Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
471 7.5 重要
Network
tdengine tdengine tdengineにおける整数アンダーフローの脆弱性 CWE-191
整数アンダーフロー
CVE-2026-42542 2026-06-15 11:18 2026-06-10 Show GitHub Exploit DB Packet Storm
472 8.1 重要
Network
マイクロソフト Microsoft Teams Android 用の Microsoft Teams の情報漏えいの脆弱性 CWE-74
インジェクション
CVE-2026-42835 2026-06-15 11:18 2026-06-9 Show GitHub Exploit DB Packet Storm
473 9.8 緊急
Network
QNAP Systems qumagie QNAP Systemsのqumagieにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-44083 2026-06-15 11:18 2026-06-9 Show GitHub Exploit DB Packet Storm
474 7.5 重要
Network
axios project axios axios projectのaxiosにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-44486 2026-06-15 11:18 2026-06-11 Show GitHub Exploit DB Packet Storm
475 7.5 重要
Network
axios project axios axios projectのaxiosにおける送信データへの重要な情報の挿入に関する脆弱性 CWE-201
送信データへの重要な情報の挿入
CVE-2026-44487 2026-06-15 11:18 2026-06-11 Show GitHub Exploit DB Packet Storm
476 7.5 重要
Network
axios project axios axios projectのaxiosにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-44488 2026-06-15 11:18 2026-06-11 Show GitHub Exploit DB Packet Storm
477 8.6 重要
Network
axios project axios axios projectのaxiosにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-44492 2026-06-15 11:18 2026-06-11 Show GitHub Exploit DB Packet Storm
478 8.7 重要
Network
axios project axios axios projectのaxiosにおける複数の脆弱性 CWE-1321
CWE-441
CVE-2026-44494 2026-06-15 11:18 2026-06-11 Show GitHub Exploit DB Packet Storm
479 7.5 重要
Network
axios project axios axios projectのaxiosにおける複数の脆弱性 CWE-1333
CWE-400
CVE-2026-44496 2026-06-15 11:18 2026-06-11 Show GitHub Exploit DB Packet Storm
480 7.5 重要
Network
Pipecat Pipecat Pipecatにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-44716 2026-06-15 11:18 2026-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
255901 4.7 MEDIUM
Network
drupal
debian
drupal
debian_linux
Drupal core 7.x versions before 7.57 has an external link injection vulnerability when the language switcher block is used. A similar vulnerability exists in various custom and contributed modules. T… CWE-601
Open Redirect
CVE-2017-6932 2024-11-21 12:30 2018-03-2 Show GitHub Exploit DB Packet Storm
255902 6.5 MEDIUM
Network
drupal drupal In Drupal versions 8.4.x versions before 8.4.5 the Settings Tray module has a vulnerability that allows users to update certain data that they do not have the permissions for. If you have implemented… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2017-6931 2024-11-21 12:30 2018-03-2 Show GitHub Exploit DB Packet Storm
255903 8.1 HIGH
Network
drupal drupal In Drupal versions 8.4.x versions before 8.4.5 when using node access controls with a multilingual site, Drupal marks the untranslated version of a node as the default fallback for access queries. Th… NVD-CWE-noinfo
CVE-2017-6930 2024-11-21 12:30 2018-03-2 Show GitHub Exploit DB Packet Storm
255904 6.1 MEDIUM
Network
drupal
debian
drupal
debian_linux
A jQuery cross site scripting vulnerability is present when making Ajax requests to untrusted domains. This vulnerability is mitigated by the fact that it requires contributed or custom modules in or… CWE-79
Cross-site Scripting
CVE-2017-6929 2024-11-21 12:30 2018-03-2 Show GitHub Exploit DB Packet Storm
255905 5.3 MEDIUM
Network
drupal
debian
drupal
debian_linux
Drupal core 7.x versions before 7.57 when using Drupal's private file system, Drupal will check to make sure a user has access to a file before allowing the user to view or download it. This check fa… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-6928 2024-11-21 12:30 2018-03-2 Show GitHub Exploit DB Packet Storm
255906 6.1 MEDIUM
Network
drupal
debian
drupal
debian_linux
Drupal 8.4.x versions before 8.4.5 and Drupal 7.x versions before 7.57 has a Drupal.checkPlain() JavaScript function which is used to escape potentially dangerous text before outputting it to HTML (a… CWE-79
Cross-site Scripting
CVE-2017-6927 2024-11-21 12:30 2018-03-2 Show GitHub Exploit DB Packet Storm
255907 8.1 HIGH
Network
drupal drupal In Drupal versions 8.4.x versions before 8.4.5 users with permission to post comments are able to view content and comments they do not have access to, and are also able to add comments to this conte… CWE-200
Information Exposure
CVE-2017-6926 2024-11-21 12:30 2018-03-2 Show GitHub Exploit DB Packet Storm
255908 6.4 MEDIUM
Local
cisco umbrella The Cisco Umbrella Virtual Appliance Version 2.0.3 and prior contained an undocumented encrypted remote support tunnel (SSH) which auto initiated from the customer's appliance to Cisco's SSH Hubs in … NVD-CWE-noinfo
CVE-2017-6679 2024-11-21 12:30 2017-12-2 Show GitHub Exploit DB Packet Storm
255909 6.5 MEDIUM
Network
cisco sf302-08pp_firmware
sf302-08mpp_firmware
sg300-10pp_firmware
sg300-10mpp_firmware
sf300-24pp_firmware
sf300-48pp_firmware
sg300-28pp_firmware
sf300-08_firmware
sf300-48p_firmw…
A vulnerability in the Secure Shell (SSH) subsystem of Cisco Small Business Managed Switches software could allow an authenticated, remote attacker to cause a reload of the affected switch, resulting… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-6720 2024-11-21 12:30 2017-09-21 Show GitHub Exploit DB Packet Storm
255910 6.7 MEDIUM
Local
cisco ios_xe A vulnerability in the USB-modem code of Cisco IOS XE Software running on Cisco ASR 920 Series Aggregation Services Routers could allow an authenticated, local attacker to inject and execute arbitrar… CWE-78
OS Command 
CVE-2017-6796 2024-11-21 12:30 2017-09-8 Show GitHub Exploit DB Packet Storm