Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5261 6.5 警告
Adjacent
メディアテック MT6761 ファームウェア
MT6835 Firmware
MT6858 Firmware
MT8795T Firmware
MT8797 Firmware
MT6855 Firmware
MT6880 Firmware
MT8755 Firmware
MT8668&…
メディアテックのMT2735 ファームウェア等の複数製品における古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2026-20449 2026-05-8 12:10 2026-05-4 Show GitHub Exploit DB Packet Storm
5262 6.5 警告
Adjacent
メディアテック MT6835 Firmware
MT6858 Firmware
MT8795T Firmware
MT8797 Firmware
MT6855 Firmware
MT6880 Firmware
MT8755 Firmware
MT8668 Firmware
MT8678…
メディアテックのMT2735 ファームウェア等の複数製品における到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-20450 2026-05-8 12:10 2026-05-4 Show GitHub Exploit DB Packet Storm
5263 6.7 警告
Local
メディアテック MT8186 Firmware
MT8395 Firmware
MT8678 Firmware
MT8775 Firmware
MT8781 Firmware
MT6985 Firmware
MT8188 Firmware
MT8196 Firmware
MT8367&…
メディアテックのMT2718 Firmware等の複数製品における型の取り違えに関する脆弱性 CWE-843
型の取り違え
CVE-2026-20451 2026-05-8 12:10 2026-05-4 Show GitHub Exploit DB Packet Storm
5264 7.8 重要
Local
クアルコム QCA6574 ファームウェア
SM6650P ファームウェア
QXM1086 Firmware
SA8150P ファームウェア
QXM1096 Firmware
snapdragon 8 gen 2 mobile ファームウェア
qca6688aq …
クアルコムのAR8031 ファームウェア等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-24082 2026-05-8 12:10 2026-05-4 Show GitHub Exploit DB Packet Storm
5265 8.8 重要
Network
RedisTimeSeries RedisTimeSeries RedisTimeSeriesにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-25588 2026-05-8 12:10 2026-05-5 Show GitHub Exploit DB Packet Storm
5266 8.8 重要
Network
RedisBloom RedisBloom RedisBloomにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-25589 2026-05-8 12:10 2026-05-5 Show GitHub Exploit DB Packet Storm
5267 7.8 重要
Local
マイクロソフト Microsoft HPC Pack Microsoft のハイ パフォーマンス コンピューティング (HPC) パックの特権昇格の脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-32184 2026-05-8 12:10 2026-04-14 Show GitHub Exploit DB Packet Storm
5268 7.5 重要
Network
マイクロソフト Microsoft Visual Studio 2026
visual studio 2022
.NET
.NET および Visual Studio のサービス拒否の脆弱性 CWE-121
CWE-20
CVE-2026-32203 2026-05-8 12:10 2026-04-14 Show GitHub Exploit DB Packet Storm
5269 4.7 警告
Network
Macaron project Macaron オラクルのMacaronにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-35253 2026-05-8 12:10 2026-05-6 Show GitHub Exploit DB Packet Storm
5270 6.1 警告
Local
オラクル Oracle Cloud Infrastructure CLI オラクルのOracle Cloud Infrastructure CLIにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-35254 2026-05-8 12:10 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314401 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_reject_ipv6: fix potential crash in nf_send_reset6() I got a syzbot report without a repro [1] crashing in nf_send_… NVD-CWE-noinfo
CVE-2024-50256 2024-11-15 03:11 2024-11-9 Show GitHub Exploit DB Packet Storm
314402 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci: fix null-ptr-deref in hci_read_supported_codecs Fix __hci_cmd_sync_sk() to return not NULL for unknown opcodes. … CWE-476
 NULL Pointer Dereference
CVE-2024-50255 2024-11-15 03:10 2024-11-9 Show GitHub Exploit DB Packet Storm
314403 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: bpf: Free dynamically allocated bits in bpf_iter_bits_destroy() bpf_iter_bits_destroy() uses "kit->nr_bits <= 64" to check whethe… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2024-50254 2024-11-15 03:09 2024-11-9 Show GitHub Exploit DB Packet Storm
314404 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: bpf: Check the validity of nr_words in bpf_iter_bits_new() Check the validity of nr_words in bpf_iter_bits_new(). Without this ch… NVD-CWE-noinfo
CVE-2024-50253 2024-11-15 03:09 2024-11-9 Show GitHub Exploit DB Packet Storm
314405 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_ipip: Fix memory leak when changing remote IPv6 address The device stores IPv6 addresses that are used for encaps… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2024-50252 2024-11-15 03:08 2024-11-9 Show GitHub Exploit DB Packet Storm
314406 5.3 MEDIUM
Network
sap s\/4_hana Fields which are in 'read only' state in Bank Statement Draft in Manage Bank Statements application, could be modified by MERGE method. The property of an OData entity representing assumably immutabl… CWE-650
 Trusting HTTP Permission Methods on the Server Side
CVE-2024-45282 2024-11-15 02:56 2024-10-8 Show GitHub Exploit DB Packet Storm
314407 4.3 MEDIUM
Network
sap hana-client The SAP HANA Node.js client package versions from 2.0.0 before 2.21.31 is impacted by Prototype Pollution vulnerability allowing an attacker to add arbitrary properties to global object prototypes. T… CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2024-45277 2024-11-15 02:54 2024-10-8 Show GitHub Exploit DB Packet Storm
314408 6.5 MEDIUM
Network
sap businessobjects_business_intelligence SAP BusinessObjects Business Intelligence Platform allows an authenticated user to send a specially crafted request to the Web Intelligence Reporting Server to download any file from the machine host… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-37179 2024-11-15 02:35 2024-10-8 Show GitHub Exploit DB Packet Storm
314409 5.4 MEDIUM
Network
sap commerce_backoffice SAP Commerce Backoffice does not sufficiently encode user controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. After successful exploitation, an attacker can cause limited impact… CWE-79
Cross-site Scripting
CVE-2024-45278 2024-11-15 02:17 2024-10-8 Show GitHub Exploit DB Packet Storm
314410 4.8 MEDIUM
Network
mattermost mattermost_server Mattermost versions 9.11.x <= 9.11.2, and 9.5.x <= 9.5.10 fail to protect the mfa code against replay attacks, which allows an attacker to reuse the MFA code within ~30 seconds CWE-294
Authentication Bypass by Capture-replay 
CVE-2024-36250 2024-11-15 02:11 2024-11-10 Show GitHub Exploit DB Packet Storm