Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
171 7.5 重要
Network
VMware Spring HATEOAS VMwareのSpring HATEOASにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-41007 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
172 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft&n…
Microsoft Kinect の特権昇格の脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-41092 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
173 7 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft&n…
Windows DNS クライアントの特権の昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-41108 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
174 7.5 重要
Network
VMware Spring Framework VMwareのSpring Frameworkにおける不十分なランダム値の使用に関する脆弱性 CWE-330
不十分なランダム値の使用
CVE-2026-41838 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
175 6.1 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-41844 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
176 6.1 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-41845 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
177 6.1 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-41846 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
178 5.3 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-41847 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
179 7.5 重要
Network
VMware Spring Framework VMwareのSpring Frameworkにおける非効率的な正規表現の複雑さに関する脆弱性 CWE-1333
非効率的な正規表現の複雑さ
CVE-2026-41848 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
180 5.3 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-41852 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
319851 9.8 CRITICAL
Network
avtech avm1203_firmware Commands can be injected over the network and executed without authentication. CWE-77
Command Injection
CVE-2024-7029 2024-09-17 22:30 2024-08-3 Show GitHub Exploit DB Packet Storm
319852 7.8 HIGH
Local
w1.fi wpa_supplicant An issue was discovered in Ubuntu wpa_supplicant that resulted in loading of arbitrary shared objects, which allows a local unprivileged attacker to escalate privileges to the user that wpa_supplican… CWE-427
 Uncontrolled Search Path Element
CVE-2024-5290 2024-09-17 22:09 2024-08-7 Show GitHub Exploit DB Packet Storm
319853 6.5 MEDIUM
Network
fish-shop syntax-check fish-shop/syntax-check is a GitHub action for syntax checking fish shell files. Improper neutralization of delimiters in the `pattern` input (specifically the command separator `;` and command substi… NVD-CWE-Other
CVE-2024-42482 2024-09-17 21:20 2024-08-13 Show GitHub Exploit DB Packet Storm
319854 7.8 HIGH
Local
nvidia gpu_display_driver
virtual_gpu
cloud_gaming
NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular user can cause an out-of-bounds read. A successful exploit of this vulnerability m… CWE-125
Out-of-bounds Read
CVE-2024-0107 2024-09-17 21:10 2024-08-9 Show GitHub Exploit DB Packet Storm
319855 7.1 HIGH
Local
huawei emui
harmonyos
Access control vulnerability in the security verification module mpact: Successful exploitation of this vulnerability will affect integrity and confidentiality. NVD-CWE-noinfo
CVE-2024-42033 2024-09-17 21:06 2024-08-8 Show GitHub Exploit DB Packet Storm
319856 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink: Initialise extack before use in ACKs Add missing extack initialisation when ACKing BATCH_BEGIN and BATCH_EN… NVD-CWE-noinfo
CVE-2024-44945 2024-09-17 20:42 2024-08-31 Show GitHub Exploit DB Packet Storm
319857 8.8 HIGH
Network
syscomgo omflow OMFLOW from The SYSCOM Group does not properly restrict access to the system settings modification functionality, allowing remote attackers with regular privileges to update system settings or create… NVD-CWE-Other
CVE-2024-8779 2024-09-17 20:27 2024-09-16 Show GitHub Exploit DB Packet Storm
319858 9.8 CRITICAL
Network
code-projects crud_operation_system A vulnerability was found in code-projects Crud Operation System 1.0. It has been rated as critical. This issue affects some unknown processing of the file savedata.php. The manipulation of the argum… CWE-89
SQL Injection
CVE-2024-8868 2024-09-17 19:59 2024-09-15 Show GitHub Exploit DB Packet Storm
319859 5.4 MEDIUM
Network
perfexcrm perfex_crm A vulnerability was found in Perfex CRM 3.1.6. It has been declared as problematic. This vulnerability affects unknown code of the file application/controllers/Clients.php of the component Parameter … CWE-79
Cross-site Scripting
CVE-2024-8867 2024-09-17 19:55 2024-09-15 Show GitHub Exploit DB Packet Storm
319860 4.9 MEDIUM
Network
composio composio A vulnerability was found in composiohq composio up to 0.5.8 and classified as problematic. Affected by this issue is the function path of the file composio\server\api.py. The manipulation of the arg… CWE-22
Path Traversal
CVE-2024-8865 2024-09-17 19:50 2024-09-15 Show GitHub Exploit DB Packet Storm