Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
189141 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player の Primetime SDK メタデータ機能における任意のコードを実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-11225 2017-12-22 16:48 2017-11-14 Show GitHub Exploit DB Packet Storm
189142 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player の Primetime SDK における任意のコードを実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-11215 2017-12-22 16:48 2017-11-14 Show GitHub Exploit DB Packet Storm
189143 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player における重要な情報を漏えいされる脆弱性 CWE-125
境界外読み取り
CVE-2017-11213 2017-12-22 16:48 2017-11-14 Show GitHub Exploit DB Packet Storm
189144 8.8 重要
Network
TP-LINK Technologies - 複数の TP-Link デバイスにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2017-16960 2017-12-22 16:44 2017-11-27 Show GitHub Exploit DB Packet Storm
189145 6.5 警告
Adjacent
Shenzhen Tenda Technology Co.,Ltd. - 複数の Shenzhen Tenda デバイスにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2017-16936 2017-12-22 16:34 2017-11-24 Show GitHub Exploit DB Packet Storm
189146 9.8 緊急
Network
Ametys - Ametys における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-16935 2017-12-22 16:28 2017-10-25 Show GitHub Exploit DB Packet Storm
189147 6.5 警告
Network
Erik de Castro Lopo - libsndfile におけるゼロ除算に関する脆弱性 CWE-369
ゼロ除算
CVE-2017-16942 2017-12-22 16:09 2017-11-27 Show GitHub Exploit DB Packet Storm
189148 4.3 警告
Adjacent
東芝 - FlashAir のフォトシェア機能に SSID およびパスワード固定の脆弱性 CWE-Other
その他
CVE-2017-2162 2017-12-21 19:10 2017-05-16 Show GitHub Exploit DB Packet Storm
189149 3.5
Adjacent
東芝 - FlashAir のフォトシェア機能におけるアクセス制限不備の脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-2161 2017-12-21 19:08 2017-05-16 Show GitHub Exploit DB Packet Storm
189150 7.8 重要
Local
Huawei - Huawei スマートフォンの Files アプリケーションにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-2715 2017-12-21 18:00 2017-04-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
441 6.1 MEDIUM
Network
umbraco umbraco_cms Umbraco is an ASP.NET CMS. Prior to versions 13.14.0 and 17.4.0, some of the Surface Controllers in the CMS provide to support member related operations fail to validate redirect URLs, making Razor t… Update CWE-601
Open Redirect
CVE-2026-46616 2026-06-13 04:34 2026-06-11 Show GitHub Exploit DB Packet Storm
442 8.8 HIGH
Network
apache ofbiz Improper Control of Generation of Code ('Code Injection') vulnerability in Apache OFBiz allows a low-privileged authenticated user with Content/DataResource editing privileges to perform template inj… Update CWE-94
Code Injection
CVE-2026-50223 2026-06-13 04:30 2026-06-11 Show GitHub Exploit DB Packet Storm
443 7.8 HIGH
Local
microsoft pc_manager Improper access control in Microsoft PC Manager allows an authorized attacker to bypass a security feature locally. Update CWE-284
Improper Access Control
CVE-2026-49161 2026-06-13 04:30 2026-06-10 Show GitHub Exploit DB Packet Storm
444 9.8 CRITICAL
Network
vmware spring_for_graphql Spring for GraphQL applications are vulnerable to Unsafe Deserialization when processing paginated GraphQL queries. An attacker can craft a malicious GraphQL request that can lead to Remote Code Exec… Update CWE-502
 Deserialization of Untrusted Data
CVE-2026-41699 2026-06-13 04:28 2026-06-11 Show GitHub Exploit DB Packet Storm
445 8.1 HIGH
Network
microsoft teams Improper neutralization of special elements in output used by a downstream component ('injection') in Microsoft Teams for Android allows an authorized attacker to disclose information over a network. Update CWE-74
Injection
CVE-2026-42835 2026-06-13 04:28 2026-06-10 Show GitHub Exploit DB Packet Storm
446 8.2 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the cu… Update CWE-427
 Uncontrolled Search Path Element
CVE-2026-47937 2026-06-13 04:23 2026-06-10 Show GitHub Exploit DB Packet Storm
447 5.5 MEDIUM
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this v… Update CWE-125
Out-of-bounds Read
CVE-2026-47926 2026-06-13 04:23 2026-06-10 Show GitHub Exploit DB Packet Storm
448 5.5 MEDIUM
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in an application denial-of-service. An attacker could… Update CWE-190
 Integer Overflow or Wraparound
CVE-2026-47925 2026-06-13 04:23 2026-06-10 Show GitHub Exploit DB Packet Storm
449 5.5 MEDIUM
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulner… Update CWE-416
 Use After Free
CVE-2026-47924 2026-06-13 04:23 2026-06-10 Show GitHub Exploit DB Packet Storm
450 7.8 HIGH
Local
microsoft powertoys Improper authorization in Microsoft PowerToys allows an authorized attacker to elevate privileges locally. Update CWE-285
Improper Authorization
CVE-2026-42902 2026-06-13 04:23 2026-06-10 Show GitHub Exploit DB Packet Storm