Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
141 7.5 重要
Network
Netty Netty Nettyにおけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-44890 2026-06-15 18:37 2026-06-11 Show GitHub Exploit DB Packet Storm
142 7.5 重要
Network
Netty Netty Nettyにおける複数の脆弱性 New CWE-1188
CWE-400
CVE-2026-44892 2026-06-15 18:37 2026-06-12 Show GitHub Exploit DB Packet Storm
143 7.5 重要
Network
Netty Netty Nettyにおける例外的な状況に対する不適切なチェックまたは処理に関する脆弱性 New CWE-703
例外的な状況に対する不適切なチェックまたは処理
CVE-2026-44893 2026-06-15 18:37 2026-06-12 Show GitHub Exploit DB Packet Storm
144 7.5 重要
Network
Netty Netty Nettyにおける通信チャネルの送信元の不適切な検証に関する脆弱性 New CWE-940
通信チャネルの送信元の不適切な検証
CVE-2026-44894 2026-06-15 18:37 2026-06-12 Show GitHub Exploit DB Packet Storm
145 7.5 重要
Network
Netty Netty Nettyにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 New CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-45416 2026-06-15 18:37 2026-06-12 Show GitHub Exploit DB Packet Storm
146 4 警告
Local
Netty Netty Nettyにおける複数の脆弱性 New CWE-200
CWE-772
CVE-2026-45536 2026-06-15 18:37 2026-06-12 Show GitHub Exploit DB Packet Storm
147 6.8 警告
Network
Netty Netty Nettyにおける複数の脆弱性 New CWE-330
CWE-340
CVE-2026-45673 2026-06-15 18:37 2026-06-12 Show GitHub Exploit DB Packet Storm
148 10 緊急
Network
Netty Netty Nettyにおけるデータの信頼性についての不十分な検証に関する脆弱性 New CWE-345
データの信頼性についての不十分な検証
CVE-2026-45674 2026-06-15 18:37 2026-06-12 Show GitHub Exploit DB Packet Storm
149 7.5 重要
Network
Netty Netty Nettyにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 New CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-46340 2026-06-15 18:37 2026-06-12 Show GitHub Exploit DB Packet Storm
150 5.3 警告
Network
Netty Netty Nettyにおけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-47244 2026-06-15 18:37 2026-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2921 6.1 MEDIUM
Network
- - A vulnerability in jupyter-server versions 1.12.0 through 2.17.0 allows an attacker to bypass CORS origin validation when the `allow_origin_pat` configuration is used. The issue arises from the use o… CWE-346
 Origin Validation Error
CVE-2026-6657 2026-06-5 00:25 2026-06-4 Show GitHub Exploit DB Packet Storm
2922 - - - A local privilege escalation vulnerability exists in Forcepoint VPN Client that allows a local non-administrative user to escalate privileges to SYSTEM. This issue affects VPN Client for Windows: ver… CWE-250
 Execution with Unnecessary Privileges
CVE-2025-12694 2026-06-5 00:25 2026-06-4 Show GitHub Exploit DB Packet Storm
2923 8.1 HIGH
Network
- - HCL Hive Telco Observability is affected by  a Required directives missing from the CSP issue is detected in keycloak component of the web application. Missing essential directives can leave a site v… CWE-1027
CVE-2025-59874 2026-06-5 00:25 2026-06-4 Show GitHub Exploit DB Packet Storm
2924 - - - An unauthenticated user with write access to the knowledge base can store an XSS payload in a knowledge base item. This issue affects glpi: before 11.0.7. CWE-79
Cross-site Scripting
CVE-2026-5385 2026-06-5 00:23 2026-06-3 Show GitHub Exploit DB Packet Storm
2925 - - - An authenticated ERPNext user with Item record edit permissions can persist arbitrary HTML/JavaScript in the item_name, description, or image fields of an Item and trigger unescaped rendering in the … CWE-79
Cross-site Scripting
CVE-2026-42839 2026-06-5 00:23 2026-06-4 Show GitHub Exploit DB Packet Storm
2926 - - - An authenticated user can persist arbitrary HTML/JavaScript in the email_id or mobile_no fields of a Customer record and trigger unescaped rendering in the Point of Sale (POS) interface for every ope… CWE-79
Cross-site Scripting
CVE-2026-42840 2026-06-5 00:23 2026-06-4 Show GitHub Exploit DB Packet Storm
2927 - - - Fixed a VM panic caused by unbounded recursion in the grpcfuse kernel module when a container created deeply nested directories on a bind-mounted host folder and triggered a dentry invalidation event… CWE-674
 Uncontrolled Recursion
CVE-2026-8936 2026-06-5 00:21 2026-06-3 Show GitHub Exploit DB Packet Storm
2928 5.3 MEDIUM
Network
- - daphne before 4.2.2 did not pass maxFramePayloadSize or maxMessagePayloadSize to Autobahn's WebSocketServerFactory. Because Autobahn defaults both values to 0 (unlimited), an unauthenticated remote a… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-44545 2026-06-5 00:21 2026-06-3 Show GitHub Exploit DB Packet Storm
2929 3.7 LOW
Network
- - daphne before 4.2.2 reconstructs a raw HTTP request from Twisted's parsed headers and feeds it to autobahn for WebSocket handshake processing. Twisted does not treat \x0b, \x0c, \x1c, \x1d, \x1e, or … CWE-444
HTTP Request Smuggling
CVE-2026-44546 2026-06-5 00:21 2026-06-3 Show GitHub Exploit DB Packet Storm
2930 7.5 HIGH
Network
- - Dell BSAFE SSL-J contains an allocation of resources without limits or throttling vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to a Denial o… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2025-46638 2026-06-5 00:21 2026-06-4 Show GitHub Exploit DB Packet Storm