Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
681 9.9 緊急
Network
オラクル Oracle WebCenter Portal オラクルのOracle WebCenter Portalにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46838 2026-06-22 11:53 2026-06-17 Show GitHub Exploit DB Packet Storm
682 9.9 緊急
Network
オラクル Oracle WebCenter Portal オラクルのOracle WebCenter Portalにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46844 2026-06-22 11:53 2026-06-17 Show GitHub Exploit DB Packet Storm
683 9.8 緊急
Network
オラクル Oracle WebCenter Portal オラクルのOracle WebCenter Portalにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-46845 2026-06-22 11:53 2026-06-17 Show GitHub Exploit DB Packet Storm
684 10 緊急
Network
オラクル Oracle WebCenter Portal オラクルのOracle WebCenter Portalにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-46846 2026-06-22 11:53 2026-06-17 Show GitHub Exploit DB Packet Storm
685 9.9 緊急
Network
オラクル Oracle WebCenter Portal オラクルのOracle WebCenter Portalにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-46847 2026-06-22 11:53 2026-06-17 Show GitHub Exploit DB Packet Storm
686 7.9 重要
Local
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-46848 2026-06-22 11:53 2026-06-17 Show GitHub Exploit DB Packet Storm
687 8.1 重要
Network
オラクル PeopleSoft Enterprise CS Campus Community オラクルのPeopleSoft Enterprise CS Campus Communityにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-46851 2026-06-22 11:53 2026-06-17 Show GitHub Exploit DB Packet Storm
688 9.9 緊急
Network
- オラクルのEnterprise Manager Base Platformにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-46852 2026-06-22 11:53 2026-06-17 Show GitHub Exploit DB Packet Storm
689 9.6 緊急
Network
- オラクルのEnterprise Manager Base Platformにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-46853 2026-06-22 11:53 2026-06-17 Show GitHub Exploit DB Packet Storm
690 9.9 緊急
Network
- オラクルのEnterprise Manager Base Platformにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46854 2026-06-22 11:52 2026-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 29, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
190841 7.8 HIGH
Local
fatek winproladder FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in a memory-corruption condition. An attacker could … CWE-787
 Out-of-bounds Write
CVE-2021-38436 2024-11-21 15:17 2021-10-18 Show GitHub Exploit DB Packet Storm
190842 7.8 HIGH
Local
fatek winproladder FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in an unexpected sign extension. An attacker could l… - CVE-2021-38434 2024-11-21 15:17 2021-10-18 Show GitHub Exploit DB Packet Storm
190843 7.8 HIGH
Local
fatek winproladder FATEK Automation WinProladder versions 3.30 and prior proper validation of user-supplied data when parsing project files, which could result in a stack-based buffer overflow. An attacker could levera… - CVE-2021-38430 2024-11-21 15:17 2021-10-18 Show GitHub Exploit DB Packet Storm
190844 7.8 HIGH
Local
fatek winproladder FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in an out-of-bounds write. An attacker could leverag… - CVE-2021-38426 2024-11-21 15:17 2021-10-18 Show GitHub Exploit DB Packet Storm
190845 7.5 HIGH
Network
bestpractical
fedoraproject
debian
request_tracker
fedora
debian_linux
Best Practical Request Tracker (RT) 4.2 before 4.2.17, 4.4 before 4.4.5, and 5.0 before 5.0.2 allows sensitive information disclosure via a timing attack against lib/RT/REST2/Middleware/Auth.pm. CWE-203
 Information Exposure Through Discrepancy
CVE-2021-38562 2024-11-21 15:17 2021-10-18 Show GitHub Exploit DB Packet Storm
190846 9.8 CRITICAL
Network
fatek communication_server_firmware FATEK Automation Communication Server Versions 1.13 and prior lacks proper validation of user-supplied data, which could result in a stack-based buffer overflow condition and allow an attacker to rem… - CVE-2021-38432 2024-11-21 15:17 2021-10-16 Show GitHub Exploit DB Packet Storm
190847 4.3 MEDIUM
Network
advantech webaccess_scada An authenticated user using Advantech WebAccess SCADA in versions 9.0.3 and prior can use API functions to disclose project names and paths from other users. CWE-862
 Missing Authorization
CVE-2021-38431 2024-11-21 15:17 2021-10-15 Show GitHub Exploit DB Packet Storm
190848 8.0 HIGH
Adjacent
microsoft windows_11
windows_server_2022
Windows Hyper-V Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2021-38672 2024-11-21 15:17 2021-10-13 Show GitHub Exploit DB Packet Storm
190849 5.5 MEDIUM
Local
microsoft windows_10
windows_server_2008
windows_7
windows_server_2012
windows_server_2016
windows_rt_8.1
windows_8.1
windows_server_2019
windows_11
windows_server_2022
windows_se…
Windows exFAT File System Information Disclosure Vulnerability NVD-CWE-noinfo
CVE-2021-38663 2024-11-21 15:17 2021-10-13 Show GitHub Exploit DB Packet Storm
190850 5.5 MEDIUM
Local
microsoft windows_10
windows_server_2008
windows_7
windows_server_2012
windows_server_2016
windows_rt_8.1
windows_8.1
windows_server_2019
windows_11
windows_server_2022
windows_se…
Windows Fast FAT File System Driver Information Disclosure Vulnerability NVD-CWE-noinfo
CVE-2021-38662 2024-11-21 15:17 2021-10-13 Show GitHub Exploit DB Packet Storm