Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
195821 6.5 警告
Network
Elasticsearch - Kibana X-Pack security における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-8443 2017-07-25 15:54 2017-06-27 Show GitHub Exploit DB Packet Storm
195822 6.5 警告
Network
Puppet - Puppet 用 mcollective-sshkey-security プラグインにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-2298 2017-07-25 15:54 2017-06-30 Show GitHub Exploit DB Packet Storm
195823 9 緊急
Network
Puppet - MCollective プラグインにおける信頼性のないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2017-2292 2017-07-25 15:54 2017-05-11 Show GitHub Exploit DB Packet Storm
195824 7.5 重要
Network
Apache Software Foundation - Apache Ignite における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-7686 2017-07-25 14:14 2017-06-28 Show GitHub Exploit DB Packet Storm
195825 8.8 重要
Network
ViMbAdmin - ViMbAdmin におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-6086 2017-07-25 14:14 2017-05-3 Show GitHub Exploit DB Packet Storm
195826 9.8 緊急
Network
Schneider Electric - Schneider Electric Modicon Modbus Protocol における認証に関する脆弱性 CWE-287
不適切な認証
CVE-2017-6034 2017-07-25 14:14 2017-04-11 Show GitHub Exploit DB Packet Storm
195827 5.3 警告
Network
Schneider Electric - Schneider Electric Modicon Modbus Protocol におけるセキュリティチェックに関する脆弱性 CWE-358
不適切に実装されたセキュリティチェック
CVE-2017-6032 2017-07-25 14:14 2017-04-11 Show GitHub Exploit DB Packet Storm
195828 5.4 警告
Network
Biscom - Biscom Secure File Transfer におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-5241 2017-07-25 14:14 2017-06-30 Show GitHub Exploit DB Packet Storm
195829 7.8 危険 日本電気
IBM
Apache Software Foundation
アップル
サイバートラスト株式会社
富士通
リコー
ヒューレット・パッカード
オラクル
日立
レッドハット
- Apache HTTPD サーバにサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3192 2017-07-25 13:51 2011-08-29 Show GitHub Exploit DB Packet Storm
195830 9.8 緊急
Network
日本電気
Apache Software Foundation
- Apache httpd における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2017-3169 2017-07-25 13:50 2017-06-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3561 3.8 LOW
Local
opentelemetry ebpf_instrumentation OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the Java TLS ioctl probe reads user-controlled ioctl pointers with bpf_pr… CWE-127
CWE-200
 Buffer Under-read
Information Exposure
CVE-2026-45683 2026-06-4 01:52 2026-06-3 Show GitHub Exploit DB Packet Storm
3562 5.9 MEDIUM
Network
opentelemetry ebpf_instrumentation OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the per-CPU message-buffer fallback path uses a 256-byte backup buffer bu… CWE-125
CWE-130
Out-of-bounds Read
 Improper Handling of Length Parameter Inconsistency
CVE-2026-45681 2026-06-4 01:52 2026-06-3 Show GitHub Exploit DB Packet Storm
3563 5.5 MEDIUM
Local
opentelemetry ebpf_instrumentation OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the custom CappedConcurrentHashMap introduced for Java TLS state tracking… CWE-401
CWE-770
 Missing Release of Memory after Effective Lifetime
 Allocation of Resources Without Limits or Throttling
CVE-2026-45682 2026-06-4 01:51 2026-06-3 Show GitHub Exploit DB Packet Storm
3564 4.3 MEDIUM
Network
mintplexlabs anythingllm AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. Prior to 1.13.0, an approved mobile device token created in single-user mod… CWE-285
CWE-639
Improper Authorization
 Authorization Bypass Through User-Controlled Key
CVE-2026-47713 2026-06-4 01:51 2026-05-29 Show GitHub Exploit DB Packet Storm
3565 7.5 HIGH
Network
opentelemetry ebpf_instrumentation OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI replays BPF probe hits into histogram observations by looping once pe… CWE-400
CWE-834
 Uncontrolled Resource Consumption
 Excessive Iteration
CVE-2026-45680 2026-06-4 01:51 2026-06-3 Show GitHub Exploit DB Packet Storm
3566 6.5 MEDIUM
Network
opentelemetry ebpf_instrumentation OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI exports raw Redis error text as the span status message. Because Redi… CWE-117
CWE-532
 Improper Output Neutralization for Logs
 Inclusion of Sensitive Information in Log Files
CVE-2026-45679 2026-06-4 01:50 2026-06-3 Show GitHub Exploit DB Packet Storm
3567 7.5 HIGH
Network
opentelemetry ebpf_instrumentation OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the Postgres protocol parser assumes BIND message payloads contain a vali… CWE-20
CWE-754
 Improper Input Validation 
 Improper Check for Unusual or Exceptional Conditions
CVE-2026-45678 2026-06-4 01:50 2026-06-3 Show GitHub Exploit DB Packet Storm
3568 9.8 CRITICAL
Network
- - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2026-9642 2026-06-4 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm
3569 7.4 HIGH
Network
- - SIP signaling stack in Verizon IMS (unspecified version) implements SIP signaling without IPsec integrity protection (missing Security-Client/Security-Server headers and ESP traffic), which allows an… - CVE-2026-10629 2026-06-4 01:16 2026-06-3 Show GitHub Exploit DB Packet Storm
3570 7.3 HIGH
Network
- - A vulnerability was found in php-censor up to 2.1.6. This affects an unknown function of the file src/Model/Build/GitBuild.php of the component Webhook Endpoint. Performing a manipulation of the argu… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-10273 2026-06-4 01:16 2026-06-2 Show GitHub Exploit DB Packet Storm