Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
701 7.2 重要
Network
- オラクルのEnterprise Manager Base Platformにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-46868 2026-06-22 11:52 2026-06-17 Show GitHub Exploit DB Packet Storm
702 6.5 警告
Network
オラクル MySQL Shell オラクルのMySQL Shellにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-46869 2026-06-22 11:52 2026-06-17 Show GitHub Exploit DB Packet Storm
703 9 緊急
Network
- オラクルのEnterprise Manager Base Platformにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-46872 2026-06-22 11:52 2026-06-17 Show GitHub Exploit DB Packet Storm
704 7.5 重要
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-46873 2026-06-22 11:52 2026-06-17 Show GitHub Exploit DB Packet Storm
705 3.2
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-46874 2026-06-22 11:52 2026-06-17 Show GitHub Exploit DB Packet Storm
706 9.1 緊急
Network
- オラクルのEnterprise Manager Base Platformにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-46875 2026-06-22 11:52 2026-06-17 Show GitHub Exploit DB Packet Storm
707 6 警告
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-46877 2026-06-22 11:52 2026-06-17 Show GitHub Exploit DB Packet Storm
708 9.8 緊急
Network
オラクル JD Edwards EnterpriseOne Tools オラクルのJD Edwards EnterpriseOne Toolsにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46878 2026-06-22 11:52 2026-06-17 Show GitHub Exploit DB Packet Storm
709 9.8 緊急
Network
オラクル JD Edwards EnterpriseOne Tools オラクルのJD Edwards EnterpriseOne Toolsにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-46879 2026-06-22 11:52 2026-06-17 Show GitHub Exploit DB Packet Storm
710 9.8 緊急
Network
オラクル JD Edwards EnterpriseOne Tools オラクルのJD Edwards EnterpriseOne Toolsにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46880 2026-06-22 11:51 2026-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
190931 7.5 HIGH
Network
huntflow huntflow_enterprise An LDAP injection vulnerability in /account/login in Huntflow Enterprise before 3.10.6 could allow an unauthenticated, remote user to modify the logic of an LDAP query and bypass authentication. The … CWE-74
Injection
CVE-2021-37933 2024-11-21 15:16 2021-10-15 Show GitHub Exploit DB Packet Storm
190932 6.1 MEDIUM
Network
sap netweaver SAP NetWeaver - versions 700, 701, 702, 730, does not sufficiently encode user-controlled inputs, allowing an attacker to cause a potential victim to supply a malicious content to a vulnerable web ap… CWE-79
Cross-site Scripting
CVE-2021-38183 2024-11-21 15:16 2021-10-13 Show GitHub Exploit DB Packet Storm
190933 7.5 HIGH
Network
sap netweaver_application_server_abap
netweaver_abap
SAP NetWeaver AS ABAP and ABAP Platform - versions 700, 701, 702, 730, 731, 740, 750, 751, 752, 753, 754, 755, 756, allows an attacker to prevent legitimate users from accessing a service, either by … NVD-CWE-noinfo
CVE-2021-38181 2024-11-21 15:16 2021-10-13 Show GitHub Exploit DB Packet Storm
190934 9.8 CRITICAL
Network
sap business_one SAP Business One - version 10.0, allows an attacker to inject formulas when exporting data to Excel (CSV injection) due to improper sanitation during the data export. An attacker could thereby execut… - CVE-2021-38180 2024-11-21 15:16 2021-10-13 Show GitHub Exploit DB Packet Storm
190935 4.9 MEDIUM
Network
sap business_one Debug function of Admin UI of SAP Business One Integration is enabled by default. This allows Admin User to see the captured packet contents which may include User credentials. NVD-CWE-Other
CVE-2021-38179 2024-11-21 15:16 2021-10-13 Show GitHub Exploit DB Packet Storm
190936 8.8 HIGH
Network
sap netweaver_application_server_abap
netweaver_abap
The software logistics system of SAP NetWeaver AS ABAP and ABAP Platform versions - 700, 701, 702, 710, 730, 731, 740, 750, 751, 752, 753, 754, 755, 756, enables a malicious user to transfer ABAP cod… NVD-CWE-Other
CVE-2021-38178 2024-11-21 15:16 2021-10-13 Show GitHub Exploit DB Packet Storm
190937 6.5 MEDIUM
Network
google
fedoraproject
debian
chrome
fedora
debian_linux
Inappropriate implementation in Memory in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. CWE-862
 Missing Authorization
CVE-2021-37976 2024-11-21 15:16 2021-10-9 Show GitHub Exploit DB Packet Storm
190938 8.8 HIGH
Network
google
fedoraproject
debian
chrome
fedora
debian_linux
Use after free in V8 in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. CWE-416
 Use After Free
CVE-2021-37975 2024-11-21 15:16 2021-10-9 Show GitHub Exploit DB Packet Storm
190939 8.8 HIGH
Network
google
fedoraproject
debian
chrome
fedora
debian_linux
Use after free in Safebrowsing in Google Chrome prior to 94.0.4606.71 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. CWE-416
 Use After Free
CVE-2021-37974 2024-11-21 15:16 2021-10-9 Show GitHub Exploit DB Packet Storm
190940 8.8 HIGH
Network
google
fedoraproject
debian
chrome
fedora
debian_linux
Out of bounds read in libjpeg-turbo in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. CWE-125
Out-of-bounds Read
CVE-2021-37972 2024-11-21 15:16 2021-10-9 Show GitHub Exploit DB Packet Storm