Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3441 4.8 警告
Network
Draugiem Group DeskTime Time Tracking Draugiem GroupのDeskTime Time Trackingにおける複数の脆弱性 CWE-295
CWE-296
CWE-494
CVE-2025-10539 2026-05-20 13:22 2026-04-28 Show GitHub Exploit DB Packet Storm
3442 9.8 緊急
Network
stellar-group hpx stellar-groupのhpxにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2025-60889 2026-05-20 13:22 2026-04-28 Show GitHub Exploit DB Packet Storm
3443 7.8 重要
Local
GitHub GitHub Copilot CLI GitHubのGitHub Copilot CLIにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-29783 2026-05-20 13:22 2026-03-6 Show GitHub Exploit DB Packet Storm
3444 10 緊急
Network
DHTMLX PDF Export Module DHTMLXのPDF Export ModuleにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-41553 2026-05-20 13:22 2026-05-15 Show GitHub Exploit DB Packet Storm
3445 8.8 重要
Network
huggingface Diffusers huggingfaceのDiffusersにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-44513 2026-05-20 13:22 2026-05-14 Show GitHub Exploit DB Packet Storm
3446 8.8 重要
Network
huggingface Diffusers huggingfaceのDiffusersにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-44827 2026-05-20 13:22 2026-05-14 Show GitHub Exploit DB Packet Storm
3447 7.1 重要
Network
Peter Steinberger (steipete) Summarize Peter Steinberger (steipete)のSummarizeにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-45242 2026-05-20 13:22 2026-05-18 Show GitHub Exploit DB Packet Storm
3448 6.1 警告
Network
Peter Steinberger (steipete) Summarize Peter Steinberger (steipete)のSummarizeにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-45243 2026-05-20 13:22 2026-05-18 Show GitHub Exploit DB Packet Storm
3449 5.4 警告
Network
Peter Steinberger (steipete) Summarize Peter Steinberger (steipete)のSummarizeにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-45244 2026-05-20 13:22 2026-05-18 Show GitHub Exploit DB Packet Storm
3450 7.4 重要
Network
Peter Steinberger (steipete) Summarize Peter Steinberger (steipete)のSummarizeにおける複数の脆弱性 CWE-918
CWE-940
CVE-2026-45245 2026-05-20 13:22 2026-05-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311741 - microsoft windows_xp
windows_server_2003
windows_2003_server
The OpenType Font (OTF) format driver in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly perform memory allocation during font parsing, which allows local users to gain privile… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-2740 2024-11-21 10:17 2010-10-14 Show GitHub Exploit DB Packet Storm
311742 - microsoft windows_server_2008
windows_xp
windows_7
windows_vista
windows_server_2003
windows_2003_server
The kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 do not properly manage a window c… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-2744 2024-11-21 10:17 2010-10-14 Show GitHub Exploit DB Packet Storm
311743 - apache
redhat
qpid
enterprise_mrg
sys/ssl/SslSocket.cpp in qpidd in Apache Qpid, as used in Red Hat Enterprise MRG before 1.2.2 and other products, when SSL is enabled, allows remote attackers to cause a denial of service (daemon out… NVD-CWE-Other
CVE-2010-3083 2024-11-21 10:17 2010-10-13 Show GitHub Exploit DB Packet Storm
311744 - squid-cache squid dns_internal.cc in Squid 3.1.6, when IPv6 DNS resolution is not enabled, accesses an invalid socket during an IPv4 TCP DNS query, which allows remote attackers to cause a denial of service (assertion… NVD-CWE-Other
CVE-2010-2951 2024-11-21 10:17 2010-10-13 Show GitHub Exploit DB Packet Storm
311745 - linux linux_kernel arch/x86/hvm/vmx/vmcs.c in the virtual-machine control structure (VMCS) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5, when an Intel platform without Extended Page Ta… CWE-399
 Resource Management Errors
CVE-2010-2938 2024-11-21 10:17 2010-10-9 Show GitHub Exploit DB Packet Storm
311746 - cmsmadesimple cms_made_simple Directory traversal vulnerability in lib/translation.functions.php in CMS Made Simple before 1.8.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the defau… CWE-22
Path Traversal
CVE-2010-2797 2024-11-21 10:17 2010-10-9 Show GitHub Exploit DB Packet Storm
311747 - adobe acrobat
acrobat_reader
Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vecto… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-2890 2024-11-21 10:17 2010-10-7 Show GitHub Exploit DB Packet Storm
311748 - adobe acrobat
acrobat_reader
Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows attackers to execute arbitrary code via a crafted font, a different vulnerab… CWE-20
 Improper Input Validation 
CVE-2010-2889 2024-11-21 10:17 2010-10-7 Show GitHub Exploit DB Packet Storm
311749 - adobe acrobat
acrobat_reader
Multiple unspecified vulnerabilities in an ActiveX control in Adobe Reader and Acrobat 8.x before 8.2.5 and 9.x before 9.4 on Windows allow attackers to execute arbitrary code via unknown vectors. CWE-20
 Improper Input Validation 
CVE-2010-2888 2024-11-21 10:17 2010-10-7 Show GitHub Exploit DB Packet Storm
311750 - adobe acrobat_reader
acrobat
Multiple unspecified vulnerabilities in Adobe Reader and Acrobat 9.x before 9.4 on Linux allow attackers to gain privileges via unknown vectors. NVD-CWE-noinfo
CVE-2010-2887 2024-11-21 10:17 2010-10-7 Show GitHub Exploit DB Packet Storm