Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
131 5.5 警告
Local
ImageMagick ImageMagick ImageMagickにおける複数の脆弱性 New CWE-131
CWE-252
CWE-787
CWE-835
CVE-2026-46521 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
132 7.5 重要
Network
ImageMagick ImageMagick ImageMagickにおける複数の脆弱性 New CWE-400
CWE-835
CVE-2026-46522 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
133 6.2 警告
Local
ImageMagick ImageMagick ImageMagickにおける解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-46523 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
134 4.6 警告
Adjacent
Espressif Systems ESP-IDF Espressif SystemsのESP-IDFにおける境界外読み取りに関する脆弱性 New CWE-125
境界外読み取り
CVE-2026-46532 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
135 6.2 警告
Local
ImageMagick ImageMagick ImageMagickにおける再帰制御に関する脆弱性 New CWE-674
不適切な再帰制御
CVE-2026-46557 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
136 8.3 重要
Network
plane plane planeにおける複数の脆弱性 New CWE-639
CWE-862
CVE-2026-46558 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
137 4 警告
Local
ImageMagick ImageMagick ImageMagickにおける複数の脆弱性 New CWE-193
CWE-787
CVE-2026-46559 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
138 4.1 警告
Local
ImageMagick ImageMagick ImageMagickにおけるヒープベースのバッファオーバーフローの脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-46692 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
139 4.1 警告
Local
ImageMagick ImageMagick ImageMagickにおける複数の脆弱性 New CWE-362
CWE-567
CVE-2026-46693 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
140 4.1 警告
Local
ImageMagick ImageMagick ImageMagickにおける情報漏えいに関する脆弱性 New CWE-200
情報漏えい
CVE-2026-47165 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
258101 7.8 HIGH
Local
chitora lhaz\+ Untrusted search path vulnerability in Self-extracting archive files created by Lhaz+ version 3.4.0 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified director… CWE-426
 Untrusted Search Path
CVE-2017-2249 2024-11-21 12:23 2017-07-17 Show GitHub Exploit DB Packet Storm
258102 7.8 HIGH
Local
chitora lhaz\+ Untrusted search path vulnerability in Installer of Lhaz+ version 3.4.0 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. CWE-426
 Untrusted Search Path
CVE-2017-2248 2024-11-21 12:23 2017-07-17 Show GitHub Exploit DB Packet Storm
258103 7.8 HIGH
Local
chitora lhaz Untrusted search path vulnerability in Self-extracting archive files created by Lhaz version 2.4.0 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. CWE-426
 Untrusted Search Path
CVE-2017-2247 2024-11-21 12:23 2017-07-17 Show GitHub Exploit DB Packet Storm
258104 7.8 HIGH
Local
chitora lhaz Untrusted search path vulnerability in Installer of Lhaz version 2.4.0 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. CWE-426
 Untrusted Search Path
CVE-2017-2246 2024-11-21 12:23 2017-07-17 Show GitHub Exploit DB Packet Storm
258105 6.3 MEDIUM
Network
hammock assetview SQL injection vulnerability in the AssetView for MacOS Ver.9.2.0 and earlier versions allows remote attackers to execute arbitrary SQL commands via "File Transfer Web Service". CWE-89
SQL Injection
CVE-2017-2241 2024-11-21 12:23 2017-07-17 Show GitHub Exploit DB Packet Storm
258106 6.5 MEDIUM
Network
hammock assetview Directory traversal vulnerability in AssetView for MacOS Ver.9.2.0 and earlier versions allows remote attackers to read arbitrary files via "File Transfer Web Service". CWE-22
Path Traversal
CVE-2017-2240 2024-11-21 12:23 2017-07-17 Show GitHub Exploit DB Packet Storm
258107 5.0 MEDIUM
Network
getshortcodes shortcodes_ultimate Directory traversal vulnerability in Shortcodes Ultimate prior to version 4.10.0 allows remote attackers to read arbitrary files via unspecified vectors. CWE-22
Path Traversal
CVE-2017-2245 2024-11-21 12:23 2017-07-7 Show GitHub Exploit DB Packet Storm
258108 8.8 HIGH
Network
brother mfc-j960dwn_firmware Cross-site request forgery (CSRF) vulnerability in MFC-J960DWN firmware ver.D and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors. CWE-352
 Origin Validation Error
CVE-2017-2244 2024-11-21 12:23 2017-07-7 Show GitHub Exploit DB Packet Storm
258109 6.1 MEDIUM
Network
dfactory responsive_lightbox Cross-site scripting vulnerability in Responsive Lightbox prior to version 1.7.2 allows an attacker to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2017-2243 2024-11-21 12:23 2017-07-7 Show GitHub Exploit DB Packet Storm
258110 5.3 MEDIUM
Local
marp marp Marp versions v0.0.10 and earlier may allow an attacker to access local resources and files using JavaScript. CWE-200
Information Exposure
CVE-2017-2239 2024-11-21 12:23 2017-07-7 Show GitHub Exploit DB Packet Storm