Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190301 9.8 緊急
Network
Lenovo - Lenovo Service Framework Android アプリケーションにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2017-3761 2017-11-9 17:15 2017-10-5 Show GitHub Exploit DB Packet Storm
190302 8.2 重要
Adjacent
日本電気
シスコシステムズ
- 複数の Cisco 製品における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-6770 2017-11-9 17:12 2017-07-27 Show GitHub Exploit DB Packet Storm
190303 8.2 重要
Adjacent
日本電気
Lenovo
IBM
- 一部の Lenovo および IBM スイッチの OSPF ルーティングプロトコルの実装における入力確認に関する脆弱性 CWE-20
CWE-354
CVE-2017-3752 2017-11-9 17:12 2017-07-27 Show GitHub Exploit DB Packet Storm
190304 9.8 緊急
Network
FreeRADIUS - FreeRADIUS における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2017-10979 2017-11-9 16:49 2017-07-18 Show GitHub Exploit DB Packet Storm
190305 7.5 重要
Network
FreeRADIUS - FreeRADIUS におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-10978 2017-11-9 16:49 2017-07-18 Show GitHub Exploit DB Packet Storm
190306 5.5 警告
Local
アップル - Apple macOS のセキュリティコンポーネントにおけるキーチェーンアクセスのプロンプトを回避される脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-7150 2017-11-9 16:46 2017-10-5 Show GitHub Exploit DB Packet Storm
190307 7.8 重要
Local
アップル - Apple macOS の StorageKit コンポーネントにおける暗号化された APFS ボリュームのパスワードを取得される脆弱性 CWE-200
情報漏えい
CVE-2017-7149 2017-11-9 16:46 2017-10-5 Show GitHub Exploit DB Packet Storm
190308 3.7
Network
アップル - Apple macOS の Application Firewall コンポーネントにおける設定を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-7084 2017-11-9 16:34 2017-09-25 Show GitHub Exploit DB Packet Storm
190309 5.5 警告
Local
アップル - Apple macOS の AppSandbox コンポーネントにおけるにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2017-7074 2017-11-9 16:34 2017-09-25 Show GitHub Exploit DB Packet Storm
190310 3.3
Local
アップル - Apple iOS の Location Framework コンポーネントにおける重要な位置情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2017-7148 2017-11-9 16:29 2017-09-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
761 6.5 MEDIUM
Network
- - Null pointer dereference in Windows Kerberos allows an authorized attacker to deny service over a network. New CWE-476
 NULL Pointer Dereference
CVE-2026-42903 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
762 7.8 HIGH
Local
- - Improper authorization in Microsoft PowerToys allows an authorized attacker to elevate privileges locally. New CWE-285
Improper Authorization
CVE-2026-42902 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
763 7.8 HIGH
Local
- - Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges locally. New CWE-125
Out-of-bounds Read
CVE-2026-42837 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
764 7.0 HIGH
Local
- - Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally. New CWE-362
CWE-416
Race Condition
 Use After Free
CVE-2026-42836 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
765 8.1 HIGH
Network
- - Improper neutralization of special elements in output used by a downstream component ('injection') in Microsoft Teams for Android allows an authorized attacker to disclose information over a network. New CWE-74
Injection
CVE-2026-42835 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
766 7.8 HIGH
Local
- - Improper access control in Windows Administrator Protection allows an authorized attacker to bypass a security feature locally. New CWE-284
Improper Access Control
CVE-2026-42829 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
767 7.8 HIGH
Local
- - Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges locally. New CWE-126
 Buffer Over-read
CVE-2026-42828 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
768 - - - Svelte is a performance oriented web framework. Prior to version 5.55.7, when using spread syntax to render attributes from untrusted data, event handler properties are included in the rendered HTML … New CWE-79
Cross-site Scripting
CVE-2026-42599 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
769 - - - Svelte is a performance oriented web framework. Prior to version 5.55.7, Svelte was vulnerable to DOM clobbering of its internal framework state on elements, potentially leading to XSS attacks. This … New CWE-79
Cross-site Scripting
CVE-2026-42573 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
770 7.5 HIGH
Network
- - Svelte devalue is a JavaScript library that serializes values into strings when JSON.stringify isn't sufficient for the job. From version 5.6.3 to before version 5.8.1, devalue.parse could, due to qu… New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-42570 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm