Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
991 9.8 緊急
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおける複数の脆弱性 CWE-122
CWE-131
CVE-2026-49841 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
992 7.5 重要
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-49842 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
993 5.3 警告
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-49843 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
994 7.5 重要
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-49847 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
995 4.3 警告
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-49848 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
996 7.5 重要
Network
Apache Software Foundation
Debian
F5 Networks
Apache HTTP Server
nginx
Debian GNU/Linux
Apache Software Foundation等の複数ベンダの製品における過剰なサイズ値のメモリ割り当てに関する脆弱性 CWE-789
過剰なサイズ値のメモリ割り当て
CVE-2026-49975 2026-06-11 16:15 2026-06-8 Show GitHub Exploit DB Packet Storm
997 6.8 警告
Physics
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2012
Microsoft Windows 11 24h2
Microsoft Windows 10 21h2
Microsoft Wind…
Windows BitLocker セキュリティ機能バイパスの脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-50507 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
998 9.1 緊急
Network
BINARY DataDog::DogStatsd BINARYのDataDog::DogStatsdにおける複数の脆弱性 CWE-150
CWE-93
CVE-2026-46719
CVE-2026-46720
CVE-2026-46741
CVE-2026-9270
2026-06-11 16:15 2026-06-5 Show GitHub Exploit DB Packet Storm
999 9.8 緊急
Network
BINARY DataDog::DogStatsd BINARYのDataDog::DogStatsdにおける複数の脆弱性 CWE-150
CWE-93
CVE-2026-11362
CVE-2026-46719
CVE-2026-46720
CVE-2026-46741
2026-06-11 16:15 2026-06-5 Show GitHub Exploit DB Packet Storm
1000 7.8 重要
Local
Synology Inc. Active Backup for Business Recovery Media Creator Synology Inc.のActive Backup for Business Recovery Media Creatorにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2022-49036 2026-06-11 16:14 2026-06-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
255831 6.1 MEDIUM
Network
yii_software yii Reflected Cross-site scripting (XSS) vulnerability in Yii Framework before 2.0.11, when development mode is used, allows remote attackers to inject arbitrary web script or HTML via crafted request da… CWE-79
Cross-site Scripting
CVE-2017-7271 2024-11-21 12:31 2017-03-28 Show GitHub Exploit DB Packet Storm
255832 9.8 CRITICAL
Network
irssi irssi The netjoin processing in Irssi 1.x before 1.0.2 allows attackers to cause a denial of service (use-after-free) and possibly execute arbitrary code via unspecified vectors. CWE-416
 Use After Free
CVE-2017-7191 2024-11-21 12:31 2017-03-28 Show GitHub Exploit DB Packet Storm
255833 7.5 HIGH
Network
extraputty extraputty The TFTP server in ExtraPuTTY 0.30 and earlier allows remote attackers to cause a denial of service (crash) via a large (1) read or (2) write TFTP protocol message. CWE-20
 Improper Input Validation 
CVE-2017-7183 2024-11-21 12:31 2017-03-28 Show GitHub Exploit DB Packet Storm
255834 6.1 MEDIUM
Network
netflix security_monkey Netflix Security Monkey before 0.8.0 has an Open Redirect. The logout functionality accepted the "next" parameter which then redirects to any domain irrespective of the Host header. CWE-601
Open Redirect
CVE-2017-7266 2024-11-21 12:31 2017-03-26 Show GitHub Exploit DB Packet Storm
255835 7.8 HIGH
Local
artifex mupdf Use-after-free vulnerability in the fz_subsample_pixmap function in fitz/pixmap.c in Artifex MuPDF 1.10a allows remote attackers to cause a denial of service (application crash) or possibly have unsp… CWE-416
 Use After Free
CVE-2017-7264 2024-11-21 12:31 2017-03-26 Show GitHub Exploit DB Packet Storm
255836 7.8 HIGH
Local
potrace_project potrace The bm_readbody_bmp function in bitmap_io.c in Potrace 1.14 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other… CWE-125
Out-of-bounds Read
CVE-2017-7263 2024-11-21 12:31 2017-03-26 Show GitHub Exploit DB Packet Storm
255837 5.5 MEDIUM
Local
amd ryzen The AMD Ryzen processor with AGESA microcode through 2017-01-27 allows local users to cause a denial of service (system hang) via an application that makes a long series of FMA3 instructions, as demo… CWE-20
 Improper Input Validation 
CVE-2017-7262 2024-11-21 12:31 2017-03-25 Show GitHub Exploit DB Packet Storm
255838 5.5 MEDIUM
Local
linux linux_kernel The vmw_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.10.5 does not check for a zero value of certain levels data, which allows local users to… CWE-20
 Improper Input Validation 
CVE-2017-7261 2024-11-21 12:31 2017-03-25 Show GitHub Exploit DB Packet Storm
255839 5.4 MEDIUM
Network
cmsmadesimple cms_made_simple XSS exists in the CMS Made Simple (CMSMS) 2.1.6 "Content-->News-->Add Article" feature via the m1_content parameter. Someone must login to conduct the attack. CWE-79
Cross-site Scripting
CVE-2017-7257 2024-11-21 12:31 2017-03-25 Show GitHub Exploit DB Packet Storm
255840 5.4 MEDIUM
Network
cmsmadesimple cms_made_simple XSS exists in the CMS Made Simple (CMSMS) 2.1.6 "Content-->News-->Add Article" feature via the m1_summary parameter. Someone must login to conduct the attack. CWE-79
Cross-site Scripting
CVE-2017-7256 2024-11-21 12:31 2017-03-25 Show GitHub Exploit DB Packet Storm