Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205221 8.1 重要
Network
インテル - Intel Crosswalk Project に SSL サーバ証明書の検証が行われなくなる脆弱性 CWE-20
CWE-310
CWE-Other
CVE-2016-5672 2016-08-5 17:29 2016-07-29 Show GitHub Exploit DB Packet Storm
205222 7.8 重要
Local
パルスセキュア - Windows 上で稼動する複数の Pulse Secure 製品のクライアントサイドのコンポーネントにおける管理者権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2408 2016-08-5 16:27 2016-07-24 Show GitHub Exploit DB Packet Storm
205223 6.2 警告
Local
シトリックス・システムズ
Xen プロジェクト
- Xen におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-6259 2016-08-5 15:51 2015-07-26 Show GitHub Exploit DB Packet Storm
205224 8.8 重要
Network
Crestron Electronics, Inc. - Crestron Electronics DM-TXRX-100-STR デバイスのファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-5671 2016-08-5 14:29 2016-08-1 Show GitHub Exploit DB Packet Storm
205225 4.3 警告
Network
Google - Android ブラウザにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
- 2016-08-5 12:02 2016-08-5 Show GitHub Exploit DB Packet Storm
205226 7.5 重要
Network
KDE project
Canonical
- KDE Frameworks で使用される KArchive におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-6232 2016-08-5 11:47 2016-07-24 Show GitHub Exploit DB Packet Storm
205227 5.4 警告
Network
Vtiger - Vtiger CRM におけるアクセス制限不備の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-4834 2016-08-4 18:03 2016-07-20 Show GitHub Exploit DB Packet Storm
205228 6.5 警告
Network
株式会社シード - EC-CUBE 用プラグイン「割引クーポンプラグイン」における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-4837 2016-08-4 17:54 2016-07-22 Show GitHub Exploit DB Packet Storm
205229 9.8 緊急
Network
Crestron Electronics, Inc. - Crestron Electronics DM-TXRX-100-STR デバイスのファームウェアにおけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2016-5670 2016-08-4 16:22 2016-08-1 Show GitHub Exploit DB Packet Storm
205230 9.8 緊急
Network
Crestron Electronics, Inc. - Crestron Electronics DM-TXRX-100-STR デバイスのファームウェアにおける HTTPS セッションに対して中間者攻撃を実行される脆弱性 CWE-Other
その他
CVE-2016-5669 2016-08-4 16:22 2016-08-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1271 7.5 HIGH
Network
- - Improper control of generation of code ('code injection') in Microsoft Exchange Server allows an unauthorized attacker to execute code over a network. CWE-94
Code Injection
CVE-2026-45583 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
1272 8.8 HIGH
Network
- - Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-45504 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
1273 5.0 MEDIUM
Network
- - Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to disclose information over a network. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-45502 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
1274 6.1 MEDIUM
Network
- - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network. CWE-79
Cross-site Scripting
CVE-2026-45500 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
1275 6.2 MEDIUM
Local
- - Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally. CWE-59
Link Following
CVE-2026-45491 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
1276 7.8 HIGH
Local
- - Improper authorization in .NET allows an authorized attacker to elevate privileges locally. CWE-285
Improper Authorization
CVE-2026-45490 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
1277 4.6 MEDIUM
Network
- - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office Project Server allows an authorized attacker to perform spoofing over a network. CWE-79
Cross-site Scripting
CVE-2026-45483 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
1278 8.4 HIGH
Local
- - Improper limitation of a pathname to a restricted directory ('path traversal') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to bypass a security feature locally. CWE-22
Path Traversal
CVE-2026-45482 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
1279 8.2 HIGH
Local
- - Use after free in Linux MANA Driver allows an authorized attacker to elevate privileges locally. CWE-416
 Use After Free
CVE-2026-45476 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
1280 7.8 HIGH
Local
- - Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. CWE-122
Heap-based Buffer Overflow
CVE-2026-45475 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm