Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
521 7.8 重要
Local
アドビシステムズ Adobe Acrobat Reader DC
Adobe Acrobat DC
Adobe Acrobat
アドビのAdobe Acrobat等の複数製品におけるヒープベースのバッファオーバーフローの脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-47952 2026-06-15 11:16 2026-06-9 Show GitHub Exploit DB Packet Storm
522 7.8 重要
Local
アドビシステムズ Adobe Acrobat Reader DC
Adobe Acrobat DC
Adobe Acrobat
アドビのAdobe Acrobat等の複数製品における解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-47955 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
523 7.8 重要
Local
アドビシステムズ Adobe Reader
Adobe Acrobat
アドビのAdobe Acrobat等の複数製品におけるスタックベースのバッファオーバーフローの脆弱性 New CWE-121
スタックオーバーフロー
CVE-2026-47959 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
524 5.5 警告
Local
アドビシステムズ Adobe Reader
Adobe Acrobat
アドビのAdobe Acrobat等の複数製品における境界外読み取りに関する脆弱性 New CWE-125
境界外読み取り
CVE-2026-47961 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
525 7.8 重要
Local
アドビシステムズ Adobe Format Plugins アドビのAdobe Format Pluginsにおけるヒープベースのバッファオーバーフローの脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-48291 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
526 7.8 重要
Local
アドビシステムズ Adobe Format Plugins アドビのAdobe Format Pluginsにおけるヒープベースのバッファオーバーフローの脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-48292 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
527 10 緊急
Network
アドビシステムズ Adobe Campaign アドビのAdobe Campaignにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-48303 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
528 5.4 警告
Network
マイクロソフト Microsoft SharePoint Server Microsoft SharePoint Server のなりすましの脆弱性 New CWE-502
CWE-79
CVE-2026-48560 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
529 4.6 警告
Network
マイクロソフト Microsoft SharePoint Server Microsoft SharePoint Server のなりすましの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-48562 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
530 5.5 警告
Local
マイクロソフト Visual Studio Code Visual Studio Code セキュリティ機能のバイパスの脆弱性 New CWE-20
CWE-23
CWE-noinfo
CVE-2026-48569 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
254911 9.8 CRITICAL
Network
accellion file_transfer_appliance An issue was discovered on Accellion FTA devices before FTA_9_12_180. seos/1000/find.api allows Remote Code Execution with shell metacharacters in the method parameter. CWE-116
 Improper Encoding or Escaping of Output
CVE-2017-8303 2024-11-21 12:33 2017-05-6 Show GitHub Exploit DB Packet Storm
254912 8.8 HIGH
Network
atlassian hipchat_server Atlassian Hipchat Server before 2.2.4 allows remote authenticated users with user level privileges to execute arbitrary code via vectors involving image uploads. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2017-8080 2024-11-21 12:33 2017-05-5 Show GitHub Exploit DB Packet Storm
254913 5.9 MEDIUM
Network
watchguard panda_mobile_security Acceptance of invalid/self-signed TLS certificates in "Panda Mobile Security" 1.1 for iOS allows a man-in-the-middle and/or physically proximate attacker to silently intercept information sent during… CWE-295
Improper Certificate Validation 
CVE-2017-8060 2024-11-21 12:33 2017-05-5 Show GitHub Exploit DB Packet Storm
254914 8.1 HIGH
Network
foxitsoftware foxit_pdf Acceptance of invalid/self-signed TLS certificates in "Foxit PDF - PDF reader, editor, form, signature" before 5.4 for iOS allows a man-in-the-middle and/or physically proximate attacker to silently … CWE-295
Improper Certificate Validation 
CVE-2017-8059 2024-11-21 12:33 2017-05-5 Show GitHub Exploit DB Packet Storm
254915 5.9 MEDIUM
Network
atlassian hipchat Acceptance of invalid/self-signed TLS certificates in Atlassian HipChat before 3.16.2 for iOS allows a man-in-the-middle and/or physically proximate attacker to silently intercept information sent du… CWE-295
Improper Certificate Validation 
CVE-2017-8058 2024-11-21 12:33 2017-05-5 Show GitHub Exploit DB Packet Storm
254916 5.9 MEDIUM
Network
wordpress wordpress WordPress through 4.7.4 relies on the Host HTTP header for a password-reset e-mail message, which makes it easier for remote attackers to reset arbitrary passwords by making a crafted wp-login.php?ac… CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2017-8295 2024-11-21 12:33 2017-05-4 Show GitHub Exploit DB Packet Storm
254917 3.8 LOW
Local
xen
novell
suse
xen
suse_linux_enterprise_point_of_sale
openstack_cloud
manager_proxy
manager
suse_linux_enterprise_server
Xen PV guest before Xen 4.3 checked access permissions to MMIO ranges only after accessing them, allowing host PCI device space memory reads, leading to information disclosure. This is an error in th… CWE-200
Information Exposure
CVE-2017-7995 2024-11-21 12:33 2017-05-4 Show GitHub Exploit DB Packet Storm
254918 6.5 MEDIUM
Local
qemu
debian
qemu
debian_linux
hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (infinite loop and CPU consumption) via the message ring page count. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2017-8112 2024-11-21 12:33 2017-05-2 Show GitHub Exploit DB Packet Storm
254919 6.5 MEDIUM
Local
qemu
debian
qemu
debian_linux
Memory leak in the v9fs_list_xattr function in hw/9pfs/9p-xattr.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (memory consumption) via vectors inv… CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2017-8086 2024-11-21 12:33 2017-05-2 Show GitHub Exploit DB Packet Storm
254920 8.8 HIGH
Adjacent
360fly 4k_camera_firmware 360fly 4K cameras allow unauthenticated Wi-Fi password changes and complete access with REST by using the Bluetooth Low Energy pairing procedure, which is available at any time and does not require a… CWE-287
Improper Authentication
CVE-2017-8403 2024-11-21 12:33 2017-05-2 Show GitHub Exploit DB Packet Storm