Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3211 7.4 重要
Adjacent
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 10 22h2
Microsoft Windows 11 25h2
Microsoft Windows Server 2022
Microsoft …
Windows TCP/IP のサービス拒否の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-40414 2026-05-18 11:31 2026-05-12 Show GitHub Exploit DB Packet Storm
3212 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 10 22h2
Microsoft Windows 11 25h2
Microsoft Windows Server 2022
Microsoft …
Windows TCP/IP のリモートでコードが実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40415 2026-05-18 11:31 2026-05-12 Show GitHub Exploit DB Packet Storm
3213 4.3 警告
Network
マイクロソフト Microsoft Word
Microsoft 365 Apps
Microsoft Office
Microsoft Word の情報漏えいの脆弱性 CWE-73
ファイル名やパス名の外部制御
CVE-2026-40421 2026-05-18 11:31 2026-05-12 Show GitHub Exploit DB Packet Storm
3214 8.8 重要
Network
マイクロソフト Windows Admin Center Azure potal 上の Windows Admin Center の特権昇格の脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-41086 2026-05-18 11:31 2026-05-12 Show GitHub Exploit DB Packet Storm
3215 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 11 25h2
Microsoft Windows 10 22h2
Microsoft Windows Server 2022
Microsoft …
WinSock 用 Windows Ancillary Function Driver の特権の昇格の脆弱性 CWE-73
ファイル名やパス名の外部制御
CVE-2026-41088 2026-05-18 11:31 2026-05-12 Show GitHub Exploit DB Packet Storm
3216 9.8 緊急
Network
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microso…
Windows Netlogon のリモートでコードが実行される脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-41089 2026-05-18 11:31 2026-05-12 Show GitHub Exploit DB Packet Storm
3217 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microso…
Data Deduplication Elevation of Privilege Vulnerability CWE-416
解放済みメモリの使用
CVE-2026-41095 2026-05-18 11:31 2026-05-12 Show GitHub Exploit DB Packet Storm
3218 9.8 緊急
Network
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 11 25h2
Microsoft Windows 11 26h1
Microsoft Windows 11 24h2
Microsoft Wind…
Windows DNS クライアントのリモートでコードが実行される脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-41096 2026-05-18 11:31 2026-05-12 Show GitHub Exploit DB Packet Storm
3219 6.7 警告
Local
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 10 22h2
Microsoft Windows 11 25h2
Microsoft Windows Server 2022
Microsoft …
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-1329
アップデートができないコンポーネントへの依存
CVE-2026-41097 2026-05-18 11:31 2026-05-12 Show GitHub Exploit DB Packet Storm
3220 4.4 警告
Local
マイクロソフト Microsoft 365 Copilot Android 用の Microsoft 365 Copilot のスプーフィングの脆弱性 CWE-284
CWE-Other
CVE-2026-41100 2026-05-18 11:31 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345391 - debian fsp Buffer overflow in fsp before 2.81.b18 allows remote users to execute arbitrary code. NVD-CWE-Other
CVE-2004-0011 2017-10-10 10:30 2004-01-20 Show GitHub Exploit DB Packet Storm
345392 - jabber_software_foundation jabber_server jabber 1.4.2, 1.4.2a, and possibly earlier versions, does not properly handle SSL connections, which allows remote attackers to cause a denial of service (crash). NVD-CWE-Other
CVE-2004-0013 2017-10-10 10:30 2004-02-3 Show GitHub Exploit DB Packet Storm
345393 - vbox3 vbox3 vbox3 0.1.8 and earlier does not properly drop privileges before executing a user-provided TCL script, which allows local users to gain privileges. NVD-CWE-Other
CVE-2004-0015 2017-10-10 10:30 2004-02-3 Show GitHub Exploit DB Packet Storm
345394 - phpgroupware phpgroupware The calendar module for phpgroupware 0.9.14 does not enforce the "save extension" feature for holiday files, which allows remote attackers to create and execute PHP files. NVD-CWE-Other
CVE-2004-0016 2017-10-10 10:30 2004-02-3 Show GitHub Exploit DB Packet Storm
345395 - samba jitterbug jitterbug 1.6.2 does not properly sanitize inputs, which allows remote authenticated users to execute arbitrary commands. NVD-CWE-Other
CVE-2004-0028 2017-10-10 10:30 2004-02-3 Show GitHub Exploit DB Packet Storm
345396 - phpgedview phpgedview PHPGEDVIEW 2.61 allows remote attackers to reinstall the software and change the administrator password via a direct HTTP request to editconfig.php. NVD-CWE-Other
CVE-2004-0031 2017-10-10 10:30 2004-01-20 Show GitHub Exploit DB Packet Storm
345397 - phpgedview phpgedview Cross-site scripting (XSS) vulnerability in search.php in PHPGEDVIEW 2.61 allows remote attackers to inject arbitrary HTML and web script via the firstname parameter. NVD-CWE-Other
CVE-2004-0032 2017-10-10 10:30 2004-01-20 Show GitHub Exploit DB Packet Storm
345398 - phpgedview phpgedview admin.php in PHPGEDVIEW 2.61 allows remote attackers to obtain sensitive information via an action parameter with a phpinfo command. NVD-CWE-Other
CVE-2004-0033 2017-10-10 10:30 2004-01-20 Show GitHub Exploit DB Packet Storm
345399 - phorum phorum SQL injection vulnerability in register.php for Phorum 3.4.5 and earlier allows remote attackers to execute arbitrary SQL commands via the hide_email parameter. NVD-CWE-Other
CVE-2004-0035 2017-10-10 10:30 2004-01-20 Show GitHub Exploit DB Packet Storm
345400 - jelsoft vbulletin SQL injection vulnerability in calendar.php for vBulletin Forum 2.3.x before 2.3.4 allows remote attackers to steal sensitive information via the eventid parameter. NVD-CWE-Other
CVE-2004-0036 2017-10-10 10:30 2004-01-20 Show GitHub Exploit DB Packet Storm