Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5141 7.8 重要
Local
アドビシステムズ Adobe Substance 3D Designer アドビのAdobe Substance 3D Designerにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-34681 2026-05-15 11:02 2026-05-12 Show GitHub Exploit DB Packet Storm
5142 7.8 重要
Local
アドビシステムズ Adobe Substance 3D Designer アドビのAdobe Substance 3D Designerにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-34682 2026-05-15 11:02 2026-05-12 Show GitHub Exploit DB Packet Storm
5143 7.8 重要
Local
アドビシステムズ Adobe Substance 3D Designer アドビのAdobe Substance 3D Designerにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-34683 2026-05-15 11:02 2026-05-12 Show GitHub Exploit DB Packet Storm
5144 7.8 重要
Local
アドビシステムズ Adobe Substance 3D Designer アドビのAdobe Substance 3D Designerにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-34684 2026-05-15 11:02 2026-05-12 Show GitHub Exploit DB Packet Storm
5145 8.7 重要
Network
アドビシステムズ Adobe Commerce
Adobe Commerce B2B
magento
アドビのAdobe Commerce等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-34686 2026-05-15 11:02 2026-05-12 Show GitHub Exploit DB Packet Storm
5146 7.8 重要
Local
アドビシステムズ Adobe After Effects アドビのAdobe After Effectsにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-34690 2026-05-15 11:02 2026-05-12 Show GitHub Exploit DB Packet Storm
5147 4.4 警告
Local
PNG Development Group
Debian
Debian GNU/Linux
libpng
Debian等の複数ベンダの製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-34757 2026-05-15 11:02 2026-04-9 Show GitHub Exploit DB Packet Storm
5148 7.7 重要
Local
Pengutronix e.K. barebox Pengutronix e.K.のbareboxにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-34961 2026-05-15 11:02 2026-05-11 Show GitHub Exploit DB Packet Storm
5149 5.5 警告
Local
Pengutronix e.K. barebox Pengutronix e.K.のbareboxにおける無限ループに関する脆弱性 CWE-835
無限ループ
CVE-2026-34962 2026-05-15 11:02 2026-05-11 Show GitHub Exploit DB Packet Storm
5150 7.8 重要
Local
Pengutronix e.K. barebox Pengutronix e.K.のbareboxにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-34963 2026-05-15 11:02 2026-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 26, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1341 5.3 MEDIUM
Network
- - Fediverse Embeds embeds fediverse posts on WordPress sites. Prior to version 1.5.9, Fediverse Embeds registered the unauthenticated AJAX action wp_ajax_nopriv_ftf_get_site_info (includes/Site_Info.ph… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-46698 2026-06-12 03:16 2026-06-12 Show GitHub Exploit DB Packet Storm
1342 7.5 HIGH
Network
- - Fediverse Embeds embeds fediverse posts on WordPress sites. Prior to version 1.5.8, Fediverse Embeds registered an unauthenticated REST route ftf/media-proxy (includes/Media_Proxy.php) with permissio… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-46697 2026-06-12 03:16 2026-06-12 Show GitHub Exploit DB Packet Storm
1343 - - - A remote unauthenticated attacker may be able to conduct credential-guessing attacks against user accounts in Sonatype Nexus Repository via authentication endpoints. CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2026-3329 2026-06-12 03:16 2026-06-12 Show GitHub Exploit DB Packet Storm
1344 4.9 MEDIUM
Network
- - A flaw was found in the admin-ui-ext component of Keycloak, which provides extended administrative user interface capabilities. The issue occurs because certain bulk role-removal endpoints fail to pe… CWE-425
 Direct Request ('Forced Browsing')
CVE-2026-11986 2026-06-12 03:16 2026-06-12 Show GitHub Exploit DB Packet Storm
1345 8.8 HIGH
Local
espressif esp-idf ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.5.4 and 6.0, the esp_tee component exposes secure-service wrappers in esp_secure_services.c and esp_secure_servi… CWE-20
CWE-787
 Improper Input Validation 
 Out-of-bounds Write
CVE-2026-45328 2026-06-12 03:15 2026-06-10 Show GitHub Exploit DB Packet Storm
1346 7.5 HIGH
Network
espressif esp-idf ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0, a NULL-pointer dereference exists in the WebSocket subprotocol-negotiation pa… CWE-476
 NULL Pointer Dereference
CVE-2026-45541 2026-06-12 03:05 2026-06-10 Show GitHub Exploit DB Packet Storm
1347 6.5 MEDIUM
Local
espressif esp-idf ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.5.4 and 6.0, several ESP-TEE secure-service wrappers in esp_secure_services.c and esp_secure_services_iram.c val… CWE-20
CWE-125
CWE-200
 Improper Input Validation 
Out-of-bounds Read
Information Exposure
CVE-2026-45329 2026-06-12 03:04 2026-06-10 Show GitHub Exploit DB Packet Storm
1348 6.5 MEDIUM
Network
7-zip 7-zip 7-Zip is a file archiver with a high compression ratio. Versions 9.21 through 26.00 contain an An uninitialized memory disclosure vulnerability in the UEFI capsule (.scap) parser in 7-Zip. The OpenCa… CWE-908
 Use of Uninitialized Resource
CVE-2026-48101 2026-06-12 03:02 2026-06-6 Show GitHub Exploit DB Packet Storm
1349 7.8 HIGH
Local
microsoft windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2022
windows_server_2025
Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally. CWE-843
CWE-125
Type Confusion
Out-of-bounds Read
CVE-2026-45641 2026-06-12 02:42 2026-06-10 Show GitHub Exploit DB Packet Storm
1350 7.1 HIGH
Adjacent
espressif esp-idf ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0, a heap buffer overflow exists in the Security Scheme 2 (SRP6a) session-setup … CWE-122
Heap-based Buffer Overflow
CVE-2026-45542 2026-06-12 02:41 2026-06-10 Show GitHub Exploit DB Packet Storm