Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240921 7.5 危険 Papoo Software - Papoo の kontakt.php における SQL インジェクションの脆弱性 - CVE-2007-2320 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
240922 7.5 危険 miniBB
tosmo mambo
- TOSMO/Mambo などの製品における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2317 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
240923 10 危険 open business management - OBM の admin script における脆弱性 - CVE-2007-2316 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
240924 7.8 危険 minishare - MiniShare におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2315 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
240925 7.5 危険 mxbb - mxBB 用の Shotcast モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2313 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
240926 6.8 警告 news manager deluxe - NMDeluxe の includes/footer.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2303 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
240927 10 危険 ヒューレット・パッカード - HP OpenView Storage Data Protector における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2007-2281 2012-09-25 16:47 2009-12-16 Show GitHub Exploit DB Packet Storm
240928 10 危険 ヒューレット・パッカード - HP OpenView Storage Data Protector におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-2280 2012-09-25 16:47 2009-12-16 Show GitHub Exploit DB Packet Storm
240929 9.3 危険 マイクロソフト - Microsoft IAG で使用される WhlMgr.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-2238 2012-09-25 16:47 2009-04-16 Show GitHub Exploit DB Packet Storm
240930 7.5 危険 マイクロソフト - Microsoft Internet Explorer 7.0 の Digest Authentication サポートにおける CRLF インジェクションの脆弱性 - CVE-2007-2291 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
601 5.3 MEDIUM
Network
- - Hermes WebUI before version 0.51.270 contains a resource exhaustion vulnerability that allows unauthenticated remote attackers to degrade service availability by repeatedly calling the passkey option… New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-49955 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
602 6.5 MEDIUM
Network
- - The Apache Airflow Samba provider's `GCSToSambaOperator` joined GCS object names to the SMB destination path without a containment check, so an object named with `../` segments resolved a write path … New CWE-22
Path Traversal
CVE-2026-49818 2026-06-10 02:17 2026-06-9 Show GitHub Exploit DB Packet Storm
603 7.8 HIGH
Local
- - Improper access control in Microsoft PC Manager allows an authorized attacker to bypass a security feature locally. New CWE-284
Improper Access Control
CVE-2026-49161 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
604 7.1 HIGH
Local
- - Improper input validation in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally. New CWE-20
CWE-23
 Improper Input Validation 
 Relative Path Traversal
CVE-2026-48569 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
605 7.8 HIGH
Local
- - Untrusted search path in Windows Narrator Braille allows an authorized attacker to elevate privileges locally. New CWE-426
 Untrusted Search Path
CVE-2026-48565 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
606 4.6 MEDIUM
Network
- - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. New CWE-79
Cross-site Scripting
CVE-2026-48562 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
607 5.4 MEDIUM
Network
- - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. New CWE-502
 Deserialization of Untrusted Data
CVE-2026-48560 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
608 7.5 HIGH
Network
- - Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. New CWE-416
 Use After Free
CVE-2026-47654 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
609 8.8 HIGH
Network
- - Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. New CWE-416
 Use After Free
CVE-2026-47653 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
610 9.8 CRITICAL
Network
- - External control of file name or path in Azure Stack Edge allows an unauthorized attacker to execute code over a network. New CWE-73
 External Control of File Name or Path
CVE-2026-47643 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm