Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3461 6.5 警告
Network
フォーティネット FortiDeceptor フォーティネットのFortiDeceptorにおける引数の挿入または変更に関する脆弱性 CWE-88
引数の挿入または変更
CVE-2026-25690 2026-05-20 13:21 2026-05-12 Show GitHub Exploit DB Packet Storm
3462 6.5 警告
Network
Fleet Device Management fleet Fleet Device Managementのfleetにおける入力確認に関する脆弱性 CWE-20
CWE-noinfo
CVE-2026-26062 2026-05-20 13:21 2026-05-14 Show GitHub Exploit DB Packet Storm
3463 9.8 緊急
Network
Fleet Device Management fleet Fleet Device ManagementのfleetにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-26191 2026-05-20 13:21 2026-05-14 Show GitHub Exploit DB Packet Storm
3464 8.6 重要
Network
lfprojects mlflow lfprojectsのmlflowにおける根本の脆弱性による認証回避の脆弱性 CWE-305
根本の脆弱性による認証回避
CVE-2026-2652 2026-05-20 13:21 2026-05-15 Show GitHub Exploit DB Packet Storm
3465 9.1 緊急
Network
Timo Sirainen
Open-Xchange
Dovecot Pro
Dovecot
Timo Sirainen等の複数ベンダの製品における余分なパラメータの不適切な処理に関する脆弱性 CWE-235
余分なパラメータの不適切な処理
CVE-2026-27851 2026-05-20 13:21 2026-05-12 Show GitHub Exploit DB Packet Storm
3466 4.3 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-28759 2026-05-20 13:21 2026-05-18 Show GitHub Exploit DB Packet Storm
3467 5.5 警告
Local
マイクロソフト Microsoft Teams Microsoft Teams のなりすましの脆弱性 CWE-552
外部からアクセス可能なファイルまたはディレクトリ
CVE-2026-32185 2026-05-20 13:21 2026-05-12 Show GitHub Exploit DB Packet Storm
3468 7.2 重要
Network
Esri Portal for ArcGIS EsriのPortal for ArcGISにおける不適切な権限設定に関する脆弱性 CWE-266
不適切な権限設定
CVE-2026-33518 2026-05-20 13:21 2026-04-21 Show GitHub Exploit DB Packet Storm
3469 9.8 緊急
Network
Esri Portal for ArcGIS EsriのPortal for ArcGISにおける不適切な権限設定に関する脆弱性 CWE-266
不適切な権限設定
CVE-2026-33519 2026-05-20 13:20 2026-04-21 Show GitHub Exploit DB Packet Storm
3470 5.3 警告
Adjacent
Timo Sirainen
Open-Xchange
Dovecot Pro
Dovecot
Timo Sirainen等の複数ベンダの製品におけるリソースの挿入に関する脆弱性 CWE-99
リソースの挿入
CVE-2026-33603 2026-05-20 13:20 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307671 - microsoft windows_7
windows_vista
windows_media_center_tv_pack
Untrusted search path vulnerability in Windows Media Center in Microsoft Windows Vista SP2 and Windows 7 Gold and SP1, and Windows Media Center TV Pack for Windows Vista, allows local users to gain p… NVD-CWE-Other
CVE-2011-2009 2024-11-21 10:27 2011-10-12 Show GitHub Exploit DB Packet Storm
307672 - microsoft host_integration_server Microsoft Host Integration Server (HIS) 2004 SP1, 2006 SP1, 2009, and 2010 allows remote attackers to cause a denial of service (SNA Server service outage) via crafted TCP or UDP traffic, aka "Access… CWE-20
 Improper Input Validation 
CVE-2011-2008 2024-11-21 10:27 2011-10-12 Show GitHub Exploit DB Packet Storm
307673 - microsoft host_integration_server Microsoft Host Integration Server (HIS) 2004 SP1, 2006 SP1, 2009, and 2010 allows remote attackers to cause a denial of service (SNA Server service outage) via crafted TCP or UDP traffic, aka "Endles… CWE-20
 Improper Input Validation 
CVE-2011-2007 2024-11-21 10:27 2011-10-12 Show GitHub Exploit DB Packet Storm
307674 - microsoft windows_server_2008
windows_xp
windows_7
windows_server_2003
windows_vista
windows_2003_server
Buffer overflow in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2003 2024-11-21 10:27 2011-10-12 Show GitHub Exploit DB Packet Storm
307675 - microsoft windows_server_2008
windows_7
windows_vista
win32k.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 does not properly handle TrueType fonts, which allows local u… CWE-20
 Improper Input Validation 
CVE-2011-2002 2024-11-21 10:27 2011-10-12 Show GitHub Exploit DB Packet Storm
307676 - microsoft internet_explorer Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code via an attempted access to a virtual function table after c… NVD-CWE-noinfo
CVE-2011-2001 2024-11-21 10:27 2011-10-12 Show GitHub Exploit DB Packet Storm
307677 - microsoft internet_explorer Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a deleted object, aka "Body Element Remote Cod… NVD-CWE-noinfo
CVE-2011-2000 2024-11-21 10:27 2011-10-12 Show GitHub Exploit DB Packet Storm
307678 - microsoft internet_explorer Microsoft Internet Explorer 8 does not properly allocate and access memory, which allows remote attackers to execute arbitrary code via vectors involving a "dereferenced memory address," aka "Select … NVD-CWE-noinfo
CVE-2011-1999 2024-11-21 10:27 2011-10-12 Show GitHub Exploit DB Packet Storm
307679 - microsoft internet_explorer Microsoft Internet Explorer 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that was not properly initialized, aka "Jscrip… CWE-908
 Use of Uninitialized Resource
CVE-2011-1998 2024-11-21 10:27 2011-10-12 Show GitHub Exploit DB Packet Storm
307680 - microsoft internet_explorer Microsoft Internet Explorer 6 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a deleted object, aka "OnLoad Event Remote Code Executio… CWE-20
 Improper Input Validation 
CVE-2011-1997 2024-11-21 10:27 2011-10-12 Show GitHub Exploit DB Packet Storm