Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3491 9.1 緊急
Network
マイクロソフト Azure SDK for Java Azure SDK for Java のセキュリティ機能のバイパスの脆弱性 CWE-287
CWE-347
CVE-2026-33117 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
3492 9.9 緊急
Network
マイクロソフト Microsoft Dynamics 365 Customer Insights Microsoft Dynamics 365 Customer Insights の特権昇格の脆弱性 CWE-269
不適切な権限管理
CVE-2026-33821 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3493 6.5 警告
Adjacent
Pengutronix e.K. barebox Pengutronix e.K.のbareboxにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-34960 2026-05-18 12:06 2026-05-11 Show GitHub Exploit DB Packet Storm
3494 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows テレフォニー サービスの特権昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40382 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3495 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows 共通ログ ファイル システム ドライバーの特権の昇格の脆弱性 CWE-191
整数アンダーフロー
CVE-2026-40397 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3496 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows リモート デスクトップ サービスの特権昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-40398 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3497 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows TCP/IP の特権昇格の脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-40399 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3498 7.1 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows TCP/IP のサービス拒否の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-40401 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3499 9.3 緊急
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Windows Hyper-V の特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40402 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3500 8.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows グラフィックス コンポーネントのリモートでコードが実行される脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-40403 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2621 5.4 MEDIUM
Network
- - A weakness has been identified in zilliztech deep-searcher up to 0.0.2. This affects the function CollectionRouter.invoke of the file deepsearcher/agent/collection_router.py. This manipulation of the… CWE-266
CWE-284
 Incorrect Privilege Assignment
Improper Access Control
CVE-2026-11466 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2622 7.3 HIGH
Network
- - A vulnerability was found in Chengdu Everbrite Network Technology BeikeShop up to 1.6.0.22. This impacts the function callback of the file plugins/Stripe/Controllers/StripeController.php of the compo… CWE-266
CWE-285
 Incorrect Privilege Assignment
Improper Authorization
CVE-2026-11462 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2623 3.1 LOW
Network
- - A vulnerability was identified in JeecgBoot up to 3.9.2. Affected by this vulnerability is the function queryPageList of the file src\main\java\org\jeecg\modules\system\controller\SysUserController.j… CWE-200
CWE-284
Information Exposure
Improper Access Control
CVE-2026-11464 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2624 5.4 MEDIUM
Network
- - A security vulnerability has been detected in jishenghua jshERP up to 3.6. This vulnerability affects the function addAccountHeadAndDetail of the file jshERP-boot/src/main/java/com/jsh/erp/service/Ac… CWE-22
Path Traversal
CVE-2026-11467 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2625 2.4 LOW
Network
- - A vulnerability was detected in SourceCodester Hospitals Patient Records Management System 1.0. This issue affects some unknown processing of the file /admin/?page=room_types. Performing a manipulati… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-11468 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2626 4.7 MEDIUM
Network
- - A flaw has been found in jishenghua jshERP up to 3.6. Impacted is the function insertPlatformConfig of the file jshERP-boot/src/main/java/com/jsh/erp/service/PlatformConfigService.java of the compone… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-11469 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2627 6.3 MEDIUM
Network
- - A vulnerability has been found in hs-web hsweb-framework up to 5.0.1. The affected element is the function denied of the file hsweb-system/hsweb-system-file/src/main/java/org/hswebframework/web/file/… CWE-22
Path Traversal
CVE-2026-11470 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2628 7.3 HIGH
Network
- - A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is an unknown function of the file /index2.php. The manipulation of the argument Password resul… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11471 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2629 7.3 HIGH
Network
- - A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /index1.php. This manipulation of the argument Password causes sql… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11472 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2630 6.3 MEDIUM
Network
- - A vulnerability was identified in jflyfox jfinal_cms up to 5.1.0. This impacts the function list of the file AdvicefeedbackController.java. Such manipulation of the argument orderBy leads to sql inje… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11473 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm