Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
91 5.1 警告
Local
ImageMagick ImageMagick ImageMagickにおける複数の脆弱性 New CWE-125
CWE-129
CVE-2026-45624 2026-06-12 14:49 2026-06-10 Show GitHub Exploit DB Packet Storm
92 8.1 重要
Network
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft&n…
Windows UPnP デバイス ホストのリモートでコードが実行される脆弱性 New CWE-416
CWE-843
CVE-2026-45635 2026-06-12 14:49 2026-06-9 Show GitHub Exploit DB Packet Storm
93 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft&n…
Windows NTFS のリモートでコードが実行される脆弱性 New CWE-122
CWE-20
CVE-2026-45636 2026-06-12 14:49 2026-06-9 Show GitHub Exploit DB Packet Storm
94 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2019
Microsoft Windows 11 26h1
Microsoft …
Microsoft DWM Core ライブラリの特権の昇格の脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-45637 2026-06-12 14:49 2026-06-9 Show GitHub Exploit DB Packet Storm
95 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft&n…
WinSock 用 Windows Ancillary Function Driver の特権の昇格の脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-45638 2026-06-12 14:49 2026-06-9 Show GitHub Exploit DB Packet Storm
96 7 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows 11 26h1
Microsoft Windows 11 24h2
Microsoft Wind…
Windows Bluetooth ポート ドライバーの特権昇格の脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-45640 2026-06-12 14:49 2026-06-9 Show GitHub Exploit DB Packet Storm
97 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows 11 26h1
Microsoft Windows 11 24h2
Microsoft Wind…
Windows Hyper-V のリモートでコードが実行される脆弱性 New CWE-125
CWE-843
CVE-2026-45641 2026-06-12 14:49 2026-06-9 Show GitHub Exploit DB Packet Storm
98 3.9
Physics
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft&n…
Microsoft Azure 構成証明サービスとデバイス正常性構成証明サービスのなりすましの脆弱性 New CWE-20
不適切な入力確認
CVE-2026-45642 2026-06-12 14:49 2026-06-9 Show GitHub Exploit DB Packet Storm
99 8.8 重要
Network
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows Server 2022
Windows Active Directory ドメイン サービス のリモートでコードが実行される脆弱性 New CWE-121
スタックオーバーフロー
CVE-2026-45648 2026-06-12 14:49 2026-06-9 Show GitHub Exploit DB Packet Storm
100 7 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft&n…
Windows カーネルの特権の昇格の脆弱性 New CWE-122
CWE-416
CVE-2026-45653 2026-06-12 14:49 2026-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310211 - gnome tomboy The (1) tomboy and (2) tomboy-panel scripts in GNOME Tomboy 1.5.2 and earlier place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse… CWE-94
Code Injection
CVE-2010-4005 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310212 - gromacs gromacs GMXRC.bash in Gromacs 4.5.1 and earlier places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current workin… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-4001 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310213 - gnome gnome-shell gnome-shell in GNOME Shell 2.31.5 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working dire… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-4000 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310214 - banshee-project banshee The (1) banshee-1 and (2) muinshee scripts in Banshee 1.8.0 and earlier place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse share… NVD-CWE-Other
CVE-2010-3998 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310215 - adobe shockwave_player Use-after-free vulnerability in an unspecified compatibility component in Adobe Shockwave Player before 11.5.9.620 allows user-assisted remote attackers to execute arbitrary code via a crafted web si… CWE-399
 Resource Management Errors
CVE-2010-4092 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310216 - onlinetechtools.com oasys_professional SQL injection vulnerability in process.asp in OnlineTechTools Online Work Order System (OWOS) Professional Edition 2.10 allows remote attackers to execute arbitrary SQL commands via the password para… CWE-89
SQL Injection
CVE-2010-4186 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310217 - energine energine SQL injection vulnerability in index.php in Energine, possibly 2.3.8 and earlier, allows remote attackers to execute arbitrary SQL commands via the NRGNSID cookie. CWE-89
SQL Injection
CVE-2010-4185 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310218 - netsupportsoftware netsupport_manager NetSupport Manager (NSM) before 11.00.0005 sends HTTP headers with cleartext fields containing details about client machines, which allows remote attackers to obtain potentially sensitive information… CWE-310
Cryptographic Issues
CVE-2010-4184 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310219 - htmlpurifier htmlpurifier Multiple cross-site scripting (XSS) vulnerabilities in HTML Purifier before 4.1.0, when Internet Explorer is used, allow remote attackers to inject arbitrary web script or HTML via a crafted (1) back… CWE-79
Cross-site Scripting
CVE-2010-4183 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310220 - gnucash gnucash gnc-test-env in GnuCash 2.3.15 and earlier places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current wor… NVD-CWE-Other
CVE-2010-3999 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm