Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
133521 5.4 警告
Network
TIBCO Software TIBCO BPM Enterprise
TIBCO BPM Enterprise Distribution for TIBCO Silver Fabric
TIBCO Software Inc. の TIBCO BPM Enterprise および TIBCO BPM Enterprise Distribution for TIBCO Silver Fabric におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-23272 2021-10-11 15:30 2021-01-26 Show GitHub Exploit DB Packet Storm
133522 7.5 重要
Network
Silicon Labs, Inc. Micrium uC-HTTP Micrium uC-HTTP における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2020-13582 2021-10-11 15:30 2020-11-2 Show GitHub Exploit DB Packet Storm
133523 9.8 緊急
Network
Sagemcom F@st 3686 ファームウェア Sagemcom F@ST 3686 デバイスにおける古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2021-3304 2021-10-11 15:30 2021-01-14 Show GitHub Exploit DB Packet Storm
133524 7.2 重要
Network
Zen Cart Zen Cart Zen Cart における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2021-3291 2021-10-11 15:30 2021-01-29 Show GitHub Exploit DB Packet Storm
133525 5.3 警告
Network
Texas Instruments Incorporated (TI) Code Composer Studio Integrated Development Enviroment TI Code Composer Studio IDE における証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2021-3285 2021-10-11 15:30 2021-01-14 Show GitHub Exploit DB Packet Storm
133526 9.8 緊急
Network
ONLYOFFICE Document Server ONLYOFFICE Document Server におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2021-3199 2021-10-11 15:30 2021-01-22 Show GitHub Exploit DB Packet Storm
133527 9.8 緊急
Network
phpList phpList phpList における CSV ファイル内の数式要素の中和に関する脆弱性 CWE-1236
CSV ファイル内の数式要素の不適切な中和
CVE-2021-3188 2021-10-11 15:30 2021-01-19 Show GitHub Exploit DB Packet Storm
133528 6.5 警告
Network
シスコシステムズ Cisco SD-WAN vManage Cisco SD-WAN vManage ソフトウェアにおける脆弱性 CWE-noinfo
情報不足
CVE-2021-1304 2021-10-11 15:28 2021-01-20 Show GitHub Exploit DB Packet Storm
133529 7.5 重要
Network
シスコシステムズ Cisco Elastic Services Controller Cisco Elastic Services Controller におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2021-1312 2021-10-11 15:02 2021-01-20 Show GitHub Exploit DB Packet Storm
133530 6.5 警告
Network
シスコシステムズ Cisco Unified Communications Manager
Cisco Unified Communications Manager IM and Presence Service
複数の Cisco Unified Communications Manager 製品における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2021-1355 2021-10-11 14:07 2021-01-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
321 9.8 CRITICAL
Network
microsoft windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2022
windows_server_2025
Use after free in Windows Kernel allows an unauthorized attacker to execute code over a network. New CWE-122
CWE-416
Heap-based Buffer Overflow
 Use After Free
CVE-2026-45657 2026-06-11 05:44 2026-06-10 Show GitHub Exploit DB Packet Storm
322 7.8 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Protection mechanism failure in Windows UEFI allows an authorized attacker to bypass a security feature locally. New CWE-693
 Protection Mechanism Failure
CVE-2026-45656 2026-06-11 05:42 2026-06-10 Show GitHub Exploit DB Packet Storm
323 5.4 MEDIUM
Network
microsoft sharepoint_server Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. New CWE-79
Cross-site Scripting
CVE-2026-45453 2026-06-11 05:32 2026-06-10 Show GitHub Exploit DB Packet Storm
324 8.8 HIGH
Network
microsoft sharepoint_server Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. New CWE-22
Path Traversal
CVE-2026-45454 2026-06-11 05:31 2026-06-10 Show GitHub Exploit DB Packet Storm
325 5.4 MEDIUM
Network
microsoft sharepoint_server Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. New CWE-79
Cross-site Scripting
CVE-2026-45462 2026-06-11 05:30 2026-06-10 Show GitHub Exploit DB Packet Storm
326 5.4 MEDIUM
Network
microsoft sharepoint_server Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. New CWE-79
Cross-site Scripting
CVE-2026-45464 2026-06-11 05:29 2026-06-10 Show GitHub Exploit DB Packet Storm
327 5.4 MEDIUM
Network
microsoft sharepoint_server Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. New CWE-79
Cross-site Scripting
CVE-2026-45465 2026-06-11 05:26 2026-06-10 Show GitHub Exploit DB Packet Storm
328 8.8 HIGH
Adjacent
- - A flaw was found in dracut. A remote attacker on the adjacent network can exploit this vulnerability by providing specially crafted DHCP (Dynamic Host Configuration Protocol) options, such as a malic… New CWE-78
OS Command 
CVE-2026-6893 2026-06-11 05:22 2026-06-11 Show GitHub Exploit DB Packet Storm
329 7.5 HIGH
Network
- - SQLFluff is a modular SQL linter and auto-formatter with support for multiple dialects and templated code. Prior to version 4.1.0, in deployments where untrusted users can provide SQL queries to be l… New CWE-674
 Uncontrolled Recursion
CVE-2026-46373 2026-06-11 05:21 2026-06-10 Show GitHub Exploit DB Packet Storm
330 7.5 HIGH
Network
- - SQLFluff is a modular SQL linter and auto-formatter with support for multiple dialects and templated code. Prior to version 4.2.0, in deployments where untrusted users can provide SQL queries to be l… New CWE-400
 Uncontrolled Resource Consumption
CVE-2026-46374 2026-06-11 05:21 2026-06-10 Show GitHub Exploit DB Packet Storm