Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
81 9.1 緊急
Network
MessagePack MessagePack MessagePackにおけるリソースの安全ではないデフォルト値への初期化に関する脆弱性 New CWE-1188
リソースの安全ではないデフォルト値への初期化
CVE-2026-48509 2026-06-26 11:57 2026-06-22 Show GitHub Exploit DB Packet Storm
82 7.5 重要
Network
MessagePack MessagePack MessagePackにおける複数の脆弱性 New CWE-409
CWE-770
CVE-2026-48510 2026-06-26 11:57 2026-06-22 Show GitHub Exploit DB Packet Storm
83 7.5 重要
Network
MessagePack MessagePack MessagePackにおけるアルゴリズムの複雑さに関する脆弱性 New CWE-407
アルゴリズムの複雑性
CVE-2026-48511 2026-06-26 11:57 2026-06-22 Show GitHub Exploit DB Packet Storm
84 7.5 重要
Network
MessagePack MessagePack MessagePackにおける再帰制御に関する脆弱性 New CWE-674
不適切な再帰制御
CVE-2026-48512 2026-06-26 11:57 2026-06-22 Show GitHub Exploit DB Packet Storm
85 7.5 重要
Network
MessagePack MessagePack MessagePackにおける再帰制御に関する脆弱性 New CWE-674
不適切な再帰制御
CVE-2026-48513 2026-06-26 11:57 2026-06-22 Show GitHub Exploit DB Packet Storm
86 7.5 重要
Network
MessagePack MessagePack MessagePackにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 New CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-48514 2026-06-26 11:57 2026-06-22 Show GitHub Exploit DB Packet Storm
87 7.5 重要
Network
MessagePack MessagePack MessagePackにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 New CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-48515 2026-06-26 11:57 2026-06-22 Show GitHub Exploit DB Packet Storm
88 7.5 重要
Network
MessagePack MessagePack MessagePackにおけるアルゴリズムの複雑さに関する脆弱性 New CWE-407
アルゴリズムの複雑性
CVE-2026-48516 2026-06-26 11:56 2026-06-22 Show GitHub Exploit DB Packet Storm
89 7.5 重要
Network
MessagePack MessagePack MessagePackにおける複数の脆弱性 New CWE-470
CWE-502
CVE-2026-48517 2026-06-26 11:56 2026-06-22 Show GitHub Exploit DB Packet Storm
90 9.6 緊急
Network
マイクロソフト Microsoft Exchange Online Microsoft Exchange Online Elevation of Privilege Vulnerability New CWE-862
認証の欠如
CVE-2026-48582 2026-06-26 11:56 2026-06-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
256981 8.8 HIGH
Network
infor enterprise_asset_management INFOR EAM V11.0 Build 201410 has SQL injection via search fields, related to the filtervalue parameter. CWE-89
SQL Injection
CVE-2017-7952 2024-11-21 12:33 2017-05-16 Show GitHub Exploit DB Packet Storm
256982 7.8 HIGH
Local
google android In function msm_pcm_playback_close() in all Android releases from CAF using the Linux kernel, prtd is assigned substream->runtime->private_data. Later, prtd is freed. However, prtd is not sanitized a… CWE-416
 Use After Free
CVE-2017-8246 2024-11-21 12:33 2017-05-13 Show GitHub Exploit DB Packet Storm
256983 7.8 HIGH
Local
google android In all Android releases from CAF using the Linux kernel, while processing a voice SVC request which is nonstandard by specifying a payload size that will overflow its own declared size, an out of bou… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-8245 2024-11-21 12:33 2017-05-13 Show GitHub Exploit DB Packet Storm
256984 7.0 HIGH
Local
google android In core_info_read and inst_info_read in all Android releases from CAF using the Linux kernel, variable "dbg_buf", "dbg_buf->curr" and "dbg_buf->filled_size" could be modified by different threads at … CWE-362
Race Condition
CVE-2017-8244 2024-11-21 12:33 2017-05-13 Show GitHub Exploit DB Packet Storm
256985 5.5 MEDIUM
Local
conexant mictray64 Conexant Systems mictray64 task, as used on HP Elite, EliteBook, ProBook, and ZBook systems, leaks sensitive data (keystrokes) to any process. In mictray64.exe (mic tray icon) 1.0.0.46, a LowLevelKey… CWE-200
Information Exposure
CVE-2017-8360 2024-11-21 12:33 2017-05-12 Show GitHub Exploit DB Packet Storm
256986 5.5 MEDIUM
Local
schneider-electric vampset All versions of VAMPSET software produced by Schneider Electric, prior to V2.2.189, are susceptible to a memory corruption vulnerability when a corrupted vf2 file is used. This vulnerability causes t… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-7967 2024-11-21 12:33 2017-05-10 Show GitHub Exploit DB Packet Storm
256987 5.5 MEDIUM
Local
ca client_automation The OS Installation Management component in CA Client Automation r12.9, r14.0, and r14.0 SP1 places an encrypted password into a readable local file during operating system installation, which allows… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-8391 2024-11-21 12:33 2017-05-6 Show GitHub Exploit DB Packet Storm
256988 6.1 MEDIUM
Network
accellion file_transfer_appliance An issue was discovered on Accellion FTA devices before FTA_9_12_180. courier/1000@/oauth/playground/callback.html allows XSS with a crafted URI. CWE-79
Cross-site Scripting
CVE-2017-8304 2024-11-21 12:33 2017-05-6 Show GitHub Exploit DB Packet Storm
256989 9.8 CRITICAL
Network
accellion file_transfer_appliance An issue was discovered on Accellion FTA devices before FTA_9_12_180. seos/1000/find.api allows Remote Code Execution with shell metacharacters in the method parameter. CWE-116
 Improper Encoding or Escaping of Output
CVE-2017-8303 2024-11-21 12:33 2017-05-6 Show GitHub Exploit DB Packet Storm
256990 8.8 HIGH
Network
atlassian hipchat_server Atlassian Hipchat Server before 2.2.4 allows remote authenticated users with user level privileges to execute arbitrary code via vectors involving image uploads. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2017-8080 2024-11-21 12:33 2017-05-5 Show GitHub Exploit DB Packet Storm