|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 20, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 171 | 7.8 |
重要
Local |
Kovidgoyal | Kitty | KovidgoyalのKittyにおける複数の脆弱性 |
CWE-150 CWE-94 |
CVE-2026-54057 | 2026-06-17 15:38 | 2026-06-12 | Show | GitHub Exploit DB Packet Storm |
| 172 | 7.7 |
重要
Network |
Mattermost, Inc. | Mattermost Desktop | Mattermost, Inc.のMattermost Desktopにおける認証情報の不十分な保護に関する脆弱性 |
CWE-522
認証情報の不十分な保護 |
CVE-2026-6517 | 2026-06-17 15:38 | 2026-06-15 | Show | GitHub Exploit DB Packet Storm |
| 173 | 8.1 |
重要
Network |
OpenSSL Project | OpenSSL | OpenSSL ProjectのOpenSSLにおける境界外書き込みに関する脆弱性 |
CWE-787
境界外書き込み |
CVE-2026-7383 | 2026-06-17 15:38 | 2026-06-9 | Show | GitHub Exploit DB Packet Storm |
| 174 | 8.1 |
重要
Network |
langflow | langflow | langflowにおけるユーザ制御の鍵による認証回避に関する脆弱性 |
CWE-639
ユーザ制御の鍵による認証回避 |
CVE-2026-7787 | 2026-06-17 15:38 | 2026-06-11 | Show | GitHub Exploit DB Packet Storm |
| 175 | 8.8 |
重要
Network |
IBM | IBM i | IBMのIBM iにおける制御されていない検索パスの要素に関する脆弱性 |
CWE-427
制御されていない検索パスの要素 |
CVE-2026-7870 | 2026-06-17 15:38 | 2026-06-11 | Show | GitHub Exploit DB Packet Storm |
| 176 | 6.5 |
警告
Network |
Mattermost, Inc. | Mattermost Desktop | Mattermost, Inc.のMattermost Desktopにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 |
CWE-770
制限またはスロットリング無しのリソースの割り当て |
CVE-2026-8683 | 2026-06-17 15:38 | 2026-06-15 | Show | GitHub Exploit DB Packet Storm |
| 177 | 7.5 |
重要
Network |
OpenSSL Project | OpenSSL | OpenSSL ProjectのOpenSSLにおける境界外読み取りに関する脆弱性 |
CWE-125
境界外読み取り |
CVE-2026-9076 | 2026-06-17 15:38 | 2026-06-9 | Show | GitHub Exploit DB Packet Storm |
| 178 | 8.1 |
重要
Network |
F5 Networks |
nginx open source NGINX plus |
F5 Networksのnginx open source等の複数製品におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-122
ヒープオーバーフロー |
CVE-2026-9256 | 2026-06-17 15:37 | 2026-05-22 | Show | GitHub Exploit DB Packet Storm |
| 179 | 4.3 |
警告
Network |
webpack.js | webpack-dev-server | webpackのwebpack-dev-serverにおける複数の脆弱性 |
CWE-346 CWE-441 |
CVE-2026-9595 | 2026-06-17 15:37 | 2026-06-15 | Show | GitHub Exploit DB Packet Storm |
| 180 | 8.8 |
重要
Network |
Trychroma | ChromaDB | TrychromaのChromaDBにおけるユーザ制御の鍵による認証回避に関する脆弱性 |
CWE-639
ユーザ制御の鍵による認証回避 |
CVE-2026-45830 | 2026-06-17 15:37 | 2026-06-12 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 20, 2026, 4:01 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 191151 | 7.8 |
HIGH
Local |
microsoft |
windows_10 windows_server_2016 windows_server_2019 |
Windows Graphics Component Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-34530 | 2024-11-21 15:10 | 2021-08-13 | Show | GitHub Exploit DB Packet Storm |
| 191152 | 8.1 |
HIGH
Network |
microsoft | dynamics_365 | Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-34524 | 2024-11-21 15:10 | 2021-08-13 | Show | GitHub Exploit DB Packet Storm |
| 191153 | 7.0 |
HIGH
Local |
microsoft |
windows_10 windows_server_2016 windows_server_2019 |
Windows Event Tracing Elevation of Privilege Vulnerability |
CWE-269
Improper Privilege Management |
CVE-2021-34487 | 2024-11-21 15:10 | 2021-08-13 | Show | GitHub Exploit DB Packet Storm |
| 191154 | 7.8 |
HIGH
Local |
microsoft |
windows_10_20h2 windows_10_1809 windows_10_1909 windows_10_21h1 windows_10_2004 windows_server_2004 windows_server_20h2 windows_server_2019 |
Windows Event Tracing Elevation of Privilege Vulnerability |
CWE-416
Use After Free |
CVE-2021-34486 | 2024-11-21 15:10 | 2021-08-13 | Show | GitHub Exploit DB Packet Storm |
| 191155 | 5.0 |
MEDIUM
Local |
microsoft |
visual_studio_2017 visual_studio_2019 .net .net_core powershell_core |
.NET Core and Visual Studio Information Disclosure Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-34485 | 2024-11-21 15:10 | 2021-08-13 | Show | GitHub Exploit DB Packet Storm |
| 191156 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019 |
Windows Print Spooler Elevation of Privilege Vulnerability |
CWE-269
Improper Privilege Management |
CVE-2021-34483 | 2024-11-21 15:10 | 2021-08-13 | Show | GitHub Exploit DB Packet Storm |
| 191157 | 6.8 |
MEDIUM
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019 |
Scripting Engine Memory Corruption Vulnerability |
CWE-787
Out-of-bounds Write |
CVE-2021-34480 | 2024-11-21 15:10 | 2021-08-13 | Show | GitHub Exploit DB Packet Storm |
| 191158 | 7.8 |
HIGH
Local |
microsoft |
office 365_apps |
Microsoft Office Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-34478 | 2024-11-21 15:10 | 2021-08-13 | Show | GitHub Exploit DB Packet Storm |
| 191159 | 7.8 |
HIGH
Local |
microsoft | malware_protection_engine | Microsoft Windows Defender Elevation of Privilege Vulnerability |
CWE-269
Improper Privilege Management |
CVE-2021-34471 | 2024-11-21 15:10 | 2021-08-13 | Show | GitHub Exploit DB Packet Storm |
| 191160 | 6.1 |
MEDIUM
Network |
securimage-wp-fixed_project | securimage-wp-fixed | The Securimage-WP-Fixed WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER['PHP_SELF'] in the ~/securimage-wp.php file which allows attackers to inject arbitr… |
CWE-79
Cross-site Scripting |
CVE-2021-34640 | 2024-11-21 15:10 | 2021-08-12 | Show | GitHub Exploit DB Packet Storm |