|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 24, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 401 | 9.9 |
緊急
Network |
オラクル | Oracle Identity Manager Connector | オラクルのOracle Identity Manager Connectorにおけるアクセス制御に関する脆弱性 New |
CWE-284
不適切なアクセス制御 |
CVE-2026-46793 | 2026-06-22 11:54 | 2026-06-17 | Show | GitHub Exploit DB Packet Storm |
| 402 | 9.9 |
緊急
Network |
オラクル | Oracle Identity Manager Connector | オラクルのOracle Identity Manager Connectorにおける権限管理に関する脆弱性 New |
CWE-269
不適切な権限管理 |
CVE-2026-46794 | 2026-06-22 11:54 | 2026-06-17 | Show | GitHub Exploit DB Packet Storm |
| 403 | 9.3 |
緊急
Network |
オラクル | Oracle WebCenter Content | オラクルのOracle WebCenter Contentにおけるアクセス制御に関する脆弱性 New |
CWE-284
不適切なアクセス制御 |
CVE-2026-46795 | 2026-06-22 11:54 | 2026-06-17 | Show | GitHub Exploit DB Packet Storm |
| 404 | 8 |
重要
Network |
- | オラクルのOracle WebCenter Sites Support Toolsにおけるオープンリダイレクトの脆弱性 New |
CWE-601 CWE-noinfo |
CVE-2026-46796 | 2026-06-22 11:54 | 2026-06-17 | Show | GitHub Exploit DB Packet Storm | |
| 405 | 9.8 |
緊急
Network |
- | オラクルのOracle WebCenter Sites Support Toolsにおけるアクセス制御に関する脆弱性 New |
CWE-284 CWE-noinfo |
CVE-2026-46797 | 2026-06-22 11:54 | 2026-06-17 | Show | GitHub Exploit DB Packet Storm | |
| 406 | 10 |
緊急
Network |
- | オラクルのOracle WebCenter Sites Support Toolsにおける重要な機能に対する認証の欠如に関する脆弱性 New |
CWE-306 CWE-noinfo |
CVE-2026-46798 | 2026-06-22 11:54 | 2026-06-17 | Show | GitHub Exploit DB Packet Storm | |
| 407 | 9.8 |
緊急
Network |
- | オラクルのOracle WebCenter Sites Support Toolsにおける重要な機能に対する認証の欠如に関する脆弱性 New |
CWE-306 CWE-noinfo |
CVE-2026-46799 | 2026-06-22 11:54 | 2026-06-17 | Show | GitHub Exploit DB Packet Storm | |
| 408 | 10 |
緊急
Network |
- | オラクルのOracle WebCenter Sites Support Toolsにおける重要な機能に対する認証の欠如に関する脆弱性 New |
CWE-306 CWE-noinfo |
CVE-2026-46800 | 2026-06-22 11:54 | 2026-06-17 | Show | GitHub Exploit DB Packet Storm | |
| 409 | 9.8 |
緊急
Network |
- | オラクルのOracle WebCenter Sites Support Toolsにおける重要な機能に対する認証の欠如に関する脆弱性 New |
CWE-306 CWE-noinfo |
CVE-2026-46801 | 2026-06-22 11:54 | 2026-06-17 | Show | GitHub Exploit DB Packet Storm | |
| 410 | 9.9 |
緊急
Network |
オラクル | Oracle WebCenter Portal | オラクルのOracle WebCenter Portalにおけるアクセス制御に関する脆弱性 New |
CWE-284
不適切なアクセス制御 |
CVE-2026-46802 | 2026-06-22 11:54 | 2026-06-17 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 25, 2026, 4:04 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 257021 | 7.5 |
HIGH
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus thunderbird | A buffer overflow vulnerability while parsing "application/http-index-format" format content when the header contains improperly formatted data. This allows for an out-of-bounds read of data from mem… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-5444 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 257022 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus thunderbird | A use-after-free vulnerability during XSLT processing due to a failure to propagate error conditions during matching while evaluating context, leading to objects being used when they no longer exist.… |
CWE-416
Use After Free |
CVE-2017-5440 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 257023 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus firefox thu… |
A use-after-free vulnerability during XSLT processing due to poor handling of template parameters. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Fire… |
CWE-416
Use After Free |
CVE-2017-5439 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 257024 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus thunderbird | A use-after-free vulnerability during XSLT processing due to the result handler being held by a freed handler during handling. This results in a potentially exploitable crash. This vulnerability affe… |
CWE-416
Use After Free |
CVE-2017-5438 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 257025 | 8.8 |
HIGH
Network |
debian redhat sil mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus graphite2 t… |
An out-of-bounds write in the Graphite 2 library triggered with a maliciously crafted Graphite font. This results in a potentially exploitable crash. This issue was fixed in the Graphite 2 library as… |
CWE-787
Out-of-bounds Write |
CVE-2017-5436 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 257026 | 9.8 |
CRITICAL
Network |
redhat debian mozilla |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server debian_linux thunderbird firefox firefox_esr |
A use-after-free vulnerability occurs when redirecting focus handling which results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR … |
CWE-416
Use After Free |
CVE-2017-5434 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 257027 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus firefox thu… |
A use-after-free vulnerability occurs during certain text input selection resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR … |
CWE-416
Use After Free |
CVE-2017-5432 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 257028 | 9.8 |
CRITICAL
Network |
redhat mozilla |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server firefox_esr thunderbird firefox |
Memory safety bugs were reported in Firefox 52, Firefox ESR 52, and Thunderbird 52. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these c… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-5430 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 257029 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus firefox thu… |
A use-after-free vulnerability occurs during transaction processing in the editor during design mode interactions. This results in a potentially exploitable crash. This vulnerability affects Thunderb… |
CWE-416
Use After Free |
CVE-2017-5435 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 257030 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus thunderbird | A use-after-free vulnerability in SMIL animation functions occurs when pointers to animation elements in an array are dropped from the animation controller while still in use. This results in a poten… |
CWE-416
Use After Free |
CVE-2017-5433 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |