Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
133291 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 7
Microsoft Windows 11
Microsoft Windows Server 2008
Microsoft Windows Server&n…
複数の Microsoft Windows 製品における権限を昇格される脆弱性 CWE-269
不適切な権限管理
CVE-2021-26442 2021-10-22 13:46 2021-10-12 Show GitHub Exploit DB Packet Storm
133292 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows RT …
複数の Microsoft Windows 製品における権限を昇格される脆弱性 CWE-269
不適切な権限管理
CVE-2021-26441 2021-10-22 13:46 2021-10-12 Show GitHub Exploit DB Packet Storm
133293 9.6 緊急
Adjacent
マイクロソフト Microsoft Exchange Server Microsoft Exchange Server におけるリモートでコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2021-26427 2021-10-22 13:46 2021-10-12 Show GitHub Exploit DB Packet Storm
133294 7.8 重要
Local
マイクロソフト Microsoft Windows Server
Microsoft Windows 10
Microsoft Windows 10 および Windows Server におけるセキュリティ機能を回避される脆弱性 CWE-noinfo
情報不足
CVE-2021-41346 2021-10-22 13:44 2021-10-12 Show GitHub Exploit DB Packet Storm
133295 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows RT …
複数の Microsoft Windows 製品における権限を昇格される脆弱性 CWE-269
不適切な権限管理
CVE-2021-41345 2021-10-22 13:44 2021-10-12 Show GitHub Exploit DB Packet Storm
133296 8.8 重要
Network
マイクロソフト Microsoft SharePoint Server
Microsoft SharePoint Foundation
Microsoft SharePoint Enterprise Server
Microsoft SharePoint におけるリモートでコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2021-41344 2021-10-22 13:44 2021-10-12 Show GitHub Exploit DB Packet Storm
133297 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 7
Microsoft Windows 11
Microsoft Windows Server 2008
Microsoft Windows Server&n…
複数の Microsoft Windows 製品における情報を公開される脆弱性 CWE-noinfo
情報不足
CVE-2021-41343 2021-10-22 13:44 2021-10-12 Show GitHub Exploit DB Packet Storm
133298 8.8 重要
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 7
Microsoft Windows 11
Microsoft Windows Server 2008
Microsoft Windows Server&n…
複数の Microsoft Windows 製品におけるリモートでコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2021-41342 2021-10-22 13:44 2021-10-12 Show GitHub Exploit DB Packet Storm
133299 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 7
Microsoft Windows 11
Microsoft Windows Server 2008
Microsoft Windows Server&n…
複数の Microsoft Windows 製品におけるリモートでコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2021-41340 2021-10-22 13:44 2021-10-12 Show GitHub Exploit DB Packet Storm
133300 7.8 重要
Local
マイクロソフト Microsoft Windows Server
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows 11
複数の Microsoft Windows 製品における権限を昇格される脆弱性 CWE-269
不適切な権限管理
CVE-2021-41339 2021-10-22 13:44 2021-10-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
721 - - - Snappy is a PHP library allowing thumbnail, snapshot or PDF generation from a url or a html page. Prior to version 1.7.1, on POSIX, escapeshellarg(‘/usr/bin/wkhtmltopdf’) returns the literal string ‘… CWE-78
OS Command 
CVE-2026-46643 2026-06-12 02:16 2026-06-11 Show GitHub Exploit DB Packet Storm
722 7.5 HIGH
Network
- - JavaScript Cookie is a JavaScript API for handling cookies, client-side. Prior to version 3.0.7, js-cookie's internal assign() helper copies properties with for...in + plain assignment. When the sour… CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2026-46625 2026-06-12 02:16 2026-06-11 Show GitHub Exploit DB Packet Storm
723 7.5 HIGH
Network
- - libp2p is a JavaScript Implementation of libp2p networking stack. Prior to version 16.2.6, an unauthenticated remote peer can exhaust the disk storage of any @libp2p/kad-dht node running in server mo… CWE-20
CWE-400
 Improper Input Validation 
 Uncontrolled Resource Consumption
CVE-2026-45783 2026-06-12 02:16 2026-06-11 Show GitHub Exploit DB Packet Storm
724 8.8 HIGH
Network
- - Pi-hole FTL is the core engine of the Pi-hole network-level advertisement and tracker blocker. Prior to version 6.6.1, Pi-hole FTL contains a race condition vulnerability in the HTTP session manageme… CWE-362
Race Condition
CVE-2026-44693 2026-06-12 02:16 2026-06-11 Show GitHub Exploit DB Packet Storm
725 3.7 LOW
Network
- - Axios is a promise based HTTP client for the browser and Node.js. From 1.15.2 to before 1.16.0, nested objects created by utils.merge() (e.g., config.proxy) are still constructed as plain {} with Obj… CWE-113
CWE-1321
HTTP Response Splitting
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2026-44489 2026-06-12 02:16 2026-06-12 Show GitHub Exploit DB Packet Storm
726 6.4 MEDIUM
Network
- - PostgreSQL Anonymizer contains a vulnerability that allows a user to gain superuser privileges by creating a JSON document and placing malicious code inside a particular key-value pair. If a superuse… CWE-89
SQL Injection
CVE-2026-11945 2026-06-12 02:16 2026-06-12 Show GitHub Exploit DB Packet Storm
727 8.1 HIGH
Network
- - Keras versions prior to 3.14.0 are vulnerable to a path traversal issue in the archive extraction utilities located in `keras/src/utils/file_utils.py`. The functions `filter_safe_tarinfos()` and `fil… CWE-22
Path Traversal
CVE-2026-11816 2026-06-12 02:16 2026-06-11 Show GitHub Exploit DB Packet Storm
728 7.8 HIGH
Local
adobe indesign InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation … CWE-787
 Out-of-bounds Write
CVE-2026-48293 2026-06-12 02:14 2026-06-10 Show GitHub Exploit DB Packet Storm
729 7.8 HIGH
Local
microsoft windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2022
windows_server_2025
Improper authentication in Windows Cryptographic Services allows an unauthorized attacker to elevate privileges locally. CWE-287
Improper Authentication
CVE-2026-44810 2026-06-12 02:13 2026-06-10 Show GitHub Exploit DB Packet Storm
730 7.8 HIGH
Local
sqlite sqlite SQLite before 3.53.2 contains memory corruption vulnerabilities in the FTS5 full-text search extension that allow attackers to cause process crashes, memory exhaustion, or arbitrary code execution by… CWE-122
Heap-based Buffer Overflow
CVE-2026-11822 2026-06-12 02:12 2026-06-10 Show GitHub Exploit DB Packet Storm