Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
91 7.8 重要
Local
マイクロソフト Visual Studio Code Visual Studio Code MSSQL 拡張機能のリモートでコードが実行される脆弱性 New CWE-829
CWE-94
CVE-2026-47292 2026-06-16 13:36 2026-06-9 Show GitHub Exploit DB Packet Storm
92 6.2 警告
Local
アドビシステムズ C2PA (Coalition for Content Provenance and Authenticity)
(Content Authenticity Initiative) c2pa-web
アドビの(Content Authenticity Initiative) c2pa-web等の複数製品におけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-47902 2026-06-16 13:36 2026-06-9 Show GitHub Exploit DB Packet Storm
93 6.2 警告
Local
アドビシステムズ C2PA (Coalition for Content Provenance and Authenticity)
(Content Authenticity Initiative) c2pa-web
アドビの(Content Authenticity Initiative) c2pa-web等の複数製品における入力確認に関する脆弱性 New CWE-20
不適切な入力確認
CVE-2026-47903 2026-06-16 13:36 2026-06-9 Show GitHub Exploit DB Packet Storm
94 6.2 警告
Local
アドビシステムズ C2PA (Coalition for Content Provenance and Authenticity)
(Content Authenticity Initiative) c2pa-web
アドビの(Content Authenticity Initiative) c2pa-web等の複数製品におけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-47904 2026-06-16 13:36 2026-06-9 Show GitHub Exploit DB Packet Storm
95 6.2 警告
Local
アドビシステムズ C2PA (Coalition for Content Provenance and Authenticity)
(Content Authenticity Initiative) c2pa-web
アドビの(Content Authenticity Initiative) c2pa-web等の複数製品におけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-47905 2026-06-16 13:36 2026-06-9 Show GitHub Exploit DB Packet Storm
96 10 緊急
Network
アドビシステムズ Adobe ColdFusion アドビのAdobe ColdFusionにおける入力確認に関する脆弱性 New CWE-20
CWE-noinfo
CVE-2026-47928 2026-06-16 13:36 2026-06-9 Show GitHub Exploit DB Packet Storm
97 9.1 緊急
Network
アドビシステムズ Adobe ColdFusion アドビのAdobe ColdFusionにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-47929 2026-06-16 13:36 2026-06-9 Show GitHub Exploit DB Packet Storm
98 8.1 重要
Network
アドビシステムズ Adobe ColdFusion アドビのAdobe ColdFusionにおける入力確認に関する脆弱性 New CWE-20
CWE-noinfo
CVE-2026-47930 2026-06-16 13:36 2026-06-9 Show GitHub Exploit DB Packet Storm
99 9.9 緊急
Network
アドビシステムズ Adobe ColdFusion アドビのAdobe ColdFusionにおける入力確認に関する脆弱性 New CWE-20
CWE-noinfo
CVE-2026-47931 2026-06-16 13:36 2026-06-9 Show GitHub Exploit DB Packet Storm
100 9.6 緊急
Network
アドビシステムズ Adobe ColdFusion アドビのAdobe ColdFusionにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-47932 2026-06-16 13:36 2026-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
257801 8.8 HIGH
Adjacent
samsung magician Samsung Magician 5.0 fails to validate TLS certificates for HTTPS software update traffic. Prior to version 5.0, Samsung Magician uses HTTP for software updates. CWE-345
 Insufficient Verification of Data Authenticity
CVE-2017-3218 2024-11-21 12:25 2017-06-22 Show GitHub Exploit DB Packet Storm
257802 9.8 CRITICAL
Network
greenpacket
huawei
mada
zte
zyxel
ox350_firmware
bm2022_firmware
hes-309m_firmware
hes-319m_firmware
hes-319m2w_firmware
hes-339m_firmware
soho_wireless_router_firmware
ox-330p_firmware
max218m_firmware
max…
WiMAX routers based on the MediaTek SDK (libmtk) that use a custom httpd plugin are vulnerable to an authentication bypass allowing a remote, unauthenticated attacker to gain administrator access to … CWE-306
Missing Authentication for Critical Function
CVE-2017-3216 2024-11-21 12:25 2017-06-20 Show GitHub Exploit DB Packet Storm
257803 5.3 MEDIUM
Network
milwaukee one-key The Milwaukee ONE-KEY Android mobile application uses bearer tokens with an expiration of one year. This bearer token, in combination with a user_id can be used to perform user actions. CWE-613
 Insufficient Session Expiration
CVE-2017-3215 2024-11-21 12:25 2017-06-20 Show GitHub Exploit DB Packet Storm
257804 7.5 HIGH
Network
milwaukeetool one-key The Milwaukee ONE-KEY Android mobile application stores the master token in plaintext in the apk binary. CWE-312
CWE-522
 Cleartext Storage of Sensitive Information
 Insufficiently Protected Credentials
CVE-2017-3214 2024-11-21 12:25 2017-06-20 Show GitHub Exploit DB Packet Storm
257805 5.9 MEDIUM
Network
think_mutual_bank think_mutual_bank_mobile_banking_app The Think Mutual Bank Mobile Banking app 3.1.5 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information … CWE-295
Improper Certificate Validation 
CVE-2017-3213 2024-11-21 12:25 2017-05-5 Show GitHub Exploit DB Packet Storm
257806 5.9 MEDIUM
Network
sccu space_coast_credit_union The Space Coast Credit Union Mobile app 2.2 for iOS and 2.1.0.1104 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtai… CWE-295
Improper Certificate Validation 
CVE-2017-3212 2024-11-21 12:25 2017-05-5 Show GitHub Exploit DB Packet Storm
257807 7.1 HIGH
Network
oracle one-to-one_fulfillment Vulnerability in the Oracle One-to-One Fulfillment component of Oracle E-Business Suite (subcomponent: Audience workbench). Supported versions that are affected are 12.1.1, 12.1.2 and 12.1.3. Easily … NVD-CWE-noinfo
CVE-2017-3434 2024-11-21 12:25 2017-04-26 Show GitHub Exploit DB Packet Storm
257808 7.1 HIGH
Network
oracle marketing Vulnerability in the Oracle Marketing component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and … NVD-CWE-noinfo
CVE-2017-3356 2024-11-21 12:25 2017-04-26 Show GitHub Exploit DB Packet Storm
257809 7.1 HIGH
Network
oracle marketing Vulnerability in the Oracle Marketing component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and … NVD-CWE-noinfo
CVE-2017-3355 2024-11-21 12:25 2017-04-26 Show GitHub Exploit DB Packet Storm
257810 7.1 HIGH
Network
oracle marketing Vulnerability in the Oracle Marketing component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and … NVD-CWE-noinfo
CVE-2017-3347 2024-11-21 12:25 2017-04-26 Show GitHub Exploit DB Packet Storm