Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2991 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Wind…
Windows Win32k の特権の昇格の脆弱性 CWE-843
型の取り違え
CVE-2026-35417 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
2992 7 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Wind…
Windows Cloud Files Mini Filter ドライバーの特権の昇格の脆弱性 CWE-367
CWE-416
CVE-2026-35418 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
2993 5.5 警告
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 11 24h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Windows DWM Core ライブラリの情報漏えいの脆弱性 CWE-125
境界外読み取り
CVE-2026-35419 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
2994 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microso…
Windows カーネルの特権の昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-35420 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
2995 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows GDI のリモートでコードが実行される脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-35421 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
2996 6.5 警告
Network
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows TCP/IP ドライバーのセキュリティ機能のバイパスの脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2026-35422 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
2997 5.4 警告
Network
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows 11 Telnet クライアントの情報漏えいの脆弱性 CWE-125
境界外読み取り
CVE-2026-35423 2026-05-18 12:15 2026-05-12 Show GitHub Exploit DB Packet Storm
2998 7.5 重要
Network
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
インターネット キー交換 (IKE) プロトコルのサービス拒否の脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2026-35424 2026-05-18 12:15 2026-05-12 Show GitHub Exploit DB Packet Storm
2999 5.4 警告
Network
Frappe Frappe Frappeにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-3837 2026-05-18 12:15 2026-04-22 Show GitHub Exploit DB Packet Storm
3000 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 11 24h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Windows カーネルの特権の昇格の脆弱性 CWE-822
信頼性のないポインタデリファレンス
CVE-2026-40369 2026-05-18 12:15 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306461 - google chrome Google Chrome before 14.0.835.163 does not properly process MP3 files, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors. CWE-125
Out-of-bounds Read
CVE-2011-2844 2024-11-21 10:29 2011-09-19 Show GitHub Exploit DB Packet Storm
306462 - google chrome Google Chrome before 14.0.835.163 does not properly handle media buffers, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors. CWE-125
Out-of-bounds Read
CVE-2011-2843 2024-11-21 10:29 2011-09-19 Show GitHub Exploit DB Packet Storm
306463 - google chrome The installer in Google Chrome before 14.0.835.163 on Mac OS X does not properly handle lock files, which has unspecified impact and attack vectors. CWE-20
 Improper Input Validation 
CVE-2011-2842 2024-11-21 10:29 2011-09-19 Show GitHub Exploit DB Packet Storm
306464 - google chrome Google Chrome before 14.0.835.163 does not properly perform garbage collection during the processing of PDF documents, which allows remote attackers to cause a denial of service or possibly have unsp… CWE-20
 Improper Input Validation 
CVE-2011-2841 2024-11-21 10:29 2011-09-19 Show GitHub Exploit DB Packet Storm
306465 - google chrome Google Chrome before 14.0.835.163 allows user-assisted remote attackers to spoof the URL bar via vectors related to "unusual user interaction." CWE-20
 Improper Input Validation 
CVE-2011-2840 2024-11-21 10:29 2011-09-19 Show GitHub Exploit DB Packet Storm
306466 - google chrome Google Chrome before 14.0.835.163 does not properly consider the MIME type during the loading of a plug-in, which has unspecified impact and remote attack vectors. CWE-20
 Improper Input Validation 
CVE-2011-2838 2024-11-21 10:29 2011-09-19 Show GitHub Exploit DB Packet Storm
306467 - google chrome Google Chrome before 14.0.835.163 on Linux does not use the PIC and PIE compiler options for position-independent code, which has unspecified impact and attack vectors. NVD-CWE-noinfo
CVE-2011-2837 2024-11-21 10:29 2011-09-19 Show GitHub Exploit DB Packet Storm
306468 - google chrome Google Chrome before 14.0.835.163 does not require Infobar interaction before use of the Windows Media Player plug-in, which makes it easier for remote attackers to have an unspecified impact via cra… NVD-CWE-noinfo
CVE-2011-2836 2024-11-21 10:29 2011-09-19 Show GitHub Exploit DB Packet Storm
306469 - google chrome Race condition in Google Chrome before 14.0.835.163 allows attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the certificate cache. CWE-362
Race Condition
CVE-2011-2835 2024-11-21 10:29 2011-09-19 Show GitHub Exploit DB Packet Storm
306470 - google
apple
debian
redhat
chrome
iphone_os
mac_os_x
debian_linux
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
enterprise_linux_server_eus
Double free vulnerability in libxml2, as used in Google Chrome before 14.0.835.163, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related … CWE-415
 Double Free
CVE-2011-2834 2024-11-21 10:29 2011-09-19 Show GitHub Exploit DB Packet Storm