Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
171 7.8 重要
Local
Kovidgoyal Kitty KovidgoyalのKittyにおける複数の脆弱性 CWE-150
CWE-94
CVE-2026-54057 2026-06-17 15:38 2026-06-12 Show GitHub Exploit DB Packet Storm
172 7.7 重要
Network
Mattermost, Inc. Mattermost Desktop Mattermost, Inc.のMattermost Desktopにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2026-6517 2026-06-17 15:38 2026-06-15 Show GitHub Exploit DB Packet Storm
173 8.1 重要
Network
OpenSSL Project OpenSSL OpenSSL ProjectのOpenSSLにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-7383 2026-06-17 15:38 2026-06-9 Show GitHub Exploit DB Packet Storm
174 8.1 重要
Network
langflow langflow langflowにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-7787 2026-06-17 15:38 2026-06-11 Show GitHub Exploit DB Packet Storm
175 8.8 重要
Network
IBM IBM i IBMのIBM iにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-7870 2026-06-17 15:38 2026-06-11 Show GitHub Exploit DB Packet Storm
176 6.5 警告
Network
Mattermost, Inc. Mattermost Desktop Mattermost, Inc.のMattermost Desktopにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-8683 2026-06-17 15:38 2026-06-15 Show GitHub Exploit DB Packet Storm
177 7.5 重要
Network
OpenSSL Project OpenSSL OpenSSL ProjectのOpenSSLにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-9076 2026-06-17 15:38 2026-06-9 Show GitHub Exploit DB Packet Storm
178 8.1 重要
Network
F5 Networks nginx open source
NGINX plus
F5 Networksのnginx open source等の複数製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-9256 2026-06-17 15:37 2026-05-22 Show GitHub Exploit DB Packet Storm
179 4.3 警告
Network
webpack.js webpack-dev-server webpackのwebpack-dev-serverにおける複数の脆弱性 CWE-346
CWE-441
CVE-2026-9595 2026-06-17 15:37 2026-06-15 Show GitHub Exploit DB Packet Storm
180 8.8 重要
Network
Trychroma ChromaDB TrychromaのChromaDBにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-45830 2026-06-17 15:37 2026-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
254871 7.8 HIGH
Local
sublimetext sublime_text_3 Sublime Text 3 Build 3126 allows user-assisted attackers to cause a denial of service or possibly have unspecified other impact via a crafted .mkv file. One threat model is a victim who obtains an un… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-8368 2024-11-21 12:33 2017-07-6 Show GitHub Exploit DB Packet Storm
254872 7.8 HIGH
Local
xnview xnview XnView Classic for Windows Version 2.40 allows user-assisted remote attackers to execute code via a crafted .mov file that is mishandled during the opening of a directory in "Browser" mode, because o… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-8282 2024-11-21 12:33 2017-07-6 Show GitHub Exploit DB Packet Storm
254873 9.8 CRITICAL
Network
teltonika rut900_firmware
rut905_firmware
rut950_firmware
rut955_firmware
The management interface for the Teltonika RUT9XX routers (aka LuCI) with firmware 00.03.265 and earlier allows remote attackers to execute arbitrary commands with root privileges via shell metachara… CWE-78
OS Command 
CVE-2017-8116 2024-11-21 12:33 2017-07-4 Show GitHub Exploit DB Packet Storm
254874 5.9 MEDIUM
Network
google android In all Android releases from CAF using the Linux kernel, a race condition exists in a QTEE driver potentially leading to an arbitrary memory write. CWE-362
Race Condition
CVE-2017-8242 2024-11-21 12:33 2017-06-14 Show GitHub Exploit DB Packet Storm
254875 7.8 HIGH
Local
google android In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a WLAN function due to an incorrect message length. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-8241 2024-11-21 12:33 2017-06-14 Show GitHub Exploit DB Packet Storm
254876 7.8 HIGH
Local
google android In all Android releases from CAF using the Linux kernel, a kernel driver has an off-by-one buffer over-read vulnerability. CWE-125
Out-of-bounds Read
CVE-2017-8240 2024-11-21 12:33 2017-06-14 Show GitHub Exploit DB Packet Storm
254877 5.5 MEDIUM
Local
google android In all Android releases from CAF using the Linux kernel, userspace-controlled parameters for flash initialization are not sanitized potentially leading to exposure of kernel memory. CWE-200
Information Exposure
CVE-2017-8239 2024-11-21 12:33 2017-06-14 Show GitHub Exploit DB Packet Storm
254878 7.8 HIGH
Local
google android In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a camera function. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-8238 2024-11-21 12:33 2017-06-14 Show GitHub Exploit DB Packet Storm
254879 7.8 HIGH
Local
google android In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists while loading a firmware image. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-8237 2024-11-21 12:33 2017-06-14 Show GitHub Exploit DB Packet Storm
254880 7.8 HIGH
Local
google android In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in an IPA driver. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-8236 2024-11-21 12:33 2017-06-14 Show GitHub Exploit DB Packet Storm