Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 12:21 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4441 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-9118 2026-05-25 10:17 2026-05-20 Show GitHub Exploit DB Packet Storm
4442 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-9119 2026-05-25 10:17 2026-05-20 Show GitHub Exploit DB Packet Storm
4443 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-9120 2026-05-25 10:17 2026-05-20 Show GitHub Exploit DB Packet Storm
4444 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-9121 2026-05-25 10:17 2026-05-20 Show GitHub Exploit DB Packet Storm
4445 - - ISC, Inc. BIND ISC BINDにおける複数の脆弱性(2026年5月) - CVE-2026-3039
CVE-2026-3592
CVE-2026-3593
CVE-2026-5946
CVE-2026-5947
CVE-2026-5950
2026-05-22 15:55 2026-05-21 Show GitHub Exploit DB Packet Storm
4446 6.7 警告
Local
トレンドマイクロ Trend Micro Apex One
TrendAI Apex One
TrendAI Vision One Endpoint Security - Standard Endpoint Protection
トレンドマイクロ製企業向けエンドポイントセキュリティ製品における複数の脆弱性(2026年5月) CWE-23
CWE-346
CWE-367
CVE-2026-34926
CVE-2026-34927
CVE-2026-34928
CVE-2026-34929
CVE-2026-34930
CVE-2026-45206
CVE-2026-45207
CVE-2026-45208
2026-05-22 15:32 2026-05-21 Show GitHub Exploit DB Packet Storm
4447 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2025-71239 2026-05-22 10:59 2026-03-17 Show GitHub Exploit DB Packet Storm
4448 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23241 2026-05-22 10:59 2026-03-17 Show GitHub Exploit DB Packet Storm
4449 5.3 警告
Network
NLnet Labs unbound NLnet Labsのunboundにおける複数の脆弱性 CWE-125
CWE-166
CVE-2026-32792 2026-05-22 10:59 2026-05-20 Show GitHub Exploit DB Packet Storm
4450 9.8 緊急
Network
NLnet Labs unbound NLnet Labsのunboundにおける複数の脆弱性 CWE-416
CWE-672
CVE-2026-33278 2026-05-22 10:59 2026-05-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 29, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2871 - - - MISP contains an insecure default configuration in which the Security.check_sec_fetch_site_header control is disabled. When this setting is disabled, state-changing requests such as POST, PUT, or AJA… CWE-352
CWE-1188
 Origin Validation Error
 Insecure Default Initialization of Resource
CVE-2026-54359 2026-06-16 05:46 2026-06-13 Show GitHub Exploit DB Packet Storm
2872 - - - A mass assignment vulnerability exists in MISP’s sharing group creation endpoint. When creating a new sharing group, the controller did not remove a user-supplied id field before saving the submitted… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-54360 2026-06-16 05:46 2026-06-13 Show GitHub Exploit DB Packet Storm
2873 - - - MISP contained multiple mass assignment vulnerabilities in the handling of collections, tag collections, event delegations, and shadow attributes. Several controller actions accepted user-supplied fi… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-54361 2026-06-16 05:46 2026-06-13 Show GitHub Exploit DB Packet Storm
2874 6.5 MEDIUM
Local
- - ApostropheCMS is an open-source Node.js content management system. Versions of the @apostrophecms/cli package up to and including 3.6.0 contain a command injection vulnerability in the apos create co… CWE-78
OS Command 
CVE-2026-42853 2026-06-16 05:46 2026-06-13 Show GitHub Exploit DB Packet Storm
2875 8.1 HIGH
Network
- - ApostropheCMS is an open-source Node.js content management system. Versions up to and including 4.29.0 have a password reset flow that constructs the reset URL using `req.hostname`, which is derived … CWE-20
CWE-640
 Improper Input Validation 
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2026-45013 2026-06-16 05:46 2026-06-13 Show GitHub Exploit DB Packet Storm
2876 - - - An incorrect visibility condition in the MISP event template builder allowed authenticated non-site-admin users to view galaxies that should not have been visible to their organisation. The custom ac… CWE-863
 Incorrect Authorization
CVE-2026-54362 2026-06-16 05:46 2026-06-13 Show GitHub Exploit DB Packet Storm
2877 - - - MISP contains a path traversal vulnerability in OrganisationsController::getOrgLogo. The vulnerable code builds organisation logo file paths using organisation-controlled fields such as id, name, and… CWE-22
Path Traversal
CVE-2026-54394 2026-06-16 05:46 2026-06-13 Show GitHub Exploit DB Packet Storm
2878 - - - A stored cross-site scripting vulnerability exists in MISP when the Overmind theme is used. The setHomePage endpoint previously saved the user-controlled path value through setSettingInternal(), bypa… CWE-79
Cross-site Scripting
CVE-2026-54393 2026-06-16 05:46 2026-06-13 Show GitHub Exploit DB Packet Storm
2879 - - - MISP contains a reflected cross-site scripting vulnerability in the UiBeta event index view. The urlparams value is inserted into an inline JavaScript handler using HTML escaping inside a single-quot… CWE-79
Cross-site Scripting
CVE-2026-54395 2026-06-16 05:46 2026-06-13 Show GitHub Exploit DB Packet Storm
2880 - - - An information disclosure vulnerability exists in the MISP AuthKey edit functionality. When a validation error occurs during an AuthKey edit request, the user dropdown was populated using the attacke… CWE-200
Information Exposure
CVE-2026-54396 2026-06-16 05:46 2026-06-13 Show GitHub Exploit DB Packet Storm