Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5561 4.8 警告
Network
D-Link Systems, Inc. DSL-2740R ファームウェア D-Link CorporationのDSL-2740R ファームウェアにおける複数の脆弱性 CWE-79
CWE-94
CVE-2026-7027 2026-05-1 10:41 2026-04-26 Show GitHub Exploit DB Packet Storm
5562 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. FH1202 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のFH1202 ファームウェアにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-7034 2026-05-1 10:41 2026-04-26 Show GitHub Exploit DB Packet Storm
5563 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. FH1202 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のFH1202 ファームウェアにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-7035 2026-05-1 10:41 2026-04-26 Show GitHub Exploit DB Packet Storm
5564 9.8 緊急
Network
Shenzhen Tenda Technology Co.,Ltd. i9 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のi9 ファームウェアにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-7036 2026-05-1 10:41 2026-04-26 Show GitHub Exploit DB Packet Storm
5565 7.3 重要
Network
D-Link Systems, Inc. DIR-822 ファームウェア D-Link CorporationのDIR-822 ファームウェアにおける複数の脆弱性 CWE-74
CWE-77
CVE-2026-7067 2026-05-1 10:41 2026-04-27 Show GitHub Exploit DB Packet Storm
5566 8.8 重要
Adjacent
ディーリンクジャパン株式会社 dir-825 ファームウェア D-Link CorporationのDIR-825 ファームウェアにおける複数の脆弱性 CWE-119
CWE-120
CVE-2026-7068 2026-05-1 10:41 2026-04-27 Show GitHub Exploit DB Packet Storm
5567 8 重要
Adjacent
ディーリンクジャパン株式会社 dir-825 ファームウェア D-Link CorporationのDIR-825 ファームウェアにおける複数の脆弱性 CWE-119
CWE-120
CVE-2026-7069 2026-05-1 10:41 2026-04-27 Show GitHub Exploit DB Packet Storm
5568 6.1 警告
Local
Artifex Software MuPDF Artifex SoftwareのMuPDFにおける複数の脆弱性 CWE-119
CWE-125
CVE-2026-7233 2026-05-1 10:41 2026-04-28 Show GitHub Exploit DB Packet Storm
5569 7.2 重要
Network
D-Link Systems, Inc. di-8100 ファームウェア D-Link Corporationのdi-8100 ファームウェアにおける複数の脆弱性 CWE-119
CWE-120
CVE-2026-7247 2026-05-1 10:41 2026-04-28 Show GitHub Exploit DB Packet Storm
5570 9.4 緊急
Network
D-Link Systems, Inc. di-8100 ファームウェア D-Link Corporationのdi-8100 ファームウェアにおける複数の脆弱性 CWE-119
CWE-120
CVE-2026-7248 2026-05-1 10:41 2026-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1131 7.8 HIGH
Local
microsoft windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2019
windows_server_2022
windows_server_2025
Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges locally. CWE-126
 Buffer Over-read
CVE-2026-42828 2026-06-11 04:56 2026-06-10 Show GitHub Exploit DB Packet Storm
1132 5.5 MEDIUM
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Exposure of sensitive information to an unauthorized actor in Windows Hyper-V allows an authorized attacker to disclose information locally. CWE-200
Information Exposure
CVE-2026-42972 2026-06-11 04:55 2026-06-10 Show GitHub Exploit DB Packet Storm
1133 5.5 MEDIUM
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2016
windows_server_2019
w…
Use of uninitialized resource in Windows Push Notifications allows an authorized attacker to disclose information locally. CWE-200
Information Exposure
CVE-2026-42973 2026-06-11 04:54 2026-06-10 Show GitHub Exploit DB Packet Storm
1134 8.1 HIGH
Network
microsoft windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2022
windows_server_2025
Integer underflow (wrap or wraparound) in Windows Performance Monitor allows an unauthorized attacker to execute code over a network. CWE-190
 Integer Overflow or Wraparound
CVE-2026-42974 2026-06-11 04:53 2026-06-10 Show GitHub Exploit DB Packet Storm
1135 7.8 HIGH
Local
microsoft windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2019
windows_server_2022
windows_server_2025
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally. CWE-362
Race Condition
CVE-2026-42977 2026-06-11 04:49 2026-06-10 Show GitHub Exploit DB Packet Storm
1136 6.5 MEDIUM
Network
- - A bug in query analysis processing of the $vectorSearch aggregation stage for Queryable Encryption (QE) or Client-Side Field Level Encryption (CSFLE) results in literal values for encrypted fields w… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2026-9741 2026-06-11 04:43 2026-06-10 Show GitHub Exploit DB Packet Storm
1137 7.5 HIGH
Network
- - When OIDC authentication is enabled in configuration, clients may set specific values in the "mechanism" parameter of the "authenticate" command that lead to server crash. The authenticate command is… CWE-1287
 Improper Validation of Specified Type of Input
CVE-2026-9742 2026-06-11 04:43 2026-06-10 Show GitHub Exploit DB Packet Storm
1138 6.5 MEDIUM
Network
- - When using $changestreams and $_requestReshardingResumeToken with the exchange option the server hits an invariant which causes the server to crash. There are no special privileges needed. The user m… CWE-617
 Reachable Assertion
CVE-2026-9746 2026-06-11 04:43 2026-06-10 Show GitHub Exploit DB Packet Storm
1139 6.5 MEDIUM
Network
- - This issue can occur when running an aggregation pipeline that uses the internal $exchange stage configured with key-range partitioning and order-preserving delivery. If a single key range produces e… CWE-617
 Reachable Assertion
CVE-2026-9749 2026-06-11 04:43 2026-06-10 Show GitHub Exploit DB Packet Storm
1140 6.5 MEDIUM
Network
- - An authorized user could trigger a server crash by running a query with a 2dsphere index on a field that stores a GeoJSON GeometryCollection containing a Polygon with a strict-winding CRS. Strict-wi… CWE-476
 NULL Pointer Dereference
CVE-2026-9752 2026-06-11 04:43 2026-06-10 Show GitHub Exploit DB Packet Storm