Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
61 9.8 緊急
Network
Rubyconcurrency Concurrent Ruby RubyconcurrencyのConcurrent Rubyにおける複数の脆弱性 New CWE-414
CWE-667
CVE-2026-54906 2026-06-29 11:23 2026-06-24 Show GitHub Exploit DB Packet Storm
62 9.8 緊急
Network
rtklib RTKLIB rtklibのRTKLIBにおける境界外書き込みに関する脆弱性 New CWE-787
境界外書き込み
CVE-2026-56786 2026-06-29 11:23 2026-06-25 Show GitHub Exploit DB Packet Storm
63 7.5 重要
Network
rtklib RTKLIB rtklibのRTKLIBにおける境界条件の判定に関する脆弱性 New CWE-193
境界条件の判定
CVE-2026-56787 2026-06-29 11:23 2026-06-25 Show GitHub Exploit DB Packet Storm
64 7.1 重要
Local
rtklib RTKLIB rtklibのRTKLIBにおける境界外読み取りに関する脆弱性 New CWE-125
境界外読み取り
CVE-2026-56788 2026-06-29 11:23 2026-06-25 Show GitHub Exploit DB Packet Storm
65 6.5 警告
Network
rtklib RTKLIB rtklibのRTKLIBにおけるヒープベースのバッファオーバーフローの脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-56789 2026-06-29 11:23 2026-06-25 Show GitHub Exploit DB Packet Storm
66 2.6
Network
Nokogiri project Nokogiri Nokogiriにおける複数の脆弱性 New CWE-178
CWE-184
CWE-611
CVE-2026-57234 2026-06-29 11:23 2026-06-25 Show GitHub Exploit DB Packet Storm
67 8.2 重要
Network
Nokogiri project Nokogiri Nokogiriにおける複数の脆弱性 New CWE-125
CWE-190
CVE-2026-57235 2026-06-29 11:23 2026-06-25 Show GitHub Exploit DB Packet Storm
68 8.2 重要
Network
Nokogiri project Nokogiri Nokogiriにおける解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-57236 2026-06-29 11:23 2026-06-25 Show GitHub Exploit DB Packet Storm
69 4.3 警告
Network
Jenkins プロジェクト Priority Sorter JenkinsのPriority Sorterにおけるクロスサイトリクエストフォージェリの脆弱性 New CWE-352
同一生成元ポリシー違反
CVE-2026-57290 2026-06-29 11:23 2026-06-24 Show GitHub Exploit DB Packet Storm
70 5.4 警告
Network
Jenkins プロジェクト EC2 Fleet JenkinsのEC2 Fleetにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-57294 2026-06-29 11:22 2026-06-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 29, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
254301 4.8 MEDIUM
Network
d-link dir-615_t1_firmware D-Link DIR-615 T1 devices allow XSS via the Add User feature. CWE-79
Cross-site Scripting
CVE-2018-10110 2024-11-21 12:40 2018-04-19 Show GitHub Exploit DB Packet Storm
254302 7.5 HIGH
Network
logmein lastpass LogMeIn LastPass through 4.15.0 allows remote attackers to cause a denial of service (browser hang) via an HTML document because the resource consumption of onloadwff.js grows with the number of INPU… CWE-400
 Uncontrolled Resource Consumption
CVE-2018-10193 2024-11-21 12:40 2018-04-18 Show GitHub Exploit DB Packet Storm
254303 9.8 CRITICAL
Network
mruby
debian
mruby
debian_linux
In versions of mruby up to and including 1.4.0, an integer overflow exists in src/vm.c::mrb_vm_exec() when handling OP_GETUPVAR in the presence of deep scope nesting, resulting in a use-after-free. A… CWE-190
 Integer Overflow or Wraparound
CVE-2018-10191 2024-11-21 12:40 2018-04-18 Show GitHub Exploit DB Packet Storm
254304 7.5 HIGH
Network
mautic mautic An issue was discovered in Mautic 1.x and 2.x before 2.13.0. It is possible to systematically emulate tracking cookies per contact due to tracking the contact by their auto-incremented ID. Thus, a th… CWE-200
Information Exposure
CVE-2018-10189 2024-11-21 12:40 2018-04-18 Show GitHub Exploit DB Packet Storm
254305 5.5 MEDIUM
Local
radare radare2 In radare2 2.5.0, there is a heap-based buffer over-read in the dalvik_op function (libr/anal/p/anal_dalvik.c). Remote attackers could leverage this vulnerability to cause a denial of service via a c… CWE-125
Out-of-bounds Read
CVE-2018-10187 2024-11-21 12:40 2018-04-18 Show GitHub Exploit DB Packet Storm
254306 5.5 MEDIUM
Local
radare radare2 In radare2 2.5.0, there is a heap-based buffer over-read in the r_hex_bin2str function (libr/util/hex.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted… CWE-125
Out-of-bounds Read
CVE-2018-10186 2024-11-21 12:40 2018-04-18 Show GitHub Exploit DB Packet Storm
254307 8.8 HIGH
Network
tuzicms tuzicms An issue was discovered in TuziCMS v2.0.6. There is a CSRF vulnerability that can add an admin account, as demonstrated by a history.pushState call. CWE-352
 Origin Validation Error
CVE-2018-10185 2024-11-21 12:40 2018-04-18 Show GitHub Exploit DB Packet Storm
254308 6.1 MEDIUM
Network
bigtreecms bigtree_cms An issue was discovered in BigTree 4.2.22. There is cross-site scripting (XSS) in /core/inc/lib/less.php/test/index.php because of a $_SERVER['REQUEST_URI'] echo, as demonstrated by the dir parameter… CWE-79
Cross-site Scripting
CVE-2018-10183 2024-11-21 12:40 2018-04-17 Show GitHub Exploit DB Packet Storm
254309 7.8 HIGH
Local
artifex
canonical
debian
redhat
ghostscript
ubuntu_linux
debian_linux
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_server_eus
enterprise_linux_server_aus
ent…
The set_text_distance function in devices/vector/gdevpdts.c in the pdfwrite component in Artifex Ghostscript through 9.22 does not prevent overflows in text-positioning calculation, which allows remo… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-10194 2024-11-21 12:40 2018-04-19 Show GitHub Exploit DB Packet Storm
254310 5.3 MEDIUM
Network
iac fromdoctopdf The FromDocToPDF extension before 13.611.13.2303 for Chrome allows remote attackers to discover visited web sites via vectors involving a mostVisitedSites command. CWE-200
Information Exposure
CVE-2018-10178 2024-11-21 12:40 2018-04-17 Show GitHub Exploit DB Packet Storm