Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
171 7.5 重要
Network
VMware Spring HATEOAS VMwareのSpring HATEOASにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-41007 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
172 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft&n…
Microsoft Kinect の特権昇格の脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-41092 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
173 7 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft&n…
Windows DNS クライアントの特権の昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-41108 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
174 7.5 重要
Network
VMware Spring Framework VMwareのSpring Frameworkにおける不十分なランダム値の使用に関する脆弱性 CWE-330
不十分なランダム値の使用
CVE-2026-41838 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
175 6.1 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-41844 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
176 6.1 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-41845 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
177 6.1 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-41846 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
178 5.3 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-41847 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
179 7.5 重要
Network
VMware Spring Framework VMwareのSpring Frameworkにおける非効率的な正規表現の複雑さに関する脆弱性 CWE-1333
非効率的な正規表現の複雑さ
CVE-2026-41848 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
180 5.3 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-41852 2026-06-12 14:53 2026-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
344481 - netbsd netbsd procfs in BSD systems allows local users to gain root privileges by modifying the /proc/pid/mem interface via a modified file descriptor for stderr. NVD-CWE-Other
CVE-2000-0094 2018-05-3 10:29 2000-02-16 Show GitHub Exploit DB Packet Storm
344482 - allaire spectra The Remote Access Service invoke.cfm template in Allaire Spectra 1.0 allows users to bypass authentication via the bAuthenticated parameter. NVD-CWE-Other
CVE-2000-0120 2018-05-3 10:29 2000-01-1 Show GitHub Exploit DB Packet Storm
344483 - zeus_technologies zeus_web_server Zeus web server allows remote attackers to view the source code for CGI programs via a null character (%00) at the end of a URL. NVD-CWE-Other
CVE-2000-0149 2018-05-3 10:29 2000-02-8 Show GitHub Exploit DB Packet Storm
344484 - pragma_systems interaccess_telnetd_server InterAccess TelnetD Server 4.0 allows remote attackers to conduct a denial of service via malformed terminal client configuration information. NVD-CWE-Other
CVE-2000-0212 2018-05-3 10:29 2000-02-24 Show GitHub Exploit DB Packet Storm
344485 - craig_dansie dansie_shopping_cart The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase information via hidden form fields. NVD-CWE-Other
CVE-2000-0253 2018-05-3 10:29 2000-04-11 Show GitHub Exploit DB Packet Storm
344486 - craig_dansie dansie_shopping_cart The dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart database and configuration information via a URL that references either the env, db, or vars form vari… NVD-CWE-Other
CVE-2000-0254 2018-05-3 10:29 2000-04-14 Show GitHub Exploit DB Packet Storm
344487 - aps_filter_development_team apsfilter The apsfilter software in the FreeBSD ports package does not properly read user filter configurations, which allows local users to execute commands as the lpd user. NVD-CWE-Other
CVE-2000-0534 2018-05-3 10:29 2000-06-7 Show GitHub Exploit DB Packet Storm
344488 - caldera
mandrakesoft
redhat
openlinux
mandrake_linux
linux
makewhatis in Linux man package allows local users to overwrite files via a symlink attack. NVD-CWE-Other
CVE-2000-0566 2018-05-3 10:29 2000-07-3 Show GitHub Exploit DB Packet Storm
344489 - debian
freebsd
debian_linux
freebsd
Buffer overflow in Canna input system allows remote attackers to execute arbitrary commands via an SR_INIT command with a long user name or group name. NVD-CWE-Other
CVE-2000-0584 2018-05-3 10:29 2000-07-2 Show GitHub Exploit DB Packet Storm
344490 - isc dhcp_client ISC DHCP client program dhclient allows remote attackers to execute arbitrary commands via shell metacharacters. NVD-CWE-Other
CVE-2000-0585 2018-05-3 10:29 2000-06-24 Show GitHub Exploit DB Packet Storm