Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188091 7.8 重要
Local
インテル - インテル グラフィックス・ドライバーにおける NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2017-5727 2018-03-5 16:53 2017-02-1 Show GitHub Exploit DB Packet Storm
188092 9.8 緊急
Network
Grohs Fabian - Minecraft Servers List Lite および Premium Minecraft Servers List における危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2018-5749 2018-03-5 16:48 2018-01-18 Show GitHub Exploit DB Packet Storm
188093 7.8 重要
Local
ヒューレット・パッカード - 複数の HP DesignJet および Latex 製品における証明書・パスワードの管理に関する脆弱性 CWE-255
証明書・パスワード管理
CVE-2017-2747 2018-03-5 16:48 2017-08-2 Show GitHub Exploit DB Packet Storm
188094 7.5 重要
Network
Lenovo
IBM
- 複数の Lenovo および IBM 製品におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2017-3768 2018-03-5 16:47 2018-01-23 Show GitHub Exploit DB Packet Storm
188095 8.8 重要
Network
Jenkins プロジェクト - Jenkins Speaks! プラグインにおける認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-1000403 2018-03-5 16:39 2017-10-11 Show GitHub Exploit DB Packet Storm
188096 2.2
Local
Jenkins プロジェクト - Jenkins における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-1000401 2018-03-5 16:39 2017-10-11 Show GitHub Exploit DB Packet Storm
188097 5.4 警告
Network
Jenkins プロジェクト - Jenkins Active Choices プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-1000386 2018-03-5 16:39 2017-10-23 Show GitHub Exploit DB Packet Storm
188098 8.8 重要
Network
Atlassian - SourceTree におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2017-14592 2018-03-5 16:00 2017-12-21 Show GitHub Exploit DB Packet Storm
188099 7.8 重要
Local
GNU Project - GNU Binutils における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2018-6323 2018-03-5 15:52 2018-01-25 Show GitHub Exploit DB Packet Storm
188100 5.3 警告
Network
PowerDNS - PowerDNS Recursor における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-15093 2018-03-5 15:47 2017-11-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
11 5.3 MEDIUM
Network
wolfssl wolfssl Certificates with wildcard DNS SANs (e.g. *.example.com) bypassed CA name-constraint checks. A certificate with a wildcard DNS SAN that should be rejected by the issuing CA's permitted/excluded DNS n… New CWE-295
Improper Certificate Validation 
CVE-2026-10592 2026-06-27 03:55 2026-06-26 Show GitHub Exploit DB Packet Storm
12 7.5 HIGH
Network
wolfssl wolfssl X.509 trust-chain bypass in the OpenSSL compatibility certificate verifier (wolfSSL_X509_verify_cert()). This affects only builds with --enable-opensslextra (OPENSSL_EXTRA) and whose application vali… New CWE-295
Improper Certificate Validation 
CVE-2026-11310 2026-06-27 03:54 2026-06-26 Show GitHub Exploit DB Packet Storm
13 7.5 HIGH
Network
microsoft cost_management Exposure of sensitive information to an unauthorized actor in Cost Management Interactive Experiences allows an unauthorized attacker to disclose information over a network. New CWE-200
Information Exposure
CVE-2026-47633 2026-06-27 03:54 2026-06-19 Show GitHub Exploit DB Packet Storm
14 7.5 HIGH
Network
wolfssl wolfssl Out-of-bounds heap read during SM2/SM3 certificate signature verification. When parsing a certificate with an SM3wSM2 signature, the Subject Key Identifier computation reads the trailing 65 bytes of … New CWE-125
Out-of-bounds Read
CVE-2026-12340 2026-06-27 03:54 2026-06-26 Show GitHub Exploit DB Packet Storm
15 7.5 HIGH
Network
wolfssl wolfssl Out-of-bounds write in the Renesas TSIP TLS 1.3 transcript buffer. In tsip_StoreMessage() the capacity check guarding the fixed message bag (MSGBAG_SIZE) sets an error code but fails to return, so ex… New CWE-393
CWE-787
 Return of Wrong Status Code
 Out-of-bounds Write
CVE-2026-55958 2026-06-27 03:54 2026-06-26 Show GitHub Exploit DB Packet Storm
16 7.5 HIGH
Network
wolfssl wolfssl Un-negotiated Raw Public Key (RFC 7250) accepted in place of an X.509 certificate, bypassing chain validation. A raw public key has no chain, so ParseCertRelative() accepts it without performing any … New CWE-295
Improper Certificate Validation 
CVE-2026-55960 2026-06-27 03:54 2026-06-26 Show GitHub Exploit DB Packet Storm
17 5.3 MEDIUM
Network
wolfssl wolfssl Chain intermediate CA:TRUE without keyCertSign accepted as a signing CA. Intermediate CA certificates are required to have the keyCertSign key usage when a Key Usage extension is present, but chain-s… New CWE-295
Improper Certificate Validation 
CVE-2026-55964 2026-06-27 03:53 2026-06-26 Show GitHub Exploit DB Packet Storm
18 5.5 MEDIUM
Local
jqlang jq jq is a command-line JSON processor. Prior to 1.8.2, on 32bit system, jvp_string_append has a chance of integer/multiple overflowing and then causing a massive buffer overrun. This vulnerability is … New CWE-190
 Integer Overflow or Wraparound
CVE-2026-54679 2026-06-27 03:53 2026-06-26 Show GitHub Exploit DB Packet Storm
19 7.1 HIGH
Local
jqlang jq jq is a command-line JSON processor. Prior to 1.8.2,` jq --rawfile` can turn a handled oversized-string error into invalid-state reuse and a real heap out-of-bounds write in assertion-disabled builds… New CWE-787
 Out-of-bounds Write
CVE-2026-49839 2026-06-27 03:53 2026-06-26 Show GitHub Exploit DB Packet Storm
20 5.5 MEDIUM
Local
jqlang jq jq is a command-line JSON processor. Prior to 1.8.2, comparing two sufficiently deeply nested arrays with the == operator exhausts the C stack on jq's ordinary command-line surface, resulting in deni… New CWE-674
 Uncontrolled Recursion
CVE-2026-47770 2026-06-27 03:53 2026-06-26 Show GitHub Exploit DB Packet Storm