Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
189761 9.8 緊急
Network
LightFTP Project - LightFTP におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-1000218 2017-12-6 15:13 2017-07-11 Show GitHub Exploit DB Packet Storm
189762 9.8 緊急
Network
OctoberCMS - October CMS におけるチャネルおよびパスのエラーに関する脆弱性 CWE-417
チャネルおよびパスのエラー
CVE-2017-1000197 2017-12-6 14:36 2017-11-16 Show GitHub Exploit DB Packet Storm
189763 9.8 緊急
Network
OctoberCMS - October CMS におけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2017-1000196 2017-12-6 14:36 2017-11-16 Show GitHub Exploit DB Packet Storm
189764 7.5 重要
Network
OctoberCMS - October CMS におけるインジェクションに関する脆弱性 CWE-74
インジェクション
CVE-2017-1000195 2017-12-6 14:36 2017-11-16 Show GitHub Exploit DB Packet Storm
189765 9.8 緊急
Network
OctoberCMS - October CMS における危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2017-1000194 2017-12-6 14:36 2017-11-16 Show GitHub Exploit DB Packet Storm
189766 6.1 警告
Network
OctoberCMS - October CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-1000193 2017-12-6 14:36 2017-11-16 Show GitHub Exploit DB Packet Storm
189767 5.4 警告
Network
MISP project - MISP におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-16802 2017-12-6 14:12 2017-11-13 Show GitHub Exploit DB Packet Storm
189768 8.8 重要
Network
Dahua Technology Co., Ltd - Dahua NVR モデルのソフトウェアにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2017-9314 2017-12-6 14:12 2017-11-8 Show GitHub Exploit DB Packet Storm
189769 6.1 警告
Network
フォーティネット - Fortinet FortiOS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-7739 2017-12-6 14:12 2017-11-3 Show GitHub Exploit DB Packet Storm
189770 7.8 重要
Local
Apache Software Foundation - Apache Hadoop における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-3166 2017-12-6 14:12 2017-11-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
911 5.4 MEDIUM
Network
buffalo open_xdmod OpenXDMoD is an open framework for collecting and analyzing HPC metrics. Prior to version 11.0.3, an authenticated attacker can inject malicious JavaScript into their Open XDMoD user profile and abus… CWE-79
Cross-site Scripting
CVE-2026-45778 2026-06-11 06:05 2026-06-6 Show GitHub Exploit DB Packet Storm
912 9.8 CRITICAL
Network
buffalo open_xdmod OpenXDMoD is an open framework for collecting and analyzing HPC metrics. An SQL injection vulnerability exists in Open XDMoD versions prior to 10.0.3 that allows an unauthenticated remote attacker to… CWE-89
SQL Injection
CVE-2026-45779 2026-06-11 06:04 2026-06-6 Show GitHub Exploit DB Packet Storm
913 6.8 MEDIUM
Physics
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack. CWE-284
NVD-CWE-noinfo
Improper Access Control
CVE-2026-45658 2026-06-11 05:59 2026-06-10 Show GitHub Exploit DB Packet Storm
914 - - - A vulnerability allowing remote code execution (RCE) on the Backup Server by an authenticated domain user. CWE-502
 Deserialization of Untrusted Data
CVE-2026-44963 2026-06-11 05:58 2026-06-10 Show GitHub Exploit DB Packet Storm
915 7.1 HIGH
Adjacent
microsoft windows_server_2012
windows_server_2016
windows_server_2019
windows_server_2022
windows_server_2025
Integer overflow or wraparound in Windows Kerberos allows an authorized attacker to execute code over an adjacent network. CWE-190
 Integer Overflow or Wraparound
CVE-2026-47288 2026-06-11 05:57 2026-06-10 Show GitHub Exploit DB Packet Storm
916 9.8 CRITICAL
Network
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Integer overflow or wraparound in Windows HTTP.sys allows an unauthorized attacker to execute code over a network. CWE-122
CWE-190
Heap-based Buffer Overflow
 Integer Overflow or Wraparound
CVE-2026-47291 2026-06-11 05:54 2026-06-10 Show GitHub Exploit DB Packet Storm
917 5.4 MEDIUM
Network
microsoft sharepoint_server Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. CWE-74
CWE-79
Injection
Cross-site Scripting
CVE-2026-47634 2026-06-11 05:49 2026-06-10 Show GitHub Exploit DB Packet Storm
918 5.4 MEDIUM
Network
microsoft sharepoint_server Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. CWE-79
Cross-site Scripting
CVE-2026-47636 2026-06-11 05:47 2026-06-10 Show GitHub Exploit DB Packet Storm
919 9.8 CRITICAL
Network
microsoft windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2022
windows_server_2025
Use after free in Windows Kernel allows an unauthorized attacker to execute code over a network. CWE-122
CWE-416
Heap-based Buffer Overflow
 Use After Free
CVE-2026-45657 2026-06-11 05:44 2026-06-10 Show GitHub Exploit DB Packet Storm
920 7.8 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Protection mechanism failure in Windows UEFI allows an authorized attacker to bypass a security feature locally. CWE-693
 Protection Mechanism Failure
CVE-2026-45656 2026-06-11 05:42 2026-06-10 Show GitHub Exploit DB Packet Storm