Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241191 6.8 警告 Irssi - weechat の now-playing.rb スクリプトなどにおける CRLF インジェクションの脆弱性 - CVE-2007-4398 2012-09-25 16:59 2007-08-18 Show GitHub Exploit DB Packet Storm
241192 6.8 警告 mikachu
ricardo mesquita
simon
tuomas jormola
Irssi
kristof korwisi
- XChat の xmms-thing スクリプトなどにおける CRLF インジェクションの脆弱性 - CVE-2007-4397 2012-09-25 16:59 2007-08-18 Show GitHub Exploit DB Packet Storm
241193 9.3 危険 Irssi - irssi の ixmmsa.pl スクリプトなどにおける CRLF インジェクションの脆弱性 - CVE-2007-4396 2012-09-25 16:59 2007-08-18 Show GitHub Exploit DB Packet Storm
241194 4.3 警告 Nullsoft - Winamp におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-4392 2012-09-25 16:59 2007-08-17 Show GitHub Exploit DB Packet Storm
241195 6.8 警告 OWASP - OWASP Stinger における入力検証ルーチンを回避される脆弱性 - CVE-2007-4385 2012-09-25 16:59 2007-08-17 Show GitHub Exploit DB Packet Storm
241196 6 警告 Netwin Ltd - SurgeMail の IMAP サービスにおけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-4377 2012-09-25 16:59 2007-08-16 Show GitHub Exploit DB Packet Storm
241197 10 危険 Netwin Ltd - NetWin SurgeMail における脆弱性 CWE-noinfo
情報不足
CVE-2007-4372 2012-09-25 16:59 2007-08-16 Show GitHub Exploit DB Packet Storm
241198 6.8 警告 hotscripts - Neuron Blog の admin/pages/blog-add.php における任意の PHP ファイルを実行される脆弱性 - CVE-2007-4371 2012-09-25 16:59 2007-08-15 Show GitHub Exploit DB Packet Storm
241199 7.5 危険 IBM - IBM Rational CQ Web の /main 配下における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4368 2012-09-25 16:59 2007-08-15 Show GitHub Exploit DB Packet Storm
241200 9.3 危険 Opera Software ASA - Opera における任意のコードを実行される脆弱性 - CVE-2007-4367 2012-09-25 16:59 2007-08-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
771 5.5 MEDIUM
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Out-of-bounds read in Windows Telephony Service allows an authorized attacker to disclose information locally. CWE-125
Out-of-bounds Read
CVE-2026-42968 2026-06-12 04:53 2026-06-10 Show GitHub Exploit DB Packet Storm
772 5.5 MEDIUM
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2016
windows_server_2019
w…
Use of uninitialized resource in Windows Push Notifications allows an authorized attacker to disclose information locally. CWE-908
 Use of Uninitialized Resource
CVE-2026-42969 2026-06-12 04:53 2026-06-10 Show GitHub Exploit DB Packet Storm
773 5.5 MEDIUM
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Use of uninitialized resource in Windows Push Notifications allows an authorized attacker to disclose information locally. CWE-200
Information Exposure
CVE-2026-42970 2026-06-12 04:52 2026-06-10 Show GitHub Exploit DB Packet Storm
774 5.5 MEDIUM
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2016
windows_server_2019
w…
Use of uninitialized resource in Windows Push Notifications allows an authorized attacker to disclose information locally. CWE-200
Information Exposure
CVE-2026-42971 2026-06-12 04:52 2026-06-10 Show GitHub Exploit DB Packet Storm
775 7.8 HIGH
Local
nsa ghidra Ghidra before 12.0.4 contains a path traversal vulnerability in the theme import functionality that allows attackers to write files outside the intended theme directory. Attackers can craft malicious… CWE-22
Path Traversal
CVE-2026-52755 2026-06-12 04:52 2026-06-10 Show GitHub Exploit DB Packet Storm
776 8.8 HIGH
Network
nsa ghidra Ghidra before 12.1 contains an authentication bypass vulnerability in PKIAuthenticationModule.authenticate() that allows any user with a valid CA-signed certificate to impersonate other users by pres… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2026-52754 2026-06-12 04:52 2026-06-10 Show GitHub Exploit DB Packet Storm
777 5.5 MEDIUM
Local
nsa ghidra Ghidra before 12.0.3 contains an out-of-memory vulnerability in the rust_demangle function that allocates unbounded output buffers without size limits. Attackers can craft malicious Rust symbol names… CWE-789
 Memory Allocation with Excessive Size Value
CVE-2026-52753 2026-06-12 04:52 2026-06-10 Show GitHub Exploit DB Packet Storm
778 5.7 MEDIUM
Adjacent
microsoft windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2022
windows_server_2025
Incorrect calculation of buffer size in Windows TCP/IP allows an authorized attacker to deny service over an adjacent network. CWE-131
Incorrect Calculation of Buffer Size
CVE-2026-42915 2026-06-12 04:52 2026-06-10 Show GitHub Exploit DB Packet Storm
779 7.8 HIGH
Local
nsa ghidra Ghidra before 12.0.2 contains a path traversal vulnerability in the extension installer that fails to validate ZIP entry names during extraction. Attackers can craft malicious extensions with travers… CWE-22
Path Traversal
CVE-2026-52752 2026-06-12 04:52 2026-06-10 Show GitHub Exploit DB Packet Storm
780 8.8 HIGH
Network
nsa ghidra Ghidra before 12.1 contains an unsafe deserialization vulnerability in client-side Shared-Project RMI connection code that allows unauthenticated remote code execution. Attackers can craft a maliciou… CWE-502
 Deserialization of Untrusted Data
CVE-2026-52751 2026-06-12 04:51 2026-06-10 Show GitHub Exploit DB Packet Storm