Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
51 6.1 警告
Local
Google Chrome-devtools-mcp GoogleのChrome-devtools-mcpにおけるリンク解釈に関する脆弱性 New CWE-59
リンク解釈の問題
CVE-2026-53765 2026-06-29 11:23 2026-06-24 Show GitHub Exploit DB Packet Storm
52 6.1 警告
Local
Google Chrome-devtools-mcp GoogleのChrome-devtools-mcpにおける複数の脆弱性 New CWE-22
CWE-59
CVE-2026-53766 2026-06-29 11:23 2026-06-24 Show GitHub Exploit DB Packet Storm
53 6.1 警告
Network
Angular AngularJS AngularのAngularJSにおける複数の脆弱性 New CWE-200
CWE-359
CVE-2026-54264 2026-06-29 11:23 2026-06-22 Show GitHub Exploit DB Packet Storm
54 6.1 警告
Network
Angular AngularJS AngularのAngularJSにおけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-54265 2026-06-29 11:23 2026-06-22 Show GitHub Exploit DB Packet Storm
55 6.1 警告
Network
Angular AngularJS AngularのAngularJSにおける複数の脆弱性 New CWE-328
CWE-345
CVE-2026-54266 2026-06-29 11:23 2026-06-22 Show GitHub Exploit DB Packet Storm
56 6.1 警告
Network
Angular AngularJS AngularのAngularJSにおける複数の脆弱性 New CWE-471
CWE-79
CVE-2026-54267 2026-06-29 11:23 2026-06-22 Show GitHub Exploit DB Packet Storm
57 7.5 重要
Network
Angular AngularJS AngularのAngularJSにおける複数の脆弱性 New CWE-1333
CWE-400
CVE-2026-54268 2026-06-29 11:23 2026-06-22 Show GitHub Exploit DB Packet Storm
58 9.9 緊急
Network
Dokku Dokku DokkuにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-54636 2026-06-29 11:23 2026-06-26 Show GitHub Exploit DB Packet Storm
59 7.5 重要
Network
Rubyconcurrency Concurrent Ruby RubyconcurrencyのConcurrent Rubyにおける無限ループに関する脆弱性 New CWE-835
無限ループ
CVE-2026-54904 2026-06-29 11:23 2026-06-24 Show GitHub Exploit DB Packet Storm
60 5.5 警告
Local
Rubyconcurrency Concurrent Ruby RubyconcurrencyのConcurrent Rubyにおけるラップアラウンドエラーに関する脆弱性 New CWE-128
ラップアラウンドエラー
CVE-2026-54905 2026-06-29 11:23 2026-06-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 29, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3961 6.5 MEDIUM
Network
- - Silverpeas through 6.4.6 mishandles the "Personal space" feature that is selected when no componentId is set. CWE-36
 Absolute Path Traversal
CVE-2026-53698 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm
3962 - - - Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Nomachine allows Argument Injection.This issue affects Nomachine: before 9.5.7, before 8.23.2. CWE-88
Argument Injection
CVE-2026-53694 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm
3963 - - - A stored cross-site scripting vulnerability existed in MISP BSimVis tag rendering code. Several client-side rendering paths interpolated tag names, collection names, entity identifiers, cluster names… CWE-79
CWE-116
Cross-site Scripting
 Improper Encoding or Escaping of Output
CVE-2026-53693 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm
3964 9.6 CRITICAL
Network
- - A flaw was found in migration-planner. The agent-API middleware processes JSON Web Tokens (JWTs) for authentication, but its UpdateSourceInventory and UpdateAgentStatus handlers fail to validate the … CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-53471 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm
3965 4.3 MEDIUM
Network
google chrome Uninitialized Use in Codecs in Google Chrome on Linux, ChromeOS prior to 149.0.7827.103 allowed a remote attacker to leak cross-origin data via a crafted video file. (Chromium security severity: High) CWE-457
 Use of Uninitialized Variable
CVE-2026-11668 2026-06-11 01:17 2026-06-9 Show GitHub Exploit DB Packet Storm
3966 - - - Crawlee is a web scraping and browser automation library. From version 1.0.0 to before version 1.7.0, Crawlee is vulnerable to SSRF via sitemap-derived URLs. This issue has been patched in version 1.… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-46497 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm
3967 8.1 HIGH
Network
- - Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, EscapedString (app/modules/roxywi/class_models.py:16-30) is the centralised Pydan… CWE-20
CWE-22
CWE-117
 Improper Input Validation 
Path Traversal
 Improper Output Neutralization for Logs
CVE-2026-45565 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm
3968 8.8 HIGH
Network
- - Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, POST /config/versions/<service>/<server_ip>/<configver>/save interpolates the URL… CWE-78
OS Command 
CVE-2026-45564 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm
3969 4.3 MEDIUM
Network
- - Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, GET /history/<service>/<server_ip> re-uses the server_ip path parameter as a user… CWE-639
CWE-863
 Authorization Bypass Through User-Controlled Key
 Incorrect Authorization
CVE-2026-45563 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm
3970 4.9 MEDIUM
Network
- - Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, get_ldap_email (app/modules/roxywi/user.py:120-157) builds the LDAP search filter… CWE-90
LDAP Injection
CVE-2026-45559 2026-06-11 01:17 2026-06-11 Show GitHub Exploit DB Packet Storm