Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3821 7.2 重要
Network
デル data domain operating system デルのdata domain operating systemにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2025-46606 2026-05-11 11:01 2026-04-17 Show GitHub Exploit DB Packet Storm
3822 8.8 重要
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2025-52613 2026-05-11 11:01 2026-05-6 Show GitHub Exploit DB Packet Storm
3823 9.8 緊急
Network
Palo Alto Networks PAN-OS Palo Alto NetworksのPAN-OSにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-0300 2026-05-11 11:01 2026-05-6 Show GitHub Exploit DB Packet Storm
3824 3.3
Local
HCL Technologies Limited sametime HCL Technologies Limitedのsametimeにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2026-21791 2026-05-11 11:01 2026-03-10 Show GitHub Exploit DB Packet Storm
3825 7.5 重要
Network
マイクロソフト Microsoft .NET Framework .NET Framework のサービス拒否の脆弱性 CWE-755
例外的な状態における不適切な処理
CVE-2026-23666 2026-05-11 11:01 2026-04-14 Show GitHub Exploit DB Packet Storm
3826 5.1 警告
Local
The GIFLIB project giflib The GIFLIB projectのgiflibにおける二重解放に関する脆弱性 CWE-415
二重解放
CVE-2026-23868 2026-05-11 11:01 2026-03-10 Show GitHub Exploit DB Packet Storm
3827 9 緊急
Network
マイクロソフト Microsoft Power Apps Microsoft Power Apps のセキュリティ機能のバイパス CWE-150
エスケープ、メタ、またはコントロールシーケンスの不適切な無効化
CVE-2026-26149 2026-05-11 11:01 2026-04-14 Show GitHub Exploit DB Packet Storm
3828 7.5 重要
Network
マイクロソフト .NET
PowerShell
.NET のサービス拒否の脆弱性 CWE-400
CWE-611
CVE-2026-26171 2026-05-11 11:01 2026-04-14 Show GitHub Exploit DB Packet Storm
3829 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2026-31440 2026-05-11 11:01 2026-04-22 Show GitHub Exploit DB Packet Storm
3830 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2026-31441 2026-05-11 11:01 2026-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
571 5.8 MEDIUM
Network
- - On affected platforms running Arista EOS where a tunnel decapsulation configuration—such as VXLAN (Virtual Extensible LAN), decap-groups, or a GRE (Generic Routing Encapsulation) tunnel interface—is … Update CWE-1023
 Incomplete Comparison with Missing Factors
CVE-2026-7473 2026-06-10 03:17 2026-06-6 Show GitHub Exploit DB Packet Storm
572 8.8 HIGH
Network
- - The RemoteControl API methods invite_participants and remind_participants pass a caller-supplied token-ID array into TokenDynamic::findUninvited(), which concatenates the values directly into a tid I… New CWE-89
SQL Injection
CVE-2026-50636 2026-06-10 03:17 2026-06-10 Show GitHub Exploit DB Packet Storm
573 8.8 HIGH
Network
- - LimeSurvey constructs account password-reset links from the client-supplied HTTP Host header without validating it. The optional allowedHosts allowlist that would constrain this is undefined in the d… New CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2026-50635 2026-06-10 03:17 2026-06-10 Show GitHub Exploit DB Packet Storm
574 7.8 HIGH
Local
- - Missing authentication for critical function in Microsoft PC Manager allows an authorized attacker to elevate privileges locally. New CWE-306
Missing Authentication for Critical Function
CVE-2026-50512 2026-06-10 03:17 2026-06-10 Show GitHub Exploit DB Packet Storm
575 7.8 HIGH
Local
- - Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally. New CWE-59
Link Following
CVE-2026-50511 2026-06-10 03:17 2026-06-10 Show GitHub Exploit DB Packet Storm
576 6.5 MEDIUM
Network
- - Hermes WebUI before version 0.51.269 contains a profile isolation bypass vulnerability that allows authenticated users to access data belonging to other profiles by querying the session search endpoi… New CWE-862
 Missing Authorization
CVE-2026-49956 2026-06-10 03:17 2026-06-10 Show GitHub Exploit DB Packet Storm
577 7.8 HIGH
Local
- - InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation … New CWE-787
 Out-of-bounds Write
CVE-2026-48293 2026-06-10 03:17 2026-06-10 Show GitHub Exploit DB Packet Storm
578 8.1 HIGH
Network
- - Improper authorization in Microsoft Exchange Server allows an authorized attacker to disclose information over a network. New CWE-285
Improper Authorization
CVE-2026-45503 2026-06-10 03:16 2026-06-10 Show GitHub Exploit DB Packet Storm
579 6.5 MEDIUM
Network
- - Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to perform spoofing over a network. New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-45501 2026-06-10 03:16 2026-06-10 Show GitHub Exploit DB Packet Storm
580 6.3 MEDIUM
Local
- - Dell/Alienware Purchased Apps, versions prior to 1.1.32.0, contain an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker with local access could p… New CWE-59
Link Following
CVE-2026-44275 2026-06-10 03:16 2026-06-10 Show GitHub Exploit DB Packet Storm