Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5511 5.3 警告
Network
Eclipse Foundation Vert.x Eclipse FoundationのVert.xにおける複数の脆弱性 CWE-295
CWE-770
CVE-2026-6860 2026-05-14 10:15 2026-05-6 Show GitHub Exploit DB Packet Storm
5512 7.5 重要
Network
The PHP Group PHP The PHP GroupのPHPにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-7258 2026-05-14 10:15 2026-05-10 Show GitHub Exploit DB Packet Storm
5513 6.5 警告
Network
The PHP Group PHP The PHP GroupのPHPにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-7259 2026-05-14 10:15 2026-05-10 Show GitHub Exploit DB Packet Storm
5514 9.8 緊急
Network
The PHP Group PHP The PHP GroupのPHPにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-7261 2026-05-14 10:15 2026-05-10 Show GitHub Exploit DB Packet Storm
5515 7.5 重要
Network
The PHP Group PHP The PHP GroupのPHPにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-7262 2026-05-14 10:15 2026-05-10 Show GitHub Exploit DB Packet Storm
5516 7.5 重要
Network
The PHP Group PHP The PHP GroupのPHPにおける複数の脆弱性 CWE-404
CWE-835
CVE-2026-7263 2026-05-14 10:15 2026-05-10 Show GitHub Exploit DB Packet Storm
5517 4.4 警告
Local
Ivanti secure access client Ivantiのsecure access clientにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-7431 2026-05-14 10:15 2026-05-12 Show GitHub Exploit DB Packet Storm
5518 7 重要
Local
Ivanti secure access client Ivantiのsecure access clientにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2026-7432 2026-05-14 10:14 2026-05-12 Show GitHub Exploit DB Packet Storm
5519 8.8 重要
Network
SUN NET TECHNOLOGIES CO., LTD. eHRD CTMS SUN NET TECHNOLOGIES CO., LTD.のeHRD CTMSにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-7489 2026-05-14 10:14 2026-05-2 Show GitHub Exploit DB Packet Storm
5520 7.5 重要
Network
The PHP Group PHP The PHP GroupのPHPにおける複数の脆弱性 CWE-125
CWE-190
CVE-2026-7568 2026-05-14 10:14 2026-05-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 29, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1161 7.8 HIGH
Local
- - MosaicML Composer Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MosaicML Com… CWE-502
 Deserialization of Untrusted Data
CVE-2026-10043 2026-06-26 04:10 2026-06-25 Show GitHub Exploit DB Packet Storm
1162 - - - CWE-522 Insufficiently Protected Credentials vulnerability that could cause unauthorized access and exposure of sensitive information when unauthenticated attacker accesses credentials stored within … CWE-522
 Insufficiently Protected Credentials
CVE-2026-9650 2026-06-26 04:10 2026-06-26 Show GitHub Exploit DB Packet Storm
1163 - - - CWE-732 Incorrect Permission Assignment for Critical Resource vulnerability that could cause unauthorized disclosure of password hashes and potential account compromise when an attacker with privileg… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2026-9651 2026-06-26 04:10 2026-06-26 Show GitHub Exploit DB Packet Storm
1164 - - - CWE-476 NULL Pointer Dereference vulnerability exists that could cause a denial-of-service condition, rendering the device’s HMI and configuration functionality unavailable when malformed requests ar… CWE-476
 NULL Pointer Dereference
CVE-2026-9716 2026-06-26 04:10 2026-06-26 Show GitHub Exploit DB Packet Storm
1165 - - - CWE-78 Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could allow unauthorized execution of commands with elevated privileges, impacting s… CWE-78
OS Command 
CVE-2026-9717 2026-06-26 04:10 2026-06-26 Show GitHub Exploit DB Packet Storm
1166 - - - CWE-617 Reachable Assertion vulnerability exists that could allow an authenticated attacker to trigger a denial-of-service condition, impacting system availability when a specially crafted request is… CWE-617
 Reachable Assertion
CVE-2026-9718 2026-06-26 04:10 2026-06-26 Show GitHub Exploit DB Packet Storm
1167 5.4 MEDIUM
Network
- - The AI Share & Summarize WordPress plugin before 2.0.4 does not sanitise and escape some of its shortcode attributes before outputting them in a page, allowing users with the Contributor role and abo… - CVE-2026-10531 2026-06-26 04:07 2026-06-24 Show GitHub Exploit DB Packet Storm
1168 7.5 HIGH
Network
- - Multiple Shapedsmart-post-show-pro WordPress plugin before 4.0.2, Real Testimonials Pro WordPress plugin before 3.2.5, Product Slider for WooCommerce Pro WordPress plugin before 3.5.3 Pro smart-post-… - CVE-2026-10735 2026-06-26 04:07 2026-06-24 Show GitHub Exploit DB Packet Storm
1169 7.2 HIGH
Network
- - The Post Duplicator WordPress plugin before 3.0.15 does not safely handle custom meta-data during post duplication, storing attacker-supplied serialized values without the WordPress meta API's double… - CVE-2026-10749 2026-06-26 04:07 2026-06-24 Show GitHub Exploit DB Packet Storm
1170 2.7 LOW
Network
- - The Site Kit by Google WordPress plugin before 1.176.0 does not properly restrict a REST API write endpoint to administrators, allowing lower-privileged users who have been granted dashboard sharing… - CVE-2026-10753 2026-06-26 04:07 2026-06-24 Show GitHub Exploit DB Packet Storm