Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4801 7.3 重要
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-8947 2026-05-21 10:47 2026-05-19 Show GitHub Exploit DB Packet Storm
4802 9.6 緊急
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-8953 2026-05-21 10:47 2026-05-19 Show GitHub Exploit DB Packet Storm
4803 7.5 重要
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-8954 2026-05-21 10:47 2026-05-19 Show GitHub Exploit DB Packet Storm
4804 4.3 警告
Network
シックス・アパート株式会社 Movable Type Premium (Advanced Edition)
Movable Type
Movable Type Advanced
Movable Type Premium
Movable Typeにおける権限チェックの欠如の脆弱性 CWE-Other
その他
CVE-2026-44392 2026-05-20 14:09 2026-05-20 Show GitHub Exploit DB Packet Storm
4805 4.3 警告
Network
Outlook.com Microsoft Edge Chromium Microsoft Edge (Chromium ベース) for Android のスプーフィングの脆弱性 CWE-451
ユーザインターフェースにおける重要情報の誤った表示
CVE-2026-40416 2026-05-20 13:31 2026-05-12 Show GitHub Exploit DB Packet Storm
4806 4.3 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける有効期限後または解放後のリソースの操作に関する脆弱性 CWE-672
有効期限後または解放後のリソースの操作
CVE-2026-4053 2026-05-20 13:31 2026-05-15 Show GitHub Exploit DB Packet Storm
4807 6.5 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける例外的な状態のチェックに関する脆弱性 CWE-754
例外的な状態における不適切なチェック
CVE-2026-4054 2026-05-20 13:31 2026-05-15 Show GitHub Exploit DB Packet Storm
4808 8.2 重要
Network
TheCodingMachine Gotenberg TheCodingMachineのGotenbergにおける複数の脆弱性 CWE-184
CWE-73
CVE-2026-40893 2026-05-20 13:31 2026-05-14 Show GitHub Exploit DB Packet Storm
4809 7.8 重要
Local
George Nachman iTerm2 George NachmanのiTerm2における信頼できない制御領域からの機能の組み込みに関する脆弱性 CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-41253 2026-05-20 13:31 2026-04-18 Show GitHub Exploit DB Packet Storm
4810 8.2 重要
Network
Quantum Nous New API Quantum NousのNew APIにおける複数の脆弱性 CWE-1188
CWE-345
CWE-863
CVE-2026-41432 2026-05-20 13:31 2026-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 29, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3581 7.8 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2016
windows_server_2019
w…
Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally. CWE-125
Out-of-bounds Read
CVE-2026-45607 2026-06-12 03:37 2026-06-10 Show GitHub Exploit DB Packet Storm
3582 7.8 HIGH
Local
microsoft 365_apps
microsoft_365
office_2021
office_2024
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally. CWE-416
 Use After Free
CVE-2026-45486 2026-06-12 03:37 2026-06-10 Show GitHub Exploit DB Packet Storm
3583 7.8 HIGH
Local
microsoft 365_apps
microsoft_365
office_2021
office_2024
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally. CWE-822
 Untrusted Pointer Dereference
CVE-2026-45643 2026-06-12 03:37 2026-06-10 Show GitHub Exploit DB Packet Storm
3584 7.8 HIGH
Local
x.org
redhat
x_server
xwayland
enterprise_linux
A use-after-free flaw was found in the X.Org X server and Xwayland in FreeCounter(). A client that sets up multiple SyncCounters and awaits on those triggers can trigger a use-after-free when destroy… CWE-416
 Use After Free
CVE-2026-50260 2026-06-12 03:36 2026-06-5 Show GitHub Exploit DB Packet Storm
3585 8.4 HIGH
Local
microsoft office_2024 Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. CWE-122
Heap-based Buffer Overflow
CVE-2026-47635 2026-06-12 03:36 2026-06-10 Show GitHub Exploit DB Packet Storm
3586 8.1 HIGH
Network
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Use after free in Universal Plug and Play (upnp.dll) allows an unauthorized attacker to execute code over a network. CWE-843
CWE-416
Type Confusion
 Use After Free
CVE-2026-45635 2026-06-12 03:36 2026-06-10 Show GitHub Exploit DB Packet Storm
3587 7.8 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. CWE-20
CWE-122
 Improper Input Validation 
Heap-based Buffer Overflow
CVE-2026-45636 2026-06-12 03:33 2026-06-10 Show GitHub Exploit DB Packet Storm
3588 6.5 MEDIUM
Adjacent
lldpd_project lldpd lldpd is an implementation of IEEE 802.1ab (LLDP). Prior to version 1.0.22, lldpd_decode() in src/daemon/lldpd.c strips 802.1Q VLAN tags from received Ethernet frames by calling memmove() to shift th… CWE-125
Out-of-bounds Read
CVE-2026-46433 2026-06-12 03:29 2026-06-10 Show GitHub Exploit DB Packet Storm
3589 7.8 HIGH
Local
microsoft windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2019
windows_server_2022
windows_server_2025
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. CWE-416
 Use After Free
CVE-2026-45637 2026-06-12 03:24 2026-06-10 Show GitHub Exploit DB Packet Storm
3590 7.8 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. CWE-122
Heap-based Buffer Overflow
CVE-2026-45638 2026-06-12 03:23 2026-06-10 Show GitHub Exploit DB Packet Storm