|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 29, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 2301 | 8.7 |
重要
Network |
GitLab.org | GitLab | GitLab.orgのGitLabにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2026-8589 | 2026-06-12 14:44 | 2026-06-11 | Show | GitHub Exploit DB Packet Storm |
| 2302 | 6.5 |
警告
Network |
GitLab.org | GitLab | GitLab.orgのGitLabにおけるサーバサイドのリクエストフォージェリの脆弱性 |
CWE-918
サーバサイドリクエストフォージェリ |
CVE-2026-9204 | 2026-06-12 14:44 | 2026-06-11 | Show | GitHub Exploit DB Packet Storm |
| 2303 | 4.3 |
警告
Network |
GitLab.org | GitLab | GitLab.orgのGitLabにおける置換文字列の無害化に関する脆弱性 |
CWE-153
置換文字列の不適切な無害化 |
CVE-2026-9694 | 2026-06-12 14:44 | 2026-06-11 | Show | GitHub Exploit DB Packet Storm |
| 2304 | 7.8 |
重要
Local |
The Open Group | Unix | opengroupのUnixにおける古典的バッファオーバーフローの脆弱性 |
CWE-120
古典的バッファオーバーフロー |
CVE-2025-71263 | 2026-06-12 14:35 | 2026-03-13 | Show | GitHub Exploit DB Packet Storm |
| 2305 | 7.5 |
重要
Network |
Dana Powers (dpkp) | kafka-python | Dana Powers (dpkp)のkafka-pythonにおける過剰なサイズ値のメモリ割り当てに関する脆弱性 |
CWE-789
過剰なサイズ値のメモリ割り当て |
CVE-2026-10142 | 2026-06-12 14:35 | 2026-06-10 | Show | GitHub Exploit DB Packet Storm |
| 2306 | 7.5 |
重要
Network |
Dana Powers (dpkp) | kafka-python | Dana Powers (dpkp)のkafka-pythonにおけるリソースの枯渇に関する脆弱性 |
CWE-400
リソースの枯渇 |
CVE-2026-10143 | 2026-06-12 14:35 | 2026-06-10 | Show | GitHub Exploit DB Packet Storm |
| 2307 | 7.8 |
重要
Local |
マイクロソフト |
Microsoft Office 2024 Long-Term Servicing Channel Edition Microsoft Office 2021 Long Term Servicing Channel Edition Microsoft&nb… |
Microsoft Excel のリモートでコードが実行される脆弱性 |
CWE-843
型の取り違え |
CVE-2026-44817 | 2026-06-12 14:35 | 2026-06-9 | Show | GitHub Exploit DB Packet Storm |
| 2308 | 7 |
重要
Local |
マイクロソフト |
Microsoft Office 2024 Long-Term Servicing Channel Edition Microsoft Office 2021 Long Term Servicing Channel Edition Microsoft&nb… |
Microsoft Excel のリモートでコードが実行される脆弱性 |
CWE-362
競合状態 |
CVE-2026-44818 | 2026-06-12 14:35 | 2026-06-9 | Show | GitHub Exploit DB Packet Storm |
| 2309 | 7.8 |
重要
Local |
マイクロソフト |
Microsoft Office 2024 Long-Term Servicing Channel Edition Microsoft Office 2021 Long Term Servicing Channel Edition Microsoft&nb… |
Microsoft Office のリモート コードが実行される脆弱性 |
CWE-122
ヒープオーバーフロー |
CVE-2026-44819 | 2026-06-12 14:35 | 2026-06-9 | Show | GitHub Exploit DB Packet Storm |
| 2310 | 7.8 |
重要
Local |
マイクロソフト |
Microsoft Office 2024 Long-Term Servicing Channel Edition Microsoft Office 2021 Long Term Servicing Channel Edition Microsoft&nb… |
Microsoft Excel のリモートでコードが実行される脆弱性 |
CWE-125
境界外読み取り |
CVE-2026-44820 | 2026-06-12 14:35 | 2026-06-9 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 29, 2026, 4:19 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 305931 | - |
rising-global fortinet aladdin pandasecurity |
rising_antivirus fortinet_antivirus esafe panda_antivirus |
The ELF file parser in eSafe 7.0.17.0, Rising Antivirus 22.83.00.03, Fortinet Antivirus 4.2.254.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an ELF file wit… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2012-1445 | 2024-11-21 10:37 | 2012-03-21 | Show | GitHub Exploit DB Packet Storm | |
| 305932 | - |
rising-global mcafee fortinet drweb aladdin pandasecurity |
rising_antivirus gateway fortinet_antivirus dr.web_antivirus esafe panda_antivirus |
The ELF file parser in Dr.Web 5.0.2.03300, eSafe 7.0.17.0, McAfee Gateway (formerly Webwasher) 2010.1C, Rising Antivirus 22.83.00.03, Fortinet Antivirus 4.2.254.0, and Panda Antivirus 10.0.2.7 allows… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2012-1454 | 2024-11-21 10:37 | 2012-03-21 | Show | GitHub Exploit DB Packet Storm | |
| 305933 | - |
rising-global trendmicro sophos mcafee kaspersky fortinet ikarus drweb ca antiy microsoft emsisoft pandasecurity |
rising_antivirus housecall trend_micro_antivirus sophos_anti-virus gateway kaspersky_anti-virus fortinet_antivirus ikarus_virus_utilities_t3_command_line_scanner dr.web_antivi… |
The CAB file parser in Dr.Web 5.0.2.03300, Trend Micro HouseCall 9.120.0.1004, Kaspersky Anti-Virus 7.0.0.125, Sophos Anti-Virus 4.61.0, Trend Micro AntiVirus 9.120.0.1004, McAfee Gateway (formerly W… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2012-1453 | 2024-11-21 10:37 | 2012-03-21 | Show | GitHub Exploit DB Packet Storm | |
| 305934 | - |
trendmicro cat ikarus emsisoft |
housecall trend_micro_antivirus quick_heal ikarus_virus_utilities_t3_command_line_scanner anti-malware |
The CAB file parser in Quick Heal (aka Cat QuickHeal) 11.00, Trend Micro AntiVirus 9.120.0.1004, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Trend Micro HouseCall 9.120.0.1004, and Emsis… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2012-1448 | 2024-11-21 10:37 | 2012-03-21 | Show | GitHub Exploit DB Packet Storm | |
| 305935 | - |
norman rising-global symantec sophos mcafee kaspersky cat fortinet ca antiy pc_tools aladdin pandasecurity |
norman_antivirus_\&_antispyware rising_antivirus endpoint_protection sophos_anti-virus gateway kaspersky_anti-virus quick_heal fortinet_antivirus etrust_vet_antivirus a… |
The ELF file parser in Quick Heal (aka Cat QuickHeal) 11.00, McAfee Anti-Virus Scanning Engine 5.400.0.1158, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Norman Antivirus 6.06.12, eSafe… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2012-1446 | 2024-11-21 10:37 | 2012-03-21 | Show | GitHub Exploit DB Packet Storm | |
| 305936 | - | ibm | db2 | IBM DB2 9.5 uses world-writable permissions for nodes.reg, which has unspecified impact and attack vectors. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2012-1797 | 2024-11-21 10:37 | 2012-03-21 | Show | GitHub Exploit DB Packet Storm | |
| 305937 | - | ibm | db2 | Unspecified vulnerability in IBM Tivoli Monitoring Agent (ITMA), as used in IBM DB2 9.5 before FP9 on UNIX, allows local users to gain privileges via unknown vectors. |
NVD-CWE-noinfo
|
CVE-2012-1796 | 2024-11-21 10:37 | 2012-03-21 | Show | GitHub Exploit DB Packet Storm | |
| 305938 | - | webglimpse | webglimpse | webglimpse.cgi in Webglimpse before 2.20.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the query parameter, as exploited in the wild in March 2012. |
CWE-78
OS Command |
CVE-2012-1795 | 2024-11-21 10:37 | 2012-03-21 | Show | GitHub Exploit DB Packet Storm | |
| 305939 | - | nikola_posa |
webfoliocms1.0.8 webfoliocms1.0.7 webfoliocms1.1.3 webfoliocms1.0.4 webfoliocms1.0.5 webfoliocms1.1.1 webfoliocms1.1.2 webfoliocms1.0.2 webfoliocms1.0.9 webfoliocms1.1.0 | Multiple cross-site request forgery (CSRF) vulnerabilities in Webfolio CMS 1.1.4 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) add an adminis… |
CWE-352
Origin Validation Error |
CVE-2012-1498 | 2024-11-21 10:37 | 2012-03-20 | Show | GitHub Exploit DB Packet Storm | |
| 305940 | - | netmechanica | netdecision | The Traffic Grapher Server for NetMechanica NetDecision before 4.6.1 allows remote attackers to obtain the source code of NtDecision script files with a .nd extension via an invalid version number in… |
CWE-200
Information Exposure |
CVE-2012-1466 | 2024-11-21 10:37 | 2012-03-20 | Show | GitHub Exploit DB Packet Storm |