Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
133251 7.8 重要
Local
マイクロソフト Microsoft Windows 8.1
Microsoft Windows Server 2008
Microsoft Windows Server 2019
Microsoft Windows 10
Microsoft Windows Server…
複数の Microsoft Windows 製品におけるリモートでコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2021-40444 2021-09-29 15:42 2021-09-7 Show GitHub Exploit DB Packet Storm
133252 5.4 警告
Network
マイクロソフト Microsoft Dynamics 365 Microsoft Dynamics 365 Business Central におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-40440 2021-09-29 15:42 2021-09-14 Show GitHub Exploit DB Packet Storm
133253 7.8 重要
Local
マイクロソフト Microsoft Windows 8.1
Microsoft Windows Server 2008
Microsoft Windows Server 2019
Microsoft Windows 10
Microsoft Windows Server…
複数の Microsoft Windows 製品における権限を昇格される脆弱性 CWE-269
不適切な権限管理
CVE-2021-38671 2021-09-29 15:42 2021-09-14 Show GitHub Exploit DB Packet Storm
133254 7.8 重要
Local
マイクロソフト Microsoft Windows 8.1
Microsoft Windows Server 2008
Microsoft Windows Server 2019
Microsoft Windows 10
Microsoft Windows Server…
複数の Microsoft Windows 製品における権限を昇格される脆弱性 CWE-269
不適切な権限管理
CVE-2021-38667 2021-09-29 15:42 2021-09-14 Show GitHub Exploit DB Packet Storm
133255 7.8 重要
Local
マイクロソフト HEVC ビデオ拡張機能 HEVC ビデオ拡張機能におけるリモートでコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2021-38661 2021-09-29 15:42 2021-09-14 Show GitHub Exploit DB Packet Storm
133256 7.8 重要
Local
マイクロソフト Microsoft Excel Microsoft Excel におけるリモートでコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2021-38660 2021-09-29 15:41 2021-09-14 Show GitHub Exploit DB Packet Storm
133257 7.8 重要
Local
マイクロソフト Microsoft 365 Apps Microsoft 365 Apps におけるリモートでコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2021-38659 2021-09-29 15:41 2021-09-14 Show GitHub Exploit DB Packet Storm
133258 8 重要
Network
Jenkins プロジェクト Jenkins Jenkins における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2021-21605 2021-09-29 15:31 2021-01-13 Show GitHub Exploit DB Packet Storm
133259 5.5 警告
Local
Jenkins プロジェクト Jenkins TraceTronic ECU-TEST Jenkins TraceTronic ECU-TEST プラグインにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2021-21612 2021-09-29 15:22 2021-01-13 Show GitHub Exploit DB Packet Storm
133260 7.5 重要
Network
Apache Software Foundation
Fedora Project
Fedora
Apache HTTP Server
Apache HTTP Server における mod_proxy_uwsgi が割り当てられたメモリを超えて読み取られる脆弱性 CWE-125
境界外読み取り
CVE-2021-36160 2021-09-29 15:16 2021-09-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221 6.5 MEDIUM
Network
google chrome Inappropriate implementation in Printing in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. … Update CWE-20
 Improper Input Validation 
CVE-2026-11093 2026-06-9 00:51 2026-06-5 Show GitHub Exploit DB Packet Storm
222 9.6 CRITICAL
Network
google chrome Use after free in Codecs in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HT… Update CWE-416
 Use After Free
CVE-2026-11094 2026-06-9 00:51 2026-06-5 Show GitHub Exploit DB Packet Storm
223 9.9 CRITICAL
Network
termix termix Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Prior to version 2.3.2, the GET /ssh/file_manager/ssh/resolvePath endpoint in Termix is v… Update CWE-78
OS Command 
CVE-2026-45744 2026-06-9 00:25 2026-06-6 Show GitHub Exploit DB Packet Storm
224 9.6 CRITICAL
Network
guardrailsai guardrails_ai Guardrails AI is a Python framework that helps build AI applications. On May 11, 2026 at approximately 6:00 PM Pacific, an attacker published a malicious version of `guardrails-ai` (0.10.1) to PyPI. … New CWE-506
 Embedded Malicious Code
CVE-2026-45758 2026-06-9 00:22 2026-06-6 Show GitHub Exploit DB Packet Storm
225 7.8 HIGH
Local
bitdefender napoca Bitdefender Napoca bare-metal hypervisor contains an out-of-bounds write vulnerability in the BIOS INT 0x15 / E820 memory map handler, implemented in napoca/guests/bios_handlers.c. The handler comput… Update CWE-787
 Out-of-bounds Write
CVE-2026-10046 2026-06-9 00:18 2026-06-3 Show GitHub Exploit DB Packet Storm
226 7.8 HIGH
Local
bitdefender napoca The Bitdefender Napoca bare-metal hypervisor contains an out-of-bounds write vulnerability in the real-mode hook handler, implemented in napoca/kernel/handler.c. The handler uses a guest-controlled S… Update CWE-787
 Out-of-bounds Write
CVE-2026-10047 2026-06-9 00:17 2026-06-3 Show GitHub Exploit DB Packet Storm
227 5.8 MEDIUM
Network
- - On affected platforms running Arista EOS where a tunnel decapsulation configuration—such as VXLAN (Virtual Extensible LAN), decap-groups, or a GRE (Generic Routing Encapsulation) tunnel interface—is … Update CWE-1023
 Incomplete Comparison with Missing Factors
CVE-2026-7473 2026-06-9 00:16 2026-06-6 Show GitHub Exploit DB Packet Storm
228 7.0 HIGH
Local
- - Rejected reason: This CVE ID was assigned as a duplicate of CVE-2026-50292 Update - CVE-2026-50265 2026-06-9 00:16 2026-06-5 Show GitHub Exploit DB Packet Storm
229 - - - When Routinator encounters a file via RRDP using a specifically crafted Document Type Definition, Routinator crashes. New CWE-755
 Improper Handling of Exceptional Conditions
CVE-2026-49235 2026-06-9 00:16 2026-06-9 Show GitHub Exploit DB Packet Storm
230 - - - When sending a specifically crafted non-UTF-8 string as select-asn query parameter to the /api/v1/origins endpoint, Routinator crashes. This only affects users who allow API access from untrusted n… New CWE-20
 Improper Input Validation 
CVE-2026-49234 2026-06-9 00:16 2026-06-9 Show GitHub Exploit DB Packet Storm