Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1461 7.5 重要
Network
レッドハット
GNU Project
Redhat Enterprise Linux For Power Little Endian Els
Red Hat Enterprise Linux for IBM z Systems - Extended Updat…
GNU Project等の複数ベンダの製品におけるAPI への入力に対する未定義の動作に関する脆弱性 CWE-475
API への入力に対する未定義の動作
CVE-2026-42009 2026-06-9 14:11 2026-05-18 Show GitHub Exploit DB Packet Storm
1462 7.8 重要
Local
Thermalright TR-VISION HOME ThermalrightのTR-VISION HOMEにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-4255 2026-06-9 14:11 2026-03-16 Show GitHub Exploit DB Packet Storm
1463 6.5 警告
Network
レッドハット Red Hat OpenShift Container Platform
OpenShift Router
レッドハットのRed Hat OpenShift Container Platform等の複数製品におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-42965 2026-06-9 14:11 2026-05-29 Show GitHub Exploit DB Packet Storm
1464 8.7 重要
Network
SUSE Local Path Provisioner SUSEのLocal Path Provisionerにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-44543 2026-06-9 14:11 2026-05-28 Show GitHub Exploit DB Packet Storm
1465 9.6 緊急
Network
Guardrails AI Guardrails AI Guardrails AIにおける埋め込まれた悪意のあるコードに関する脆弱性 CWE-506
埋め込まれた悪意のあるコード
CVE-2026-45758 2026-06-9 14:11 2026-06-5 Show GitHub Exploit DB Packet Storm
1466 7.5 重要
Network
レッドハット Red Hat OpenShift Container Platform
OpenShift Router
レッドハットのRed Hat OpenShift Container Platform等の複数製品における認証に関する脆弱性 CWE-287
CWE-noinfo
CVE-2026-46579 2026-06-9 14:10 2026-05-29 Show GitHub Exploit DB Packet Storm
1467 5.3 警告
Network
Cosimo Net::statsd CosimoのNet::statsdにおけるCRLF インジェクションの脆弱性 CWE-93
CRLF インジェクション
CVE-2026-46719
CVE-2026-46720
CVE-2026-46739
2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1468 7.5 重要
Network
Steve Sanbeg Etsy::StatsD Steve SanbegのEtsy::StatsDにおけるCRLF インジェクションの脆弱性 CWE-93
CRLF インジェクション
CVE-2026-46719
CVE-2026-46720
CVE-2026-46741
2026-06-9 14:10 2026-06-4 Show GitHub Exploit DB Packet Storm
1469 9.8 緊急
Network
Advanced Micro Devices (AMD) AITER (AI Tensor Engine for ROCm) Advanced Micro Devices (AMD)のAITER (AI Tensor Engine for ROCm)における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-49121 2026-06-9 14:10 2026-06-1 Show GitHub Exploit DB Packet Storm
1470 9.8 緊急
Network
日本エイサー Acer Wave 7 Router Firmware T7c Gbl エイサーのAcer Wave 7 Router Firmware T7c Gblにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2026-49200 2026-06-9 14:10 2026-05-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
255751 7.5 HIGH
Network
starscream_project starscream WebSocket.swift in Starscream before 2.0.4 allows an SSL Pinning bypass because of incorrect management of the certValidated variable (it can be set to true but cannot be set to false). CWE-295
Improper Certificate Validation 
CVE-2017-7192 2024-11-21 12:31 2017-04-6 Show GitHub Exploit DB Packet Storm
255752 5.5 MEDIUM
Local
entropymine imageworsener The iwgif_record_pixel function in imagew-gif.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file. CWE-125
Out-of-bounds Read
CVE-2017-7454 2024-11-21 12:31 2017-04-6 Show GitHub Exploit DB Packet Storm
255753 5.5 MEDIUM
Local
entropymine imageworsener The iwgif_record_pixel function in imagew-gif.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file. CWE-476
 NULL Pointer Dereference
CVE-2017-7453 2024-11-21 12:31 2017-04-6 Show GitHub Exploit DB Packet Storm
255754 5.5 MEDIUM
Local
entropymine imageworsener The iwbmp_read_info_header function in imagew-bmp.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file. CWE-476
 NULL Pointer Dereference
CVE-2017-7452 2024-11-21 12:31 2017-04-6 Show GitHub Exploit DB Packet Storm
255755 9.8 CRITICAL
Network
airtame hdmi_dongle_firmware AIRTAME HDMI dongle with firmware before 2.2.0 allows unauthenticated access to a big part of the management interface. It is possible to extract all information including the Wi-Fi password, reboot,… CWE-287
Improper Authentication
CVE-2017-7450 2024-11-21 12:31 2017-04-6 Show GitHub Exploit DB Packet Storm
255756 5.5 MEDIUM
Local
dropbox lepton The allocate_channel_framebuffer function in uncompressed_components.hh in Dropbox Lepton 1.2.1 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a… CWE-369
 Divide By Zero
CVE-2017-7448 2024-11-21 12:31 2017-04-6 Show GitHub Exploit DB Packet Storm
255757 8.8 HIGH
Network
helpdezk helpdezk HelpDEZk 1.1.1 has CSRF in admin/home#/logos/ with an impact of remote execution of arbitrary PHP code. CWE-352
 Origin Validation Error
CVE-2017-7447 2024-11-21 12:31 2017-04-6 Show GitHub Exploit DB Packet Storm
255758 8.8 HIGH
Network
helpdezk helpdezk HelpDEZk 1.1.1 has CSRF in admin/home#/person/ with an impact of obtaining admin privileges. CWE-352
 Origin Validation Error
CVE-2017-7446 2024-11-21 12:31 2017-04-6 Show GitHub Exploit DB Packet Storm
255759 7.8 HIGH
Local
veritas system_recovery In Veritas System Recovery before 16 SP1, there is a DLL hijacking vulnerability in the patch installer if an attacker has write access to the directory from which the product is executed. NVD-CWE-noinfo
CVE-2017-7444 2024-11-21 12:31 2017-04-6 Show GitHub Exploit DB Packet Storm
255760 6.1 MEDIUM
Network
apt-cacher_project
apt-cacher-ng_project
apt-cacher
apt-cacher-ng
apt-cacher before 1.7.15 and apt-cacher-ng before 3.4 allow HTTP response splitting via encoded newline characters, related to lack of blocking for the %0[ad] regular expression. CWE-113
HTTP Response Splitting
CVE-2017-7443 2024-11-21 12:31 2017-04-6 Show GitHub Exploit DB Packet Storm