Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2241 9.3 緊急
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Windows Hyper-V の特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40402 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
2242 8.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows グラフィックス コンポーネントのリモートでコードが実行される脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-40403 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
2243 7.5 重要
Network
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 11 24h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Windows TCP/IP のサービス拒否の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-40405 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
2244 7.5 重要
Network
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows TCP/IP の情報漏えいの脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40406 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
2245 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows 共通ログ ファイル システム ドライバーの特権の昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-40407 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
2246 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows WAN ARP Driver Elevation of Privilege Vulnerability CWE-416
解放済みメモリの使用
CVE-2026-40408 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
2247 7 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows SMB クライアントの特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40410 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
2248 9.6 緊急
Network
TanStack tanstack/react-start-rsc
@tanstack/router-devtools-core
@tanstack/router-utils
@tanstack/react-router-devtools
@tanstack/valibot-adapter
@tanstack/zod-adapter
@tanstack/vue-start-se…
TanStackの@tanstack/arktype-adapter等の複数製品における埋め込まれた悪意のあるコードに関する脆弱性 CWE-506
埋め込まれた悪意のあるコード
CVE-2026-45321 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
2249 6.5 警告
Network
IBM
HCL Technologies Limited
BigFix WebUI Reports
BigFix WebUI Common
BigFix WebUI API
BigFix WebUI Framework
BigFix WebUI Profile Management
BigFix WebU…
HCL Technologies LimitedのBigFix WebUI API等の複数製品における不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2025-15633 2026-05-18 12:06 2026-05-9 Show GitHub Exploit DB Packet Storm
2250 4.3 警告
Network
IBM
HCL Technologies Limited
BigFix WebUI Reports
BigFix WebUI Common
BigFix WebUI API
BigFix WebUI Framework
BigFix WebUI Profile Management
BigFix WebU…
HCL Technologies LimitedのBigFix WebUI API等の複数製品における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2025-15634 2026-05-18 12:06 2026-05-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2721 8.3 HIGH
Network
- - Use after free in WebRTC in Google Chrome on Linux prior to 148.0.7778.216 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CWE-416
 Use After Free
CVE-2026-9988 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
2722 8.3 HIGH
Network
- - Integer overflow in XML in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HT… CWE-472
 External Control of Assumed-Immutable Web Parameter
CVE-2026-9966 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
2723 7.3 HIGH
Network
- - A vulnerability was identified in KLiK SocialMediaWebsite 1.0. This issue affects some unknown processing of the component HTTP POST Request Parameter Handler. Such manipulation leads to injection. T… CWE-74
CWE-707
Injection
 Improper Enforcement of Message or Data Structure
CVE-2026-9422 2026-05-30 01:16 2026-05-25 Show GitHub Exploit DB Packet Storm
2724 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… - CVE-2026-9194 2026-05-30 01:16 2026-05-30 Show GitHub Exploit DB Packet Storm
2725 7.3 HIGH
Network
- - IO::Compress versions from 2.207 before 2.220 for Perl ship a zipdetails CLI tool that crashes with undefined subroutine on Info-ZIP Unix Extra Field with 8-byte UID or GID. When decode_ux() in bin/… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2026-48961 2026-05-30 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2726 7.5 HIGH
Network
- - IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward. fastForward() compares length $offset (the digit count of the offset, 1 to 19) agains… CWE-407
 Inefficient Algorithmic Complexity
CVE-2026-48959 2026-05-30 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2727 9.9 CRITICAL
Network
- - Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Site Level Administration). Supported versions that are affected are 12.2.3-12.2.15. Eas… CWE-269
CWE-284
CWE-306
 Improper Privilege Management
Improper Access Control
Missing Authentication for Critical Function
CVE-2026-46824 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
2728 7.7 HIGH
Network
- - Vulnerability in the Oracle Public Sector Financials (International) product of Oracle E-Business Suite (component: Authorization). Supported versions that are affected are 12.2.6-12.2.15. Easily ex… CWE-863
 Incorrect Authorization
CVE-2026-46823 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
2729 9.9 CRITICAL
Network
- - Vulnerability in the Oracle iAssets product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability all… CWE-284
Improper Access Control
CVE-2026-46822 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
2730 7.7 HIGH
Network
- - Vulnerability in the Oracle Financials Common Modules product of Oracle E-Business Suite (component: Common Components). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable v… CWE-284
Improper Access Control
CVE-2026-46821 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm