Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
321 9.8 緊急
Network
オラクル Oracle WebCenter Content オラクルのOracle WebCenter Contentにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35286 2026-06-22 11:40 2026-06-17 Show GitHub Exploit DB Packet Storm
322 6.6 警告
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける権限管理に関する脆弱性 New CWE-269
不適切な権限管理
CVE-2026-35291 2026-06-22 11:40 2026-06-17 Show GitHub Exploit DB Packet Storm
323 10 緊急
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35292 2026-06-22 11:40 2026-06-17 Show GitHub Exploit DB Packet Storm
324 9.8 緊急
Network
- オラクルのOracle WebCenter Sites Support Toolsにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35293 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
325 9.9 緊急
Network
オラクル Oracle Identity Manager オラクルのOracle Identity Managerにおけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-35294 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
326 7.5 重要
Network
- オラクルのOracle WebCenter Sites Support Toolsにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35295 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
327 9.8 緊急
Network
- オラクルのOracle WebCenter Sites Support Toolsにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35296 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
328 9.1 緊急
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-35298 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
329 8.8 重要
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35299 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
330 9.8 緊急
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける信頼できないデータのデシリアライゼーションに関する脆弱性 New CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-35300 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
256161 8.8 HIGH
Adjacent
broadcom hardmac_wi-fi_soc_firmware On the Broadcom Wi-Fi HardMAC SoC with fbt firmware, a stack buffer overflow occurs when handling an 802.11r (FT) authentication response, leading to remote code execution via a crafted access point … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-6956 2024-11-21 12:30 2017-04-5 Show GitHub Exploit DB Packet Storm
256162 5.5 MEDIUM
Local
apple mac_os_x An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the system-installation subsystem of the "System Integrity Protection" component. It allows att… CWE-20
 Improper Input Validation 
CVE-2017-6974 2024-11-21 12:30 2017-04-2 Show GitHub Exploit DB Packet Storm
256163 4.8 MEDIUM
Network
mantisbt mantisbt A cross-site scripting (XSS) vulnerability in the MantisBT Configuration Report page (adm_config_report.php) allows remote attackers to inject arbitrary code through a crafted 'action' parameter. Thi… CWE-79
Cross-site Scripting
CVE-2017-6973 2024-11-21 12:30 2017-03-31 Show GitHub Exploit DB Packet Storm
256164 5.4 MEDIUM
Network
siemens ruggedcom_rox_i The integrated web server in Siemens RUGGEDCOM ROX I (all versions) at port 10000/TCP could allow an authenticated user to perform stored Cross-Site Scripting attacks. CWE-79
Cross-site Scripting
CVE-2017-6864 2024-11-21 12:30 2017-03-29 Show GitHub Exploit DB Packet Storm
256165 7.8 HIGH
Local
canonical
debian
ubuntu_linux
debian_linux
dmcrypt-get-device, as shipped in the eject package of Debian and Ubuntu, does not check the return value of the (1) setuid or (2) setgid function, which might cause dmcrypt-get-device to execute cod… CWE-252
 Unchecked Return Value
CVE-2017-6964 2024-11-21 12:30 2017-03-28 Show GitHub Exploit DB Packet Storm
256166 5.4 MEDIUM
Network
metinfo metinfo Cross-site scripting (XSS) vulnerability in MetInfo 5.3.15 allows remote authenticated users to inject arbitrary web script or HTML via the name_2 parameter to admin/column/delete.php. CWE-79
Cross-site Scripting
CVE-2017-6878 2024-11-21 12:30 2017-03-28 Show GitHub Exploit DB Packet Storm
256167 8.1 HIGH
Network
broadcom bcm4339_soc_firmware Stack-based buffer overflow in the firmware in Broadcom Wi-Fi HardMAC SoC chips, when the firmware supports CCKM Fast and Secure Roaming and the feature is enabled in RAM, allows remote attackers to … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-6957 2024-11-21 12:30 2017-03-27 Show GitHub Exploit DB Packet Storm
256168 9.8 CRITICAL
Network
sap gui_for_windows SAP GUI 7.2 through 7.5 allows remote attackers to bypass intended security policy restrictions and execute arbitrary code via a crafted ABAP code, aka SAP Security Note 2407616. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-6950 2024-11-21 12:30 2017-03-24 Show GitHub Exploit DB Packet Storm
256169 6.6 MEDIUM
Physics
usb_pratirodh_project usb_pratirodh USB Pratirodh is prone to sensitive information disclosure. It stores sensitive information such as username and password in simple usb.xml. An attacker with physical access to the system can modify … CWE-922
 Insecure Storage of Sensitive Information
CVE-2017-6911 2024-11-21 12:30 2017-03-24 Show GitHub Exploit DB Packet Storm
256170 9.8 CRITICAL
Network
usb_pratirodh_project usb_pratirodh USB Pratirodh allows remote attackers to conduct XML External Entity (XXE) attacks via XML data in usb.xml. CWE-611
XXE
CVE-2017-6895 2024-11-21 12:30 2017-03-24 Show GitHub Exploit DB Packet Storm