Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3541 7 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
WinSock 用 Windows Ancillary Function Driver の特権の昇格の脆弱性 CWE-362
CWE-416
CVE-2026-34345 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
3542 7 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows Win32k の特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-34347 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
3543 6.5 警告
Network
マイクロソフト Microsoft Windows Server 2025 Windows Storport ミニポート ドライバーのサービス拒否の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-34350 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
3544 7 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows TCP/IP の特権昇格の脆弱性 CWE-362
競合状態
CVE-2026-34351 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
3545 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows 記憶域スペース コントローラーの特権昇格の脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-35415 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
3546 7 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
WinSock 用 Windows Ancillary Function Driver の特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-35416 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
3547 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Wind…
Windows Win32k の特権の昇格の脆弱性 CWE-843
型の取り違え
CVE-2026-35417 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
3548 7 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Wind…
Windows Cloud Files Mini Filter ドライバーの特権の昇格の脆弱性 CWE-367
CWE-416
CVE-2026-35418 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
3549 5.5 警告
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 11 24h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Windows DWM Core ライブラリの情報漏えいの脆弱性 CWE-125
境界外読み取り
CVE-2026-35419 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
3550 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microso…
Windows カーネルの特権の昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-35420 2026-05-18 12:16 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312131 6.5 MEDIUM
Network
gource gource Gource through 0.26 logs to a predictable file name (/tmp/gource-$UID.tmp), enabling attackers to overwrite an arbitrary file via a symlink attack. CWE-20
 Improper Input Validation 
CVE-2010-2449 2024-11-21 10:16 2019-11-8 Show GitHub Exploit DB Packet Storm
312132 9.8 CRITICAL
Network
gitolite gitolite gitolite before 1.4.1 does not filter src/ or hooks/ from path names. CWE-20
 Improper Input Validation 
CVE-2010-2447 2024-11-21 10:16 2019-11-8 Show GitHub Exploit DB Packet Storm
312133 6.5 MEDIUM
Network
drupal drupal Drupal 6.x before 6.16 and 5.x before version 5.22 does not properly block users under certain circumstances. A user with an open session that was blocked could maintain their session on the Drupal s… CWE-20
 Improper Input Validation 
CVE-2010-2473 2024-11-21 10:16 2019-11-8 Show GitHub Exploit DB Packet Storm
312134 4.8 MEDIUM
Network
drupal drupal Locale module and dependent contributed modules in Drupal 6.x before 6.16 and 5.x before version 5.22 do not sanitize the display of language codes, native and English language names properly which c… CWE-79
Cross-site Scripting
CVE-2010-2472 2024-11-21 10:16 2019-11-8 Show GitHub Exploit DB Packet Storm
312135 6.1 MEDIUM
Network
drupal drupal Drupal 5.x and 6.x before 6.16 uses a user-supplied value in output during site installation which could allow an attacker to craft a URL and perform a cross-site scripting attack. CWE-79
Cross-site Scripting
CVE-2010-2250 2024-11-21 10:16 2019-11-8 Show GitHub Exploit DB Packet Storm
312136 7.5 HIGH
Network
linux linux_kernel A vulnerability exists in kernel/time/clocksource.c in the Linux kernel before 2.6.34 where on non-GENERIC_TIME systems (GENERIC_TIME=n), accessing /sys/devices/system/clocksource/clocksource0/curren… CWE-20
 Improper Input Validation 
CVE-2010-2243 2024-11-21 10:16 2019-11-8 Show GitHub Exploit DB Packet Storm
312137 6.1 MEDIUM
Network
drupal
debian
drupal
debian_linux
Drupal versions 5.x and 6.x has open redirection CWE-601
Open Redirect
CVE-2010-2471 2024-11-21 10:16 2019-11-7 Show GitHub Exploit DB Packet Storm
312138 9.8 CRITICAL
Network
ruby-rbot rbot Rbot Reaction plugin allows command execution CWE-20
 Improper Input Validation 
CVE-2010-2446 2024-11-21 10:16 2019-11-7 Show GitHub Exploit DB Packet Storm
312139 7.5 HIGH
Network
makepasswd_project makepasswd makepasswd 1.10 default settings generate insecure passwords CWE-1188
 Insecure Default Initialization of Resource
CVE-2010-2247 2024-11-21 10:16 2019-11-7 Show GitHub Exploit DB Packet Storm
312140 7.5 HIGH
Network
redhat directory_server
389_directory_server
The _ger_parse_control function in Red Hat Directory Server 8 and the 389 Directory Server allows attackers to cause a denial of service (NULL pointer dereference) via a crafted search query. CWE-476
 NULL Pointer Dereference
CVE-2010-2222 2024-11-21 10:16 2019-11-6 Show GitHub Exploit DB Packet Storm