Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191281 6.7 警告
Local
Huawei - FusionSphere OpenStack におけるデジタル署名の検証に関する脆弱性 CWE-347
デジタル署名の不適切な検証
CVE-2017-8190 2017-12-19 16:48 2017-10-18 Show GitHub Exploit DB Packet Storm
191282 6 警告
Local
Huawei - FusionSphere OpenStack におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2017-8189 2017-12-19 16:48 2017-10-18 Show GitHub Exploit DB Packet Storm
191283 7.2 重要
Network
Huawei - FusionSphere OpenStack におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2017-8188 2017-12-19 16:48 2017-10-18 Show GitHub Exploit DB Packet Storm
191284 7.8 重要
Local
Linux - Linux Kernel における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-16939 2017-12-19 16:47 2017-11-2 Show GitHub Exploit DB Packet Storm
191285 8.8 重要
Network
SmartBear Software - Swagger Parser および Swagger Codegen におけるコードに関する脆弱性 CWE-17
コード
CVE-2017-1000207 2017-12-19 16:35 2017-07-15 Show GitHub Exploit DB Packet Storm
191286 7.8 重要
Local
Huawei - HedEx における信頼性のない検索パスに関する脆弱性 CWE-426
信頼性のない検索パス
CVE-2017-8137 2017-12-19 16:28 2017-06-1 Show GitHub Exploit DB Packet Storm
191287 5.5 警告
Local
Huawei - HedEx における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-8136 2017-12-19 16:28 2017-06-1 Show GitHub Exploit DB Packet Storm
191288 7.8 重要
Local
Google - Android の Upstream Kernel ビデオドライバにおける認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-0863 2017-12-19 15:55 2017-11-6 Show GitHub Exploit DB Packet Storm
191289 7.8 重要
Local
Google - Android の Upstream Kernel カーネルにおける認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-0862 2017-12-19 15:55 2017-11-6 Show GitHub Exploit DB Packet Storm
191290 5.7 警告
Local
シスコシステムズ - Cisco NX-OS システムソフトウェアにおける認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-12351 2017-12-19 15:21 2017-11-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
41 4.4 MEDIUM
Network
envoyproxy envoy Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.35.11, 1.36.7, 1.37.3, and 1.38.1, a structural flaw was identified in DefaultCertValidator::verifySu… Update CWE-158
 Improper Neutralization of Null Byte or NUL Character
CVE-2026-47778 2026-06-30 03:49 2026-06-27 Show GitHub Exploit DB Packet Storm
42 7.2 HIGH
Network
cacti cacti Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have SQL Injection through unsanitized unserialize+implode in managers.php. At line 756 of managers.php,… Update CWE-89
SQL Injection
CVE-2026-40083 2026-06-30 03:48 2026-06-26 Show GitHub Exploit DB Packet Storm
43 7.8 HIGH
Local
- - The kernel handler for IPV6_MSFILTER dropped a serializing lock in order to copy the source-filter list from userspace, then reacquired the lock. During this window another thread could free the mul… New CWE-416
 Use After Free
CVE-2026-49412 2026-06-30 03:48 2026-06-27 Show GitHub Exploit DB Packet Storm
44 7.1 HIGH
Local
- - The Linuxulator determined whether a binary was set-user-ID or set-group-ID by checking the P_SUGID process flag. During execve(2), this flag is not yet set at the point where the auxiliary vector i… New CWE-266
 Incorrect Privilege Assignment
CVE-2026-49413 2026-06-30 03:48 2026-06-27 Show GitHub Exploit DB Packet Storm
45 7.8 HIGH
Local
- - dsp_mmap_single() validated the requested mapping by checking the sum of the user-supplied offset and length against the buffer size. This addition could overflow, so that a large offset and length … New CWE-125
CWE-190
CWE-681
CWE-787
Out-of-bounds Read
 Integer Overflow or Wraparound
 Incorrect Conversion between Numeric Types
 Out-of-bounds Write
CVE-2026-45258 2026-06-30 03:48 2026-06-27 Show GitHub Exploit DB Packet Storm
46 6.5 MEDIUM
Local
- - sigqueue(2) was marked as permitted in capability mode with the introduction of Capsicum in 2011, but the implementation of kern_sigqueue did not include a capability mode check restricting signal de… New CWE-266
 Incorrect Privilege Assignment
CVE-2026-45259 2026-06-30 03:48 2026-06-27 Show GitHub Exploit DB Packet Storm
47 7.0 HIGH
Local
- - Second, the audio buffer backing a mapping could be freed when the device was closed even though the mapping remained valid. The freed memory could then be reused elsewhere while still accessible th… New CWE-416
 Use After Free
CVE-2026-49417 2026-06-30 03:48 2026-06-27 Show GitHub Exploit DB Packet Storm
48 7.8 HIGH
Local
- - The ELF image activator cleared per-process ASLR preference flags for setuid binaries after the code that computes the PIE base address, rather than before. As a result, a user-requested ASLR disabl… New CWE-179
 Incorrect Behavior Order: Early Validation
CVE-2026-49414 2026-06-30 03:48 2026-06-27 Show GitHub Exploit DB Packet Storm
49 - - - The CONS_HISTORY ioctl handler did not adequately validate the requested history size. A large value caused an integer overflow in the buffer size calculation, resulting in a heap allocation smaller… New CWE-190
 Integer Overflow or Wraparound
CVE-2026-49416 2026-06-30 03:48 2026-06-27 Show GitHub Exploit DB Packet Storm
50 6.5 MEDIUM
Network
cacti cacti Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Path Traversal through the Report format_file Parameter, causing arbitrary file read. … Update CWE-22
Path Traversal
CVE-2026-40084 2026-06-30 03:48 2026-06-26 Show GitHub Exploit DB Packet Storm