|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 21, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 11 | 8.1 |
重要
Network |
Grafana Labs | Grafana | Grafana LabsのGrafanaにおけるアクセス制御に関する脆弱性 |
CWE-284
不適切なアクセス制御 |
CVE-2026-33381 | 2026-06-17 15:46 | 2026-05-13 | Show | GitHub Exploit DB Packet Storm |
| 12 | 5.4 |
警告
Network |
langflow | Langflow Desktop | langflowのLangflow Desktopにおけるサーバサイドのリクエストフォージェリの脆弱性 |
CWE-918
サーバサイドリクエストフォージェリ |
CVE-2026-3341 | 2026-06-17 15:46 | 2026-06-11 | Show | GitHub Exploit DB Packet Storm |
| 13 | 6.1 |
警告
Network |
IBM | IBM DevOps Plan | IBMのIBM DevOps PlanにおけるHTTP ヘッダのスクリプト構文の不適切な無効化に関する脆弱性 |
CWE-644
HTTP ヘッダのスクリプト構文の不適切な無効化 |
CVE-2026-4096 | 2026-06-17 15:46 | 2026-06-11 | Show | GitHub Exploit DB Packet Storm |
| 14 | 5.4 |
警告
Network |
VMware |
VMware Cloud Foundation VMware Telco Cloud Platform VMware vSphere VMware Aria Operations |
VMwareのVMware Aria Operations等の複数製品におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 |
CVE-2026-41722 | 2026-06-17 15:46 | 2026-06-8 | Show | GitHub Exploit DB Packet Storm |
| 15 | 8 |
重要
Network |
VMware |
VMware Cloud Foundation VMware Telco Cloud Platform VMware vSphere VMware Aria Operations |
VMwareのVMware Aria Operations等の複数製品におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2026-41723 | 2026-06-17 15:46 | 2026-06-8 | Show | GitHub Exploit DB Packet Storm |
| 16 | 5.9 |
警告
Network |
OpenSSL Project | OpenSSL | OpenSSL ProjectのOpenSSLにおけるNULL ポインタデリファレンスに関する脆弱性 |
CWE-476
NULL ポインタデリファレンス |
CVE-2026-42767 | 2026-06-17 15:46 | 2026-06-9 | Show | GitHub Exploit DB Packet Storm |
| 17 | 3.7 |
低
Network |
OpenSSL Project | OpenSSL | OpenSSL ProjectのOpenSSLにおける暗号化処理の不備に関する脆弱性 |
CWE-325
暗号化処理の不備 |
CVE-2026-42770 | 2026-06-17 15:46 | 2026-06-9 | Show | GitHub Exploit DB Packet Storm |
| 18 | 6.2 |
警告
Local |
OpenSSL Project | OpenSSL | OpenSSL ProjectのOpenSSLにおける境界外読み取りに関する脆弱性 |
CWE-125
境界外読み取り |
CVE-2026-42771 | 2026-06-17 15:46 | 2026-06-9 | Show | GitHub Exploit DB Packet Storm |
| 19 | 8.8 |
重要
Network |
Kovidgoyal | Kitty | KovidgoyalのKittyにおけるコマンドインジェクションの脆弱性 |
CWE-77
コマンドインジェクション |
CVE-2026-42850 | 2026-06-17 15:46 | 2026-06-12 | Show | GitHub Exploit DB Packet Storm |
| 20 | 7.8 |
重要
Local |
Kovidgoyal | Kitty | KovidgoyalのKittyにおける複数の脆弱性 |
CWE-862 CWE-94 |
CVE-2026-42851 | 2026-06-17 15:46 | 2026-06-12 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 22, 2026, 4 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 257331 | 9.8 |
CRITICAL
Network |
tcpdump | tcpdump | The OTV parser in tcpdump before 4.9.0 has a buffer overflow in print-otv.c:otv_print(). |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-5341 | 2024-11-21 12:27 | 2017-01-28 | Show | GitHub Exploit DB Packet Storm |
| 257332 | 9.8 |
CRITICAL
Network |
tcpdump debian redhat |
tcpdump debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterprise_linux_server… |
The ISAKMP parser in tcpdump before 4.9.0 has a buffer overflow in print-isakmp.c:ikev2_e_print(). |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-5205 | 2024-11-21 12:27 | 2017-01-28 | Show | GitHub Exploit DB Packet Storm |
| 257333 | 9.8 |
CRITICAL
Network |
tcpdump debian redhat |
tcpdump debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterprise_linux_server… |
The IPv6 parser in tcpdump before 4.9.0 has a buffer overflow in print-ip6.c:ip6_print(). |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-5204 | 2024-11-21 12:27 | 2017-01-28 | Show | GitHub Exploit DB Packet Storm |
| 257334 | 9.8 |
CRITICAL
Network |
tcpdump debian redhat |
tcpdump debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterprise_linux_server… |
The BOOTP parser in tcpdump before 4.9.0 has a buffer overflow in print-bootp.c:bootp_print(). |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-5203 | 2024-11-21 12:27 | 2017-01-28 | Show | GitHub Exploit DB Packet Storm |
| 257335 | 9.8 |
CRITICAL
Network |
tcpdump debian redhat |
tcpdump debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterprise_linux_server… |
The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in print-isoclns.c:clnp_print(). |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-5202 | 2024-11-21 12:27 | 2017-01-28 | Show | GitHub Exploit DB Packet Storm |
| 257336 | 7.5 |
HIGH
Network |
libarchive | libarchive | An error in the lha_read_file_header_1() function (archive_read_support_format_lha.c) in libarchive 3.2.2 allows remote attackers to trigger an out-of-bounds read memory access and subsequently cause… |
CWE-125
Out-of-bounds Read |
CVE-2017-5601 | 2024-11-21 12:27 | 2017-01-28 | Show | GitHub Exploit DB Packet Storm |
| 257337 | 7.8 |
HIGH
Local |
paloaltonetworks | terminal_services_agent | Palo Alto Networks Terminal Services Agent before 7.0.7 allows local users to gain privileges via vectors that trigger an out-of-bounds write operation. |
CWE-787
Out-of-bounds Write |
CVE-2017-5329 | 2024-11-21 12:27 | 2017-01-28 | Show | GitHub Exploit DB Packet Storm |
| 257338 | 7.5 |
HIGH
Network |
paloaltonetworks | terminal_services_agent | Palo Alto Networks Terminal Services Agent before 7.0.7 allows attackers to spoof arbitrary users via unspecified vectors. |
NVD-CWE-noinfo
|
CVE-2017-5328 | 2024-11-21 12:27 | 2017-01-28 | Show | GitHub Exploit DB Packet Storm |
| 257339 | 7.5 |
HIGH
Network |
eclinicalworks | patient_portal | An issue was discovered in eClinicalWorks healow@work 8.0 build 8. This is a blind SQL injection within the EmployeePortalServlet, which can be exploited by un-authenticated users via an HTTP POST re… |
CWE-89
SQL Injection |
CVE-2017-5598 | 2024-11-21 12:27 | 2017-01-27 | Show | GitHub Exploit DB Packet Storm |
| 257340 | 7.5 |
HIGH
Network |
wireshark | wireshark | In Wireshark 2.2.0 to 2.2.3 and 2.0.0 to 2.0.9, the DHCPv6 dissector could go into a large loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packe… |
CWE-190
Integer Overflow or Wraparound |
CVE-2017-5597 | 2024-11-21 12:27 | 2017-01-26 | Show | GitHub Exploit DB Packet Storm |