Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
531 4.6 警告
Network
マイクロソフト Microsoft SharePoint Server Microsoft SharePoint Server のなりすましの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-48562 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
532 5.5 警告
Local
マイクロソフト Visual Studio Code Visual Studio Code セキュリティ機能のバイパスの脆弱性 CWE-20
CWE-23
CWE-noinfo
CVE-2026-48569 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
533 7.8 重要
Local
マイクロソフト Microsoft PC Manager Microsoft PC マネージャーのセキュリティ機能バイパスの脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-49161 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
534 8.8 重要
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-50223 2026-06-15 11:15 2026-06-10 Show GitHub Exploit DB Packet Storm
535 6.5 警告
Network
Apache Software Foundation Apache CXF Apache Software FoundationのApache CXFにおける認証に関する脆弱性 CWE-287
CWE-noinfo
CVE-2026-50623 2026-06-15 11:15 2026-06-12 Show GitHub Exploit DB Packet Storm
536 5.3 警告
Network
Apache Software Foundation Apache CXF Apache Software FoundationのApache CXFにおけるCRLF インジェクションの脆弱性 CWE-93
CRLF インジェクション
CVE-2026-50629 2026-06-15 11:15 2026-06-12 Show GitHub Exploit DB Packet Storm
537 6.5 警告
Network
Apache Software Foundation Apache CXF Apache Software FoundationのApache CXFにおけるHTTP レスポンス分割に関する脆弱性 CWE-113
HTTP レスポンスの分割
CVE-2026-50630 2026-06-15 11:15 2026-06-12 Show GitHub Exploit DB Packet Storm
538 7.4 重要
Network
Apache Software Foundation Apache CXF Apache Software FoundationのApache CXFにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-50631 2026-06-15 11:15 2026-06-12 Show GitHub Exploit DB Packet Storm
539 8.1 重要
Network
Apache Software Foundation Apache CXF Apache Software FoundationのApache CXFにおける入力確認に関する脆弱性 CWE-20
CWE-noinfo
CVE-2026-50632 2026-06-15 11:15 2026-06-12 Show GitHub Exploit DB Packet Storm
540 8.1 重要
Network
Apache Software Foundation Apache CXF Apache Software FoundationのApache CXFにおける入力確認に関する脆弱性 CWE-20
CWE-noinfo
CVE-2026-50633 2026-06-15 11:15 2026-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
309701 - ezbsystems ultraiso Untrusted search path vulnerability in UltraISO 9.3.6.2750 allows local users to gain privileges via a Trojan horse daemon.dll file in the current working directory, as demonstrated by a directory th… NVD-CWE-Other
CVE-2010-5255 2024-11-21 10:22 2012-09-7 Show GitHub Exploit DB Packet Storm
309702 - gfi gfi_backup_2009 Untrusted search path vulnerability in GFI Backup 3.1 Build 20100730 2009 Home Edition allows local users to gain privileges via a Trojan horse ArmAccess.dll file in the current working directory, as… NVD-CWE-Other
CVE-2010-5254 2024-11-21 10:22 2012-09-7 Show GitHub Exploit DB Packet Storm
309703 - winimage winimage Untrusted search path vulnerability in WinImage 8.50 allows local users to gain privileges via a Trojan horse wnaspi32.dll file in the current working directory, as demonstrated by a directory that c… NVD-CWE-Other
CVE-2010-5253 2024-11-21 10:22 2012-09-7 Show GitHub Exploit DB Packet Storm
309704 - httrack httrack Untrusted search path vulnerability in HTTrack 3.43-9 allows local users to gain privileges via a Trojan horse httrack-plugin.dll file in the current working directory, as demonstrated by a directory… NVD-CWE-Other
CVE-2010-5252 2024-11-21 10:22 2012-09-7 Show GitHub Exploit DB Packet Storm
309705 - ibm lotus_notes Multiple untrusted search path vulnerabilities in IBM Lotus Notes 8.5 allow local users to gain privileges via a Trojan horse (1) nnoteswc.dll or (2) nlsxbe.dll file in the current working directory,… NVD-CWE-Other
CVE-2010-5251 2024-11-21 10:22 2012-09-7 Show GitHub Exploit DB Packet Storm
309706 - pthread-win32_project pthreads-win32 Untrusted search path vulnerability in the pthread_win32_process_attach_np function in pthreadGC2.dll in Pthreads-win32 2.8.0 allows local users to gain privileges via a Trojan horse quserex.dll file… CWE-426
 Untrusted Search Path
CVE-2010-5250 2024-11-21 10:22 2012-09-7 Show GitHub Exploit DB Packet Storm
309707 - sophos safeguard_privatecrypto
free_encryption
Untrusted search path vulnerability in Sophos Free Encryption 2.40.1.1 and Sophos SafeGuard PrivateCrypto 2.40.1.2 allows local users to gain privileges via a Trojan horse pcrypt0406.dll file in the … NVD-CWE-Other
CVE-2010-5249 2024-11-21 10:22 2012-09-7 Show GitHub Exploit DB Packet Storm
309708 - ultravnc ultravnc Untrusted search path vulnerability in UltraVNC 1.0.8.2 allows local users to gain privileges via a Trojan horse vnclang.dll file in the current working directory, as demonstrated by a directory that… NVD-CWE-Other
CVE-2010-5248 2024-11-21 10:22 2012-09-7 Show GitHub Exploit DB Packet Storm
309709 - qtweb qtweb Untrusted search path vulnerability in QtWeb Browser 3.3 build 043 allows local users to gain privileges via a Trojan horse wintab32.dll file in the current working directory, as demonstrated by a di… NVD-CWE-Other
CVE-2010-5247 2024-11-21 10:22 2012-09-7 Show GitHub Exploit DB Packet Storm
309710 - maxthon maxthon_browser Multiple untrusted search path vulnerabilities in Maxthon Browser 1.6.7.35 and 2.5.15 allow local users to gain privileges via a Trojan horse (1) RSRC32.dll or (2) dwmapi.dll file in the current work… NVD-CWE-Other
CVE-2010-5246 2024-11-21 10:22 2012-09-7 Show GitHub Exploit DB Packet Storm