Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
196171 7.8 重要
Local
Google - Mediaserver の libhevc におけるリモートでコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-0590 2017-06-9 19:45 2017-05-1 Show GitHub Exploit DB Packet Storm
196172 7.8 重要
Local
Google - Mediaserver の libhevc におけるリモートでコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-0589 2017-06-9 19:45 2017-05-1 Show GitHub Exploit DB Packet Storm
196173 7.8 重要
Local
Google - Mediaserver の libstagefright の id3/ID3.cpp におけるリモートでコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-0588 2017-06-9 19:45 2017-05-1 Show GitHub Exploit DB Packet Storm
196174 7.8 重要
Local
Google - Mediaserver の libmpeg2 におけるリモートでコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-0587 2017-06-9 19:45 2017-05-1 Show GitHub Exploit DB Packet Storm
196175 9.8 緊急
Network
レッドハット
Debian
openSUSE project
Fedora Project
Google
- Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-5178 2017-06-9 19:20 2016-09-29 Show GitHub Exploit DB Packet Storm
196176 8.8 重要
Network
レッドハット
Debian
openSUSE project
Fedora Project
Google
- Google Chrome の V8 におけるサービス運用妨害 (DoS) の脆弱性 CWE-416
解放済みメモリの使用
CVE-2016-5177 2017-06-9 19:20 2016-09-29 Show GitHub Exploit DB Packet Storm
196177 5.4 警告
Network
Certec EDV - Certec EDV GmbH atvise scada におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6029 2017-06-9 17:01 2017-04-6 Show GitHub Exploit DB Packet Storm
196178 6.1 警告
Network
OpenText - OpenText Tempo Box におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-8892 2017-06-9 16:56 2017-05-10 Show GitHub Exploit DB Packet Storm
196179 9.8 緊急
Network
Linux - Linux Kernel の net/ipv4/inet_connection_sock.c の inet_csk_clone_lock 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-415
二重解放
CVE-2017-8890 2017-06-9 16:56 2017-05-9 Show GitHub Exploit DB Packet Storm
196180 6.1 警告
Network
トレンドマイクロ - Trend Micro OfficeScan におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-8801 2017-06-9 16:54 2017-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3161 7.8 HIGH
Local
babel babel Babel is a compiler for writing next generation JavaScript. From 7.12.0 to before 7.29.4 and 8.0.0-alpha.13, using Babel to compile code that was specifically crafted by an attacker can cause Babel t… CWE-94
CWE-843
Code Injection
Type Confusion
CVE-2026-44728 2026-05-28 03:21 2026-05-27 Show GitHub Exploit DB Packet Storm
3162 7.3 HIGH
Network
- - A vulnerability was detected in itsourcecode Student Transcript Processing System 1.0. This affects an unknown part of the file /admin/modules/student/index.php?view=view. Performing a manipulation o… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-9573 2026-05-28 03:16 2026-05-27 Show GitHub Exploit DB Packet Storm
3163 5.3 MEDIUM
Network
- - A vulnerability was detected in TeamSpeak 3 Server up to 3.13.7. This issue affects some unknown processing of the component clientek Handshake Handler. Performing a manipulation of the argument proo… CWE-617
 Reachable Assertion
CVE-2026-4392 2026-05-28 03:16 2026-05-28 Show GitHub Exploit DB Packet Storm
3164 5.3 MEDIUM
Network
- - A security vulnerability has been detected in TeamSpeak 3 Server up to 3.13.7. This vulnerability affects unknown code of the component ECC Key Parser. Such manipulation leads to heap-based buffer ov… CWE-119
CWE-122
Incorrect Access of Indexable Resource ('Range Error') 
Heap-based Buffer Overflow
CVE-2026-4391 2026-05-28 03:16 2026-05-28 Show GitHub Exploit DB Packet Storm
3165 5.4 MEDIUM
Network
- - A weakness has been identified in TeamSpeak 3 Server up to 3.13.7. This affects the function process_resend_queue of the component Connection State Management. This manipulation causes use after free… CWE-119
CWE-416
Incorrect Access of Indexable Resource ('Range Error') 
 Use After Free
CVE-2026-4390 2026-05-28 03:16 2026-05-28 Show GitHub Exploit DB Packet Storm
3166 8.1 HIGH
Network
pavel-odintsov fastnetmon FastNetMon Community Edition through 1.2.9 contains an OS command injection vulnerability in the Juniper router integration plugin. The _log() function in src/juniper_plugin/fastnetmon_juniper.php (l… CWE-78
OS Command 
CVE-2026-48687 2026-05-28 03:16 2026-05-27 Show GitHub Exploit DB Packet Storm
3167 8.5 HIGH
Network
- - Budibase is an open-source low-code platform. Prior to 3.39.0, fetchToken in the OAuth2 SDK makes a POST to a builder-supplied URL with plain node-fetch, skipping the blacklist.isBlacklisted check th… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-48153 2026-05-28 03:16 2026-05-28 Show GitHub Exploit DB Packet Storm
3168 8.1 HIGH
Network
- - Budibase is an open-source low-code platform. Prior to 3.39.0, the single-datasource GET and PUT routes are guarded by generic TABLE READ, not by Builder/Admin permission or datasource-specific owner… CWE-863
 Incorrect Authorization
CVE-2026-48152 2026-05-28 03:16 2026-05-28 Show GitHub Exploit DB Packet Storm
3169 9.0 CRITICAL
Network
- - Budibase is an open-source low-code platform. Prior to 3.39.0, /api/public/v1/roles/assign is guarded by the builderOrAdmin middleware, which passes any user who is a builder for the app id in the x-… CWE-915
 Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2026-48150 2026-05-28 03:16 2026-05-28 Show GitHub Exploit DB Packet Storm
3170 - - - Budibase is an open-source low-code platform. Prior to 3.35.3, the VectorDB configuration endpoint in Budibase accepts a host parameter that undergoes no validation against internal IP ranges, reser… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-48148 2026-05-28 03:16 2026-05-28 Show GitHub Exploit DB Packet Storm