Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 4:07 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
781 7.5 重要
Network
Shopify remix-run/server-runtime
React Router
ShopifyのReact Router等の複数製品におけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-42342 2026-06-8 11:48 2026-06-2 Show GitHub Exploit DB Packet Storm
782 5.3 警告
Network
forms project forms NextcloudのFormsにおける外部からアクセス可能なファイルまたはディレクトリに関する脆弱性 New CWE-552
外部からアクセス可能なファイルまたはディレクトリ
CVE-2026-45543 2026-06-8 11:48 2026-06-1 Show GitHub Exploit DB Packet Storm
783 8.1 重要
Network
Get-hermes Hermes Web UI Get-hermesのHermes Web UIにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-6832 2026-06-8 11:48 2026-04-21 Show GitHub Exploit DB Packet Storm
784 8.8 重要
Network
radare Radare2 MCP Server radareのRadare2 MCP ServerにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-6942 2026-06-8 11:48 2026-04-23 Show GitHub Exploit DB Packet Storm
785 7.3 重要
Network
Securly, Inc. Securly Securly, Inc.のSecurlyにおけるハードコードされた認証情報の使用に関する脆弱性 New CWE-798
ハードコードされた認証情報の使用
CVE-2026-8876 2026-06-8 11:48 2026-06-3 Show GitHub Exploit DB Packet Storm
786 7.5 重要
Network
Securly, Inc. Securly Securly, Inc.のSecurlyにおける暗号強度に関する脆弱性 New CWE-326
不適切な暗号強度
CVE-2026-8878 2026-06-8 11:48 2026-06-3 Show GitHub Exploit DB Packet Storm
787 7.5 重要
Network
Securly, Inc. Securly Securly, Inc.のSecurlyにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 New CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-8879 2026-06-8 11:48 2026-06-3 Show GitHub Exploit DB Packet Storm
788 7.8 重要
Local
Amazon.com, Inc. Kiro CLI Amazon.com, Inc.のKiro CLIにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-9255 2026-06-8 11:48 2026-05-22 Show GitHub Exploit DB Packet Storm
789 9.9 緊急
Network
Flowintel Flowintel Flowintelにおけるサーバサイドのリクエストフォージェリの脆弱性 New CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-9813 2026-06-8 11:48 2026-05-28 Show GitHub Exploit DB Packet Storm
790 7.8 重要
Local
huggingface transformers huggingfaceのtransformersにおける複数の脆弱性 New CWE-1066
CWE-502
CVE-2026-4372 2026-06-8 11:48 2026-05-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
151 7.9 HIGH
Local
- - Protection mechanism failure in Windows Boot Manager allows an authorized attacker to bypass a security feature locally. New CWE-693
 Protection Mechanism Failure
CVE-2026-47656 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
152 7.5 HIGH
Network
- - Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. New CWE-416
 Use After Free
CVE-2026-47654 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
153 8.8 HIGH
Network
- - Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. New CWE-416
 Use After Free
CVE-2026-47653 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
154 8.2 HIGH
Local
- - Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally. New CWE-122
Heap-based Buffer Overflow
CVE-2026-47652 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
155 7.0 HIGH
Local
- - Untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally. New CWE-426
 Untrusted Search Path
CVE-2026-47648 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
156 9.8 CRITICAL
Network
- - External control of file name or path in Azure Stack Edge allows an unauthorized attacker to execute code over a network. New CWE-73
 External Control of File Name or Path
CVE-2026-47643 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
157 4.6 MEDIUM
Network
- - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. New CWE-20
 Improper Input Validation 
CVE-2026-47641 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
158 4.6 MEDIUM
Network
- - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. New CWE-79
Cross-site Scripting
CVE-2026-47640 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
159 5.4 MEDIUM
Network
- - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. New CWE-79
Cross-site Scripting
CVE-2026-47639 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm
160 4.6 MEDIUM
Network
- - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. New CWE-79
Cross-site Scripting
CVE-2026-47638 2026-06-10 02:17 2026-06-10 Show GitHub Exploit DB Packet Storm