Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
691 8.8 重要
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35299 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
692 9.8 緊急
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける信頼できないデータのデシリアライゼーションに関する脆弱性 New CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-35300 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
693 10 緊急
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35301 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
694 8.3 重要
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおけるオープンリダイレクトの脆弱性 New CWE-601
オープンリダイレクト
CVE-2026-35302 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
695 8.8 重要
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35303 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
696 9.8 緊急
Network
オラクル Oracle Coherence オラクルのOracle Coherenceにおける重要な機能に対する認証の欠如に関する脆弱性 New CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35304 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
697 9.3 緊急
Network
オラクル Oracle Coherence オラクルのOracle Coherenceにおけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-35305 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
698 9.3 緊急
Network
オラクル Oracle Coherence オラクルのOracle Coherenceにおけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-35306 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
699 10 緊急
Network
オラクル Oracle Coherence オラクルのOracle Coherenceにおけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-35307 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
700 10 緊急
Network
オラクル Oracle Coherence オラクルのOracle Coherenceにおけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2026-35308 2026-06-22 11:39 2026-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
320591 9.8 CRITICAL
Network
docker desktop A remote code execution (RCE) vulnerability via crafted extension publisher-url/additional-urls could be abused by a malicious extension in Docker Desktop before 4.34.2. NVD-CWE-noinfo
CVE-2024-8696 2024-09-14 01:01 2024-09-13 Show GitHub Exploit DB Packet Storm
320592 9.8 CRITICAL
Network
docker desktop A remote code execution (RCE) vulnerability via crafted extension description/changelog could be abused by a malicious extension in Docker Desktop before 4.34.2. NVD-CWE-noinfo
CVE-2024-8695 2024-09-14 01:01 2024-09-13 Show GitHub Exploit DB Packet Storm
320593 7.2 HIGH
Network
starkdigital wp_testimonial_widget Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Stark Digital WP Testimonial Widget.This issue affects WP Testimonial Widget: from n/a through 3.… CWE-89
SQL Injection
CVE-2024-43966 2024-09-14 01:01 2024-08-27 Show GitHub Exploit DB Packet Storm
320594 5.3 MEDIUM
Adjacent
phoenixcontact charx_sec-3150_firmware
charx_sec-3100_firmware
charx_sec-3050_firmware
charx_sec-3000_firmware
An unauthenticated remote attacker can use this vulnerability to change the device configuration due to a file writeable for short time after system startup. CWE-552
 Files or Directories Accessible to External Parties
CVE-2024-3913 2024-09-14 00:58 2024-08-13 Show GitHub Exploit DB Packet Storm
320595 5.4 MEDIUM
Network
code-projects inventory_management A vulnerability classified as problematic was found in code-projects Inventory Management 1.0. This vulnerability affects unknown code of the file /view/registration.php of the component Registration… CWE-79
Cross-site Scripting
CVE-2024-8605 2024-09-14 00:31 2024-09-10 Show GitHub Exploit DB Packet Storm
320596 4.8 MEDIUM
Network
craftcms craft_cms Craft is a content management system (CMS). Craft CMS 5 stored XSS can be triggered by the breadcrumb list and title fields with user input. CWE-79
Cross-site Scripting
CVE-2024-45406 2024-09-14 00:30 2024-09-10 Show GitHub Exploit DB Packet Storm
320597 7.2 HIGH
Network
mozilo mozilocms An arbitrary file upload vulnerability in the component /admin/index.php of moziloCMS v3.0 allows attackers to execute arbitrary code via uploading a crafted file. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-44871 2024-09-14 00:28 2024-09-11 Show GitHub Exploit DB Packet Storm
320598 6.1 MEDIUM
Network
mozilo mozilocms A reflected cross-site scripting (XSS) vulnerability in moziloCMS v3.0 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload. CWE-79
Cross-site Scripting
CVE-2024-44872 2024-09-14 00:26 2024-09-11 Show GitHub Exploit DB Packet Storm
320599 7.8 HIGH
Local
microsoft windows_10_1809
windows_server_2019
windows_server_2022
windows_11_21h2
windows_11_22h2
windows_server_2022_23h2
windows_10_1607
windows_server_2016
windows_10_22h2
windows…
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-38252 2024-09-14 00:23 2024-09-11 Show GitHub Exploit DB Packet Storm
320600 7.8 HIGH
Local
microsoft windows_11_21h2
windows_11_22h2
windows_server_2022_23h2
windows_11_24h2
windows_11_23h2
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-38253 2024-09-14 00:20 2024-09-11 Show GitHub Exploit DB Packet Storm