2891 8.3 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-10920 2026-06-8 12:25 2026-06-4 Show GitHub Exploit DB Packet Storm
2892 8.3 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける複数の脆弱性 CWE-190
CWE-472
CVE-2026-10921 2026-06-8 12:25 2026-06-4 Show GitHub Exploit DB Packet Storm
2893 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-10922 2026-06-8 12:25 2026-06-4 Show GitHub Exploit DB Packet Storm
2894 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-10923 2026-06-8 12:25 2026-06-4 Show GitHub Exploit DB Packet Storm
2895 8.3 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける複数の脆弱性 CWE-190
CWE-472
CVE-2026-10924 2026-06-8 12:25 2026-06-4 Show GitHub Exploit DB Packet Storm
2896 8.3 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-10925 2026-06-8 12:25 2026-06-4 Show GitHub Exploit DB Packet Storm
2897 8.8 重要
Adjacent
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-10926 2026-06-8 12:24 2026-06-4 Show GitHub Exploit DB Packet Storm
2898 8.3 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-10927 2026-06-8 12:24 2026-06-4 Show GitHub Exploit DB Packet Storm
2899 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-10928 2026-06-8 12:24 2026-06-4 Show GitHub Exploit DB Packet Storm
2900 9.9 緊急
Network
ABB T-MAC Plus ABBのT-MAC Plusにおける外部からアクセス可能なファイルまたはディレクトリに関する脆弱性 CWE-552
外部からアクセス可能なファイルまたはディレクトリ
CVE-2025-14771 2026-06-8 11:51 2026-06-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
320001 - - - A Cross-Site Request Forgery (CSRF) in Codeigniter 3.1.13 allows attackers to arbitrarily change the Administrator password and escalate privileges. - CVE-2024-41344 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
320002 - - - Certain HP DesignJet products may be vulnerable to credential reflection which allow viewing SMTP server credentials. - CVE-2024-5749 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
320003 - - - Improper regular expression in Vue's parseHTML function leads to a potential regular expression denial of service vulnerability. - CVE-2024-9506 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
320004 - - - Vendure is an open-source headless commerce platform. Prior to versions 3.0.5 and 2.3.3, a vulnerability in Vendure's asset server plugin allows an attacker to craft a request which is able to traver… CWE-22
CWE-20
Path Traversal
 Improper Input Validation 
CVE-2024-48914 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
320005 - - - Hono, a web framework, prior to version 4.6.5 is vulnerable to bypass of cross-site request forgery (CSRF) middleware by a request without Content-Type header. Although the CSRF middleware verifies t… CWE-352
 Origin Validation Error
CVE-2024-48913 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
320006 - - - In segments\edit.php of DomainMOD below v4.12.0, the segid parameter in the GET request can be exploited to cause a reflected Cross Site Scripting (XSS) vulnerability. - CVE-2024-48624 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
320007 - - - In queue\index.php of DomainMOD below v4.12.0, the list_id and domain_id parameters in the GET request can be exploited to cause a reflected Cross Site Scripting (XSS). - CVE-2024-48623 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
320008 - - - A cross-site scripting (XSS) issue in DomainMOD below v4.12.0 allows remote attackers to inject JavaScript code via admin/domain-fields/edit.php and the cdfid parameter. - CVE-2024-48622 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
320009 - - - Element Desktop is a Matrix client for desktop platforms. Element Desktop versions 1.11.70 through 1.11.80 contain a vulnerability which can, under specially crafted conditions, lead to the access to… CWE-200
Information Exposure
CVE-2024-47771 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
320010 - - - matrix-js-sdk is the Matrix Client-Server SDK for JavaScript and TypeScript. In matrix-js-sdk versions versions 9.11.0 through 34.7.0, the method `MatrixClient.sendSharedHistoryKeys` is vulnerable to… CWE-287
CWE-200
Improper Authentication
Information Exposure
CVE-2024-47080 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm