Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3721 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-3074 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3722 5.8 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるフィルタリングの回避に関する脆弱性 CWE-441
フィルタリング回避
CVE-2026-3160 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3723 9.1 緊急
Network
マイクロソフト Azure SDK for Java Azure SDK for Java のセキュリティ機能のバイパスの脆弱性 CWE-287
CWE-347
CVE-2026-33117 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
3724 9.9 緊急
Network
マイクロソフト Microsoft Dynamics 365 Customer Insights Microsoft Dynamics 365 Customer Insights の特権昇格の脆弱性 CWE-269
不適切な権限管理
CVE-2026-33821 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3725 6.5 警告
Adjacent
Pengutronix e.K. barebox Pengutronix e.K.のbareboxにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-34960 2026-05-18 12:06 2026-05-11 Show GitHub Exploit DB Packet Storm
3726 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows テレフォニー サービスの特権昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40382 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3727 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows 共通ログ ファイル システム ドライバーの特権の昇格の脆弱性 CWE-191
整数アンダーフロー
CVE-2026-40397 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3728 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows リモート デスクトップ サービスの特権昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-40398 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3729 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows TCP/IP の特権昇格の脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-40399 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3730 7.1 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows TCP/IP のサービス拒否の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-40401 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345371 - xfree86_project x11r6 Buffer overflow in fbglyph.c in XFree86 before 4.2.0, related to glyph clipping for large origins, allows attackers to cause a denial of service and possibly gain privileges via a large number of cha… NVD-CWE-Other
CVE-2001-0955 2017-12-19 11:29 2001-09-22 Show GitHub Exploit DB Packet Storm
345372 - speechio speechd speechd 0.54 and earlier, with the Festival or rsynth speech synthesis package, allows attackers to execute arbitrary commands via shell metacharacters. NVD-CWE-Other
CVE-2001-0956 2017-12-19 11:29 2001-09-11 Show GitHub Exploit DB Packet Storm
345373 - trend_micro interscan_emanager
interscan_viruswall
Buffer overflows in eManager plugin for Trend Micro InterScan VirusWall for NT 3.51 and 3.51J allow remote attackers to execute arbitrary code via long arguments to the CGI programs (1) register.dll,… NVD-CWE-Other
CVE-2001-0958 2017-12-19 11:29 2001-09-12 Show GitHub Exploit DB Packet Storm
345374 - valve_software half-life Buffer overflow in client for Half-Life 1.1.0.8 and earlier allows malicious remote servers to execute arbitrary code via a long console command. NVD-CWE-Other
CVE-2001-0964 2017-12-19 11:29 2001-09-20 Show GitHub Exploit DB Packet Storm
345375 - oracle internet_directory Format string vulnerabilities in Oracle Internet Directory Server (LDAP) 2.1.1.x and 3.0.1 allow remote attackers to execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. NVD-CWE-Other
CVE-2001-0974 2017-12-19 11:29 2001-07-17 Show GitHub Exploit DB Packet Storm
345376 - oracle internet_directory Buffer overflow vulnerabilities in Oracle Internet Directory Server (LDAP) 2.1.1.x and 3.0.1 allow remote attackers to execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. NVD-CWE-Other
CVE-2001-0975 2017-12-19 11:29 2001-07-16 Show GitHub Exploit DB Packet Storm
345377 - hp hp-ux Buffer overflow in swverify in HP-UX 11.0, and possibly other programs, allows local users to gain privileges via a long command line argument. NVD-CWE-Other
CVE-2001-0979 2017-12-19 11:29 2001-09-3 Show GitHub Exploit DB Packet Storm
345378 - hassan_consulting shopping_cart shop.pl in Hassan Consulting Shopping Cart 1.23 allows remote attackers to execute arbitrary commands via shell metacharacters in the "page" parameter. NVD-CWE-Other
CVE-2001-0985 2017-12-19 11:29 2001-09-8 Show GitHub Exploit DB Packet Storm
345379 - microsoft index_server SQLQHit.asp sample file in Microsoft Index Server 2.0 allows remote attackers to obtain sensitive information such as the physical path, file attributes, or portions of source code by directly callin… NVD-CWE-Other
CVE-2001-0986 2017-12-19 11:29 2001-09-14 Show GitHub Exploit DB Packet Storm
345380 - knox_software arkeia Arkeia backup server 4.2.8-2 and earlier creates its database files with world-writable permissions, which could allow local users to overwrite the files or obtain sensitive information. NVD-CWE-Other
CVE-2001-0988 2017-12-19 11:29 2001-07-23 Show GitHub Exploit DB Packet Storm