Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2451 7.2 重要
Network
Apache Software Foundation Apache Syncope Apache Software FoundationのApache Syncopeにおける隔離または分類に関する脆弱性 CWE-653
不適切な隔離または分類
CVE-2026-42782 2026-05-29 11:17 2026-05-25 Show GitHub Exploit DB Packet Storm
2452 7.5 重要
Network
マイクロソフト Microsoft 365 Copilot M365 Copilot の情報漏えいの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-42827 2026-05-29 11:17 2026-05-22 Show GitHub Exploit DB Packet Storm
2453 10 緊急
Network
マイクロソフト Microsoft Entra ID Microsoft Entra ID の特権昇格の脆弱性 CWE-346
同一生成元ポリシー違反
CVE-2026-42901 2026-05-29 11:17 2026-05-22 Show GitHub Exploit DB Packet Storm
2454 4.3 警告
Network
Traccar Ltd Traccar Traccar LtdのTraccarにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-44314 2026-05-29 11:17 2026-05-26 Show GitHub Exploit DB Packet Storm
2455 8.7 重要
Network
Twenty.com PBC Twenty Twenty.com PBCのTwentyにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-44729 2026-05-29 11:17 2026-05-26 Show GitHub Exploit DB Packet Storm
2456 7.2 重要
Network
citeum opencti citeumのopenctiにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-44730 2026-05-29 11:16 2026-05-26 Show GitHub Exploit DB Packet Storm
2457 5.3 警告
Network
Hedera Guardian HederaのGuardianにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-45248 2026-05-29 11:16 2026-05-14 Show GitHub Exploit DB Packet Storm
2458 8.1 重要
Network
Apache Software Foundation apache-airflow-providers-google Apache Software Foundationのapache-airflow-providers-googleにおけるエンティティ認証のない鍵交換に関する脆弱性 CWE-322
エンティティ認証のない鍵交換
CVE-2026-45361 2026-05-29 11:16 2026-05-25 Show GitHub Exploit DB Packet Storm
2459 8.8 重要
Network
マイクロソフト Microsoft SharePoint Server Microsoft SharePoint のリモート コードが実行される脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-45659 2026-05-29 11:16 2026-05-22 Show GitHub Exploit DB Packet Storm
2460 9.9 緊急
Network
Twenty.com PBC Twenty Twenty.com PBCのTwentyにおける複数の脆弱性 CWE-78
CWE-89
CVE-2026-46624 2026-05-29 11:16 2026-05-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311271 6.5 MEDIUM
Network
cor-entertainment
debian
fedoraproject
alien-arena
debian_linux
fedora
It is possible to cause a DoS condition by causing the server to crash in alien-arena 7.33 by supplying various invalid parameters to the download command. CWE-20
 Improper Input Validation 
CVE-2010-3439 2024-11-21 10:18 2019-11-13 Show GitHub Exploit DB Packet Storm
311272 9.8 CRITICAL
Network
libpoe-component-irc-perl_project
debian
fedoraproject
libpoe-component-irc-perl
debian_linux
fedora
libpoe-component-irc-perl before v6.32 does not remove carriage returns and line feeds. This can be used to execute arbitrary IRC commands by passing an argument such as "some text\rQUIT" to the 'pri… CWE-134
Use of Externally-Controlled Format String
CVE-2010-3438 2024-11-21 10:18 2019-11-13 Show GitHub Exploit DB Packet Storm
311273 4.8 MEDIUM
Local
gargoyle_project
debian
gargoyle
debian_linux
If LD_LIBRARY_PATH is undefined in gargoyle-free before 2009-08-25, the variable will point to the current directory. This can allow a local user to trick another user into running gargoyle in a dire… CWE-20
 Improper Input Validation 
CVE-2010-3359 2024-11-21 10:18 2019-11-13 Show GitHub Exploit DB Packet Storm
311274 9.8 CRITICAL
Network
qtparted_project qtparted qtparted has insecure library loading which may allow arbitrary code execution CWE-20
 Improper Input Validation 
CVE-2010-3375 2024-11-21 10:18 2019-10-30 Show GitHub Exploit DB Packet Storm
311275 5.5 MEDIUM
Local
grsecurity
debian
paxtest
debian_linux
paxtest handles temporary files insecurely CWE-20
 Improper Input Validation 
CVE-2010-3373 2024-11-21 10:18 2019-10-30 Show GitHub Exploit DB Packet Storm
311276 5.5 MEDIUM
Local
mailscanner mailscanner mailscanner can allow local users to prevent virus signatures from being updated CWE-20
 Improper Input Validation 
CVE-2010-3293 2024-11-21 10:18 2019-10-29 Show GitHub Exploit DB Packet Storm
311277 - quassel-irc
canonical
quassel_irc
ubuntu_linux
ctcphandler.cpp in Quassel before 0.6.3 and 0.7.x before 0.7.1 allows remote attackers to cause a denial of service (unresponsive IRC) via multiple Client-To-Client Protocol (CTCP) requests in a PRIV… CWE-399
 Resource Management Errors
CVE-2010-3443 2024-11-21 10:18 2013-11-23 Show GitHub Exploit DB Packet Storm
311278 - f-secure anti-virus F-Secure Anti-Virus does not properly interact with the processing of hcp:// URLs by the Microsoft Help and Support Center, which makes it easier for remote attackers to execute arbitrary code via ma… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3499 2024-11-21 10:18 2012-08-22 Show GitHub Exploit DB Packet Storm
311279 - avg anti-virus AVG Anti-Virus does not properly interact with the processing of hcp:// URLs by the Microsoft Help and Support Center, which makes it easier for remote attackers to execute arbitrary code via malware… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3498 2024-11-21 10:18 2012-08-22 Show GitHub Exploit DB Packet Storm
311280 - symantec norton_antivirus Symantec Norton AntiVirus 2011 does not properly interact with the processing of hcp:// URLs by the Microsoft Help and Support Center, which makes it easier for remote attackers to execute arbitrary … CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3497 2024-11-21 10:18 2012-08-22 Show GitHub Exploit DB Packet Storm