Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3671 5.1 警告
Local
Mozilla Foundation thin-vec Mozilla Foundationのthin-vecにおける複数の脆弱性 CWE-415
CWE-416
CVE-2026-6654 2026-05-14 10:23 2026-04-20 Show GitHub Exploit DB Packet Storm
3672 7.2 重要
Network
SUN NET TECHNOLOGIES CO., LTD. eHRD CPAS
eHRD CTMS
SUN NET TECHNOLOGIES CO., LTD.のeHRD CPAS等の複数製品における危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2026-7490 2026-05-14 10:23 2026-05-2 Show GitHub Exploit DB Packet Storm
3673 6.3 警告
Network
Router-For.ME CLI Proxy API Router-For.MEのCLI Proxy APIにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-8081 2026-05-14 10:23 2026-05-7 Show GitHub Exploit DB Packet Storm
3674 9.1 緊急
Network
LibreNMS LibreNMS LibreNMSにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2024-51092 2026-05-14 10:23 2026-05-8 Show GitHub Exploit DB Packet Storm
3675 9.8 緊急
Network
The PHP Group PHP The PHP GroupのPHPにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2025-14179 2026-05-14 10:23 2026-05-10 Show GitHub Exploit DB Packet Storm
3676 7.5 重要
Network
IBM watsonx.data IBMのwatsonx.dataにおける意図するエンドポイントとの通信チャネルの制限に関する脆弱性 CWE-923
意図するエンドポイントとの通信チャネルの不適切な制限
CVE-2025-36180 2026-05-14 10:23 2026-04-30 Show GitHub Exploit DB Packet Storm
3677 5.5 警告
Local
IBM watsonx.data IBMのwatsonx.dataにおける認証情報の平文保存に関する脆弱性 CWE-256
平文でパスワードを保存
CVE-2025-36335 2026-05-14 10:23 2026-04-30 Show GitHub Exploit DB Packet Storm
3678 7.5 重要
Network
アップル iOS
iPadOS
アップルのiPadOS等の複数製品におけるユーザインターフェースにおける重要情報の誤った表示に関する脆弱性 CWE-451
ユーザインターフェースにおける重要情報の誤った表示
CVE-2025-46311 2026-05-14 10:23 2026-05-12 Show GitHub Exploit DB Packet Storm
3679 4.7 警告
Network
ISPConfig ISPConfig ISPConfigにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-52206 2026-05-14 10:23 2026-05-5 Show GitHub Exploit DB Packet Storm
3680 7.3 重要
Network
AstrBot AstrBot AstrBotにおけるハードコードされた暗号鍵の使用に関する脆弱性 CWE-321
ハードコードされた暗号鍵の使用
CVE-2025-55449 2026-05-14 10:23 2026-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2021 8.8 HIGH
Network
google chrome Inappropriate implementation in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security s… CWE-125
CWE-787
Out-of-bounds Read
 Out-of-bounds Write
CVE-2026-11091 2026-06-8 23:34 2026-06-5 Show GitHub Exploit DB Packet Storm
2022 8.8 HIGH
Network
google chrome Insufficient policy enforcement in DevTools in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious extension to perform privilege escalation via a cra… CWE-602
 Client-Side Enforcement of Server-Side Security
CVE-2026-11092 2026-06-8 23:34 2026-06-5 Show GitHub Exploit DB Packet Storm
2023 9.6 CRITICAL
Network
google chrome Use after free in Messages in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: M… CWE-416
 Use After Free
CVE-2026-11163 2026-06-8 23:33 2026-06-5 Show GitHub Exploit DB Packet Storm
2024 8.8 HIGH
Network
google chrome Integer overflow in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium) CWE-472
 External Control of Assumed-Immutable Web Parameter
CVE-2026-11211 2026-06-8 23:33 2026-06-5 Show GitHub Exploit DB Packet Storm
2025 9.8 CRITICAL
Network
amd aiter AI Tensor Engine for ROCm (AITER) through 0.1.14 contains an unauthenticated remote code execution vulnerability in the MessageQueue.recv() function within shm_broadcast.py that allows unauthenticate… CWE-502
 Deserialization of Untrusted Data
CVE-2026-49121 2026-06-8 23:29 2026-06-2 Show GitHub Exploit DB Packet Storm
2026 5.3 MEDIUM
Network
google chrome Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory … CWE-125
Out-of-bounds Read
CVE-2026-11004 2026-06-8 23:27 2026-06-5 Show GitHub Exploit DB Packet Storm
2027 6.5 MEDIUM
Network
google chrome Out of bounds read in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium) CWE-125
Out-of-bounds Read
CVE-2026-11006 2026-06-8 23:27 2026-06-5 Show GitHub Exploit DB Packet Storm
2028 9.6 CRITICAL
Network
google chrome Use after free in USB in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium) CWE-416
 Use After Free
CVE-2026-11009 2026-06-8 23:27 2026-06-5 Show GitHub Exploit DB Packet Storm
2029 8.3 HIGH
Network
google chrome Use after free in WebShare in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted … CWE-416
 Use After Free
CVE-2026-11010 2026-06-8 23:26 2026-06-5 Show GitHub Exploit DB Packet Storm
2030 8.3 HIGH
Network
google chrome Use after free in Serial in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HT… CWE-416
 Use After Free
CVE-2026-11012 2026-06-8 23:26 2026-06-5 Show GitHub Exploit DB Packet Storm