Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3041 7.5 重要
Network
マイクロソフト Microsoft Defender Antimalware Platform Microsoft Defender のサービス拒否の脆弱性 CWE-400
CWE-noinfo
CVE-2026-45498 2026-05-22 10:53 2026-05-20 Show GitHub Exploit DB Packet Storm
3042 8.1 重要
Network
マイクロソフト Microsoft Malware Protection Engine Microsoft Defender のリモートでコードが実行される脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-45584 2026-05-22 10:53 2026-05-20 Show GitHub Exploit DB Packet Storm
3043 6.8 警告
Physics
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows 11 25h2
Microsoft Windows Server 2025
Microsoft Windows 11 26h1
Windows BitLocker Security Feature Bypass Vulnerability CWE-77
コマンドインジェクション
CVE-2026-45585 2026-05-22 10:52 2026-05-20 Show GitHub Exploit DB Packet Storm
3044 5.5 警告
Local
GNU Project
レッドハット
Red Hat OpenShift Container Platform
Red Hat Enterprise Linux
nano
GNU Project等の複数ベンダの製品における書式文字列に関する脆弱性 CWE-134
書式文字列の問題
CVE-2026-6843 2026-05-22 10:52 2026-04-22 Show GitHub Exploit DB Packet Storm
3045 5.5 警告
Local
GNU Project
レッドハット
Red Hat Hardened Images
Red Hat OpenShift Container Platform
Red Hat Enterprise Linux
GNU Binutils
GNU Project等の複数ベンダの製品におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-6844 2026-05-22 10:52 2026-04-22 Show GitHub Exploit DB Packet Storm
3046 5 警告
Local
GNU Project
レッドハット
Red Hat Hardened Images
Red Hat OpenShift Container Platform
Red Hat Enterprise Linux
GNU Binutils
GNU Project等の複数ベンダの製品におけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-6845 2026-05-22 10:52 2026-04-22 Show GitHub Exploit DB Packet Storm
3047 7.8 重要
Local
GNU Project
レッドハット
Red Hat Hardened Images
Red Hat OpenShift Container Platform
Red Hat Enterprise Linux
GNU Binutils
GNU Project等の複数ベンダの製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-6846 2026-05-22 10:52 2026-04-22 Show GitHub Exploit DB Packet Storm
3048 8.1 重要
Network
レッドハット Quay レッドハットのQuayにおけるセッション期限に関する脆弱性 CWE-613
不適切なセッション期限
CVE-2026-6848 2026-05-22 10:52 2026-04-22 Show GitHub Exploit DB Packet Storm
3049 7.1 重要
Local
レッドハット Red Hat Enterprise Linux AI
InstructLab
レッドハットのRed Hat Enterprise Linux AI等の複数製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-6855 2026-05-22 10:52 2026-04-22 Show GitHub Exploit DB Packet Storm
3050 6.5 警告
Adjacent
Mozilla Foundation Mozilla Firefox Mozilla FoundationのMozilla Firefoxにおける複数の脆弱性 CWE-200
CWE-306
CVE-2026-8706 2026-05-22 10:52 2026-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3991 9.1 CRITICAL
Network
- - Casdoor versions 2.362.0 and earlier contain a vulnerability involving unverified email binding that may enable account takeover. The getExistUserByBindingRule function matches users by email without… - CVE-2026-9092 2026-06-2 04:16 2026-05-29 Show GitHub Exploit DB Packet Storm
3992 4.3 MEDIUM
Network
- - FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to 1.8.221, while investigating the ThreadPolicy::delete issue reported previously, the same missing mailbox m… CWE-285
Improper Authorization
CVE-2026-48810 2026-06-2 04:16 2026-05-30 Show GitHub Exploit DB Packet Storm
3993 9.0 CRITICAL
Network
- - Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.28.8 and earlier, authenticated OS command injection in the application.updateTraefikConfig tRPC endpoint allows admin/owner users … CWE-78
OS Command 
CVE-2026-45630 2026-06-2 04:16 2026-05-30 Show GitHub Exploit DB Packet Storm
3994 7.2 HIGH
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Administration WebUI in Waterfall WF-500 TX Host in version… CWE-78
OS Command 
CVE-2025-41265 2026-06-2 03:58 2026-05-29 Show GitHub Exploit DB Packet Storm
3995 7.2 HIGH
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Administration WebUI in Waterfall WF-500 TX Host in version… CWE-78
OS Command 
CVE-2025-41266 2026-06-2 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm
3996 7.2 HIGH
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Administration WebUI in Waterfall WF-500 TX Host in version… CWE-78
OS Command 
CVE-2025-41267 2026-06-2 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm
3997 9.1 CRITICAL
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Administration WebUI in Waterfall WF-500 TX and RX Hosts in version 7.9.1.0 R2502171040 that allows remote unauthenticated att… CWE-23
 Relative Path Traversal
CVE-2025-41268 2026-06-2 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm
3998 9.8 CRITICAL
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Console WebUI in Waterfall WF-500 TX and RX Hosts in versio… CWE-78
OS Command 
CVE-2025-41269 2026-06-2 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm
3999 9.8 CRITICAL
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Console WebUI in Waterfall WF-500 TX and RX Hosts in versio… CWE-78
OS Command 
CVE-2025-41270 2026-06-2 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm
4000 7.5 HIGH
Network
waterfall-security wf-500_firmware Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Console WebUI in Waterfall WF-500 TX and RX Hosts in version 7.9.1.0 R2502171040 that allows remote unauthenticated attackers … CWE-23
 Relative Path Traversal
CVE-2025-41271 2026-06-2 03:57 2026-05-29 Show GitHub Exploit DB Packet Storm