Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2911 7.8 重要
Local
マイクロソフト Microsoft Office Online Server
Microsoft Excel
Microsoft Office
Office Long Term Servicing Channel (LTSC)
Microsoft 365 Apps
Microsoft Excel のリモートでコードが実行される脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-40362 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
2912 8.4 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Office Long Term Servicing Channel (LTSC)
Microsoft Office のリモート コードが実行される脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-40363 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
2913 8.4 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Microsoft Word
Office Long Term Servicing Channel (LTSC)
Microsoft Word のリモートでコードが実行される脆弱性 CWE-122
CWE-843
CWE-908
CVE-2026-40364 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
2914 8.4 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Microsoft Word
Office Long Term Servicing Channel (LTSC)
Microsoft Word のリモートでコードが実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40366 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
2915 8.4 重要
Local
マイクロソフト Microsoft Office
Office Long Term Servicing Channel (LTSC)
Microsoft 365 Apps
Microsoft SharePoint Server
Microsoft Word
Microsoft Word のリモートでコードが実行される脆弱性 CWE-822
信頼性のないポインタデリファレンス
CVE-2026-40367 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
2916 7.8 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Office Long Term Servicing Channel (LTSC)
Microsoft Office クイック実行の特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40418 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
2917 7.8 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Office Long Term Servicing Channel (LTSC)
Microsoft Office クイック実行の特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40419 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
2918 8.8 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Office Long Term Servicing Channel (LTSC)
Microsoft Office クイック実行の特権の昇格の脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-40420 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
2919 5.8 警告
Network
traefik traefik traefikにおける送信データへの重要な情報の挿入に関する脆弱性 CWE-201
送信データへの重要な情報の挿入
CVE-2026-41181 2026-05-21 10:52 2026-05-15 Show GitHub Exploit DB Packet Storm
2920 7.5 重要
Network
DHTMLX PDF Export Module DHTMLXのPDF Export Moduleにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-41552 2026-05-21 10:52 2026-05-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
344901 - microsoft internet_information_server Microsoft IIS 4.0 and before, when installed on a FAT partition, allows a remote attacker to obtain source code of ASP files via a URL encoded with Unicode. NVD-CWE-Other
CVE-2001-0709 2017-12-19 11:29 2001-09-20 Show GitHub Exploit DB Packet Storm
344902 - cisco ios Cisco IOS 11.x and 12.0 with ATM support allows attackers to cause a denial of service via the undocumented Interim Local Management Interface (ILMI) SNMP community string. NVD-CWE-Other
CVE-2001-0711 2017-12-19 11:29 2001-08-31 Show GitHub Exploit DB Packet Storm
344903 - netbsd netbsd Hitachi Super-H architecture in NetBSD 1.5 and 1.4.1 allows a local user to gain privileges via modified Status Register contents, which are not properly handled by (1) the sigreturn system call or (… NVD-CWE-Other
CVE-2001-0734 2017-12-19 11:29 2001-10-18 Show GitHub Exploit DB Packet Storm
344904 - immunix
university_of_washington
engardelinux
mandrakesoft
redhat
immunix
pine
secure_linux
mandrake_linux
mandrake_linux_corporate_server
linux
Vulnerability in (1) pine before 4.33 and (2) the pico editor, included with pine, allows local users local users to overwrite arbitrary files via a symlink attack. NVD-CWE-Other
CVE-2001-0736 2017-12-19 11:29 2001-10-18 Show GitHub Exploit DB Packet Storm
344905 - iplanet iplanet_web_server Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a request for a … NVD-CWE-Other
CVE-2001-0746 2017-12-19 11:29 2001-10-18 Show GitHub Exploit DB Packet Storm
344906 - steve_poulsen guildftpd GuildFTPd 0.9.7 stores user names and passwords in plaintext in the default.usr file, which allows local users to gain privileges as other FTP users by reading the file. NVD-CWE-Other
CVE-2001-0768 2017-12-19 11:29 2001-10-18 Show GitHub Exploit DB Packet Storm
344907 - hp hp-ux Buffer overflows and other vulnerabilities in multiple Common Desktop Environment (CDE) modules in HP-UX 10.10 through 11.11 allow attackers to cause a denial of service and possibly gain additional … NVD-CWE-Other
CVE-2001-0772 2017-12-19 11:29 2001-10-18 Show GitHub Exploit DB Packet Storm
344908 - dynfx dynfx_mailserver Buffer overflow in DynFX MailServer version 2.10 allows remote attackers to conduct a denial of service via a long username to the POP3 service. NVD-CWE-Other
CVE-2001-0776 2017-12-19 11:29 2001-10-18 Show GitHub Exploit DB Packet Storm
344909 - omnicron omnihttpd Omnicron OmniHTTPd 2.0.8 allows remote attackers to cause a denial of service (memory exhaustion) via a series of requests for PHP scripts. NVD-CWE-Other
CVE-2001-0777 2017-12-19 11:29 2001-10-18 Show GitHub Exploit DB Packet Storm
344910 - omnicron omnihttpd OmniHTTPd 2.0.8 and earlier allow remote attackers to obtain source code via a GET request with the URL-encoded symbol for a space (%20). NVD-CWE-Other
CVE-2001-0778 2017-12-19 11:29 2001-10-18 Show GitHub Exploit DB Packet Storm