Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251361 7.5 危険 openarena
ioquake3
worldofpadman
- World of Padman および OpenArena で使用される ioQuake3 エンジンの sys/sys_unix.c における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-1412 2012-03-27 18:43 2011-08-3 Show GitHub Exploit DB Packet Storm
251362 5 警告 Ulli Horlacher - F*EX におけるファイルをアップロードされる脆弱性 CWE-287
不適切な認証
CVE-2011-1409 2012-03-27 18:43 2011-06-24 Show GitHub Exploit DB Packet Storm
251363 7.5 危険 Exim Development - Exim の DKIM 実装における任意のコードを実行させる脆弱性 CWE-20
不適切な入力確認
CVE-2011-1407 2012-03-27 18:43 2011-05-16 Show GitHub Exploit DB Packet Storm
251364 4.3 警告 Mahara - Mahara における資格情報を取得される脆弱性 CWE-16
環境設定
CVE-2011-1406 2012-03-27 18:43 2011-05-13 Show GitHub Exploit DB Packet Storm
251365 3.5 注意 Mahara - Mahara におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1405 2012-03-27 18:43 2011-05-13 Show GitHub Exploit DB Packet Storm
251366 4 警告 Mahara - Mahara における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1404 2012-03-27 18:43 2011-05-13 Show GitHub Exploit DB Packet Storm
251367 6.8 警告 Mahara - Mahara の pieforms の実装におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-1403 2012-03-27 18:43 2011-05-13 Show GitHub Exploit DB Packet Storm
251368 6.5 警告 Mahara - Mahara におけるアクセスをブロックされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1402 2012-03-27 18:43 2011-05-13 Show GitHub Exploit DB Packet Storm
251369 3.5 注意 ikiwiki - ikiwiki におけるクロスサイトスクリプティング攻撃をされる脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1401 2012-03-27 18:43 2011-04-11 Show GitHub Exploit DB Packet Storm
251370 6.8 警告 Debian
Canonical
- Debian GNU/Linux squeeze などの製品で使用される shell_escape_commands 命令の初期設定における任意のコードを実行される脆弱性 CWE-16
環境設定
CVE-2011-1400 2012-03-27 18:43 2011-03-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311 7.5 HIGH
Network
- - Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. New CWE-125
Out-of-bounds Read
CVE-2026-42908 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
312 6.5 MEDIUM
Network
- - Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose information locally. New CWE-200
Information Exposure
CVE-2026-42907 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
313 5.5 MEDIUM
Local
- - Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose information locally. New CWE-200
Information Exposure
CVE-2026-42906 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
314 7.8 HIGH
Local
- - Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. New CWE-416
 Use After Free
CVE-2026-42905 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
315 9.6 CRITICAL
Adjacent
- - Heap-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to elevate privileges over an adjacent network. New CWE-122
Heap-based Buffer Overflow
CVE-2026-42904 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
316 6.5 MEDIUM
Network
- - Null pointer dereference in Windows Kerberos allows an authorized attacker to deny service over a network. New CWE-476
 NULL Pointer Dereference
CVE-2026-42903 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
317 7.8 HIGH
Local
- - Improper authorization in Microsoft PowerToys allows an authorized attacker to elevate privileges locally. New CWE-285
Improper Authorization
CVE-2026-42902 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
318 7.8 HIGH
Local
- - Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges locally. New CWE-125
Out-of-bounds Read
CVE-2026-42837 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
319 7.0 HIGH
Local
- - Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally. New CWE-362
CWE-416
Race Condition
 Use After Free
CVE-2026-42836 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
320 8.1 HIGH
Network
- - Improper neutralization of special elements in output used by a downstream component ('injection') in Microsoft Teams for Android allows an authorized attacker to disclose information over a network. New CWE-74
Injection
CVE-2026-42835 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm