Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
761 9.8 緊急
Network
マイクロソフト Azure Stack Edge Azure Stack Edge のリモートでコードが実行される脆弱性 CWE-610
CWE-73
CVE-2026-47643 2026-06-22 11:49 2026-06-9 Show GitHub Exploit DB Packet Storm
762 6.5 警告
Network
マイクロソフト Microsoft Graph Microsoft Graph の情報漏えいの脆弱性 CWE-200
CWE-noinfo
CVE-2026-47655 2026-06-22 11:49 2026-06-4 Show GitHub Exploit DB Packet Storm
763 7.5 重要
Network
VMware Spring AI VMwareのSpring AIにおけるデータクエリロジックの特殊要素の不適切な中立化に関する脆弱性 CWE-943
データクエリロジックの特殊要素の不適切な中立化
CVE-2026-47835 2026-06-22 11:49 2026-06-15 Show GitHub Exploit DB Packet Storm
764 8.1 重要
Network
VMware Spring Security VMwareのSpring Securityにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-47838 2026-06-22 11:49 2026-06-10 Show GitHub Exploit DB Packet Storm
765 7.8 重要
Local
アドビシステムズ Adobe Acrobat Reader DC
Adobe Acrobat
Adobe Acrobat DC
アドビのAdobe Acrobat等の複数製品における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-47965 2026-06-22 11:49 2026-06-12 Show GitHub Exploit DB Packet Storm
766 8.2 重要
Network
アドビシステムズ Adobe Acrobat アドビのAdobe Acrobatにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-48294 2026-06-22 11:49 2026-06-17 Show GitHub Exploit DB Packet Storm
767 9.3 緊急
Network
Rocket.Chat Rocket.Chat Rocket.Chatにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-48616 2026-06-22 11:49 2026-06-17 Show GitHub Exploit DB Packet Storm
768 7.5 重要
Network
ws project ws ws projectのwsにおける複数の脆弱性 CWE-400
CWE-770
CVE-2026-48779 2026-06-22 11:49 2026-06-17 Show GitHub Exploit DB Packet Storm
769 7.5 重要
Network
Rocket.Chat Rocket.Chat Rocket.Chatにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-48929 2026-06-22 11:49 2026-06-17 Show GitHub Exploit DB Packet Storm
770 9.8 緊急
Network
MariaDB Corporation Ab. MariaDB MariaDB Corporation Ab.のMariaDBにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-49261 2026-06-22 11:49 2026-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
190921 5.5 MEDIUM
Local
northern.tech cfengine The Hub in CFEngine Enterprise 3.6.7 through 3.18.0 has Insecure Permissions that allow local Information Disclosure. CWE-276
Incorrect Default Permissions 
CVE-2021-38379 2024-11-21 15:16 2021-10-28 Show GitHub Exploit DB Packet Storm
190922 7.8 HIGH
Local
nxp mcuxpresso_software_development_kit NXP MCUXpresso SDK v2.7.0 was discovered to contain a buffer overflow in the function USB_HostParseDeviceConfigurationDescriptor(). CWE-120
Classic Buffer Overflow
CVE-2021-38260 2024-11-21 15:16 2021-10-26 Show GitHub Exploit DB Packet Storm
190923 7.8 HIGH
Local
nxp mcuxpresso_software_development_kit NXP MCUXpresso SDK v2.7.0 was discovered to contain a buffer overflow in the function USB_HostProcessCallback(). CWE-120
Classic Buffer Overflow
CVE-2021-38258 2024-11-21 15:16 2021-10-26 Show GitHub Exploit DB Packet Storm
190924 9.8 CRITICAL
Network
apache storm A Command Injection vulnerability exists in the getTopologyHistory service of the Apache Storm 2.x prior to 2.2.1 and Apache Storm 1.x prior to 1.2.4. A specially crafted thrift request to the Nimbus… CWE-78
OS Command 
CVE-2021-38294 2024-11-21 15:16 2021-10-25 Show GitHub Exploit DB Packet Storm
190925 9.8 CRITICAL
Network
advantech webaccess Advantech WebAccess versions 9.02 and prior are vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute code. CWE-787
 Out-of-bounds Write
CVE-2021-38389 2024-11-21 15:16 2021-10-18 Show GitHub Exploit DB Packet Storm
190926 9.8 CRITICAL
Network
golang
fedoraproject
go
fedora
Go before 1.16.9 and 1.17.x before 1.17.2 has a Buffer Overflow via large arguments in a function invocation from a WASM module, when GOARCH=wasm GOOS=js is used. CWE-120
Classic Buffer Overflow
CVE-2021-38297 2024-11-21 15:16 2021-10-18 Show GitHub Exploit DB Packet Storm
190927 7.3 HIGH
Local
apache couchdb In Apache CouchDB, a malicious user with permission to create documents in a database is able to attach a HTML attachment to a document. If a CouchDB admin opens that attachment in a browser, e.g. vi… CWE-79
Cross-site Scripting
CVE-2021-38295 2024-11-21 15:16 2021-10-15 Show GitHub Exploit DB Packet Storm
190928 8.8 HIGH
Network
brizy brizy-page_builder The Brizy Page Builder plugin <= 2.3.11 for WordPress allowed authenticated users to upload executable files to a location of their choice using the brizy_create_block_screenshot AJAX action. The fil… CWE-22
CWE-434
Path Traversal
 Unrestricted Upload of File with Dangerous Type 
CVE-2021-38346 2024-11-21 15:16 2021-10-15 Show GitHub Exploit DB Packet Storm
190929 6.5 MEDIUM
Network
brizy brizy-page_builder The Brizy Page Builder plugin <= 2.3.11 for WordPress used an incorrect authorization check that allowed any logged-in user accessing any endpoint in the wp-admin directory to modify the content of a… CWE-863
 Incorrect Authorization
CVE-2021-38345 2024-11-21 15:16 2021-10-15 Show GitHub Exploit DB Packet Storm
190930 5.4 MEDIUM
Network
brizy brizy-page_builder The Brizy Page Builder plugin <= 2.3.11 for WordPress was vulnerable to stored XSS by lower-privileged users such as a subscribers. It was possible to add malicious JavaScript to a page by modifying … - CVE-2021-38344 2024-11-21 15:16 2021-10-15 Show GitHub Exploit DB Packet Storm