Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
611 6.5 警告
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-43951 2026-06-12 14:51 2026-06-8 Show GitHub Exploit DB Packet Storm
612 5.5 警告
Local
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-44119 2026-06-12 14:51 2026-06-8 Show GitHub Exploit DB Packet Storm
613 7.3 重要
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおけるバッファオーバーリードの脆弱性 CWE-126
バッファオーバーリード
CVE-2026-44185 2026-06-12 14:51 2026-06-8 Show GitHub Exploit DB Packet Storm
614 7.3 重要
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおける無限ループに関する脆弱性 CWE-835
無限ループ
CVE-2026-44186 2026-06-12 14:51 2026-06-8 Show GitHub Exploit DB Packet Storm
615 9.8 緊急
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおけるバッファアンダーフローの脆弱性 CWE-124
バッファアンダーフロー
CVE-2026-44631 2026-06-12 14:51 2026-06-8 Show GitHub Exploit DB Packet Storm
616 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Windows ネットワーク コントローラー (NC) ホスト エージェントのサービス拒否の脆弱性 CWE-416
CWE-822
CVE-2026-44805 2026-06-12 14:51 2026-06-9 Show GitHub Exploit DB Packet Storm
617 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 11 25h2
Microsoft Windows 11 26h1
Microsoft Windows 11 24h2
Windows 共通ログ ファイル システム ドライバーの特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-44809 2026-06-12 14:51 2026-06-9 Show GitHub Exploit DB Packet Storm
618 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows 11 26h1
Microsoft Windows 11 24h2
Microsoft Wind…
Microsoft Cryptographic Services の特権の昇格の脆弱性 CWE-287
不適切な認証
CVE-2026-44810 2026-06-12 14:51 2026-06-9 Show GitHub Exploit DB Packet Storm
619 9.8 緊急
Network
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft&n…
DHCP クライアント サービスのリモートでコードが実行される脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-44815 2026-06-12 14:51 2026-06-9 Show GitHub Exploit DB Packet Storm
620 5.3 警告
Network
ImageMagick ImageMagick ImageMagickにおける複数の脆弱性 CWE-400
CWE-770
CVE-2026-45031 2026-06-12 14:51 2026-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
255831 6.1 MEDIUM
Network
yii_software yii Reflected Cross-site scripting (XSS) vulnerability in Yii Framework before 2.0.11, when development mode is used, allows remote attackers to inject arbitrary web script or HTML via crafted request da… CWE-79
Cross-site Scripting
CVE-2017-7271 2024-11-21 12:31 2017-03-28 Show GitHub Exploit DB Packet Storm
255832 9.8 CRITICAL
Network
irssi irssi The netjoin processing in Irssi 1.x before 1.0.2 allows attackers to cause a denial of service (use-after-free) and possibly execute arbitrary code via unspecified vectors. CWE-416
 Use After Free
CVE-2017-7191 2024-11-21 12:31 2017-03-28 Show GitHub Exploit DB Packet Storm
255833 7.5 HIGH
Network
extraputty extraputty The TFTP server in ExtraPuTTY 0.30 and earlier allows remote attackers to cause a denial of service (crash) via a large (1) read or (2) write TFTP protocol message. CWE-20
 Improper Input Validation 
CVE-2017-7183 2024-11-21 12:31 2017-03-28 Show GitHub Exploit DB Packet Storm
255834 6.1 MEDIUM
Network
netflix security_monkey Netflix Security Monkey before 0.8.0 has an Open Redirect. The logout functionality accepted the "next" parameter which then redirects to any domain irrespective of the Host header. CWE-601
Open Redirect
CVE-2017-7266 2024-11-21 12:31 2017-03-26 Show GitHub Exploit DB Packet Storm
255835 7.8 HIGH
Local
artifex mupdf Use-after-free vulnerability in the fz_subsample_pixmap function in fitz/pixmap.c in Artifex MuPDF 1.10a allows remote attackers to cause a denial of service (application crash) or possibly have unsp… CWE-416
 Use After Free
CVE-2017-7264 2024-11-21 12:31 2017-03-26 Show GitHub Exploit DB Packet Storm
255836 7.8 HIGH
Local
potrace_project potrace The bm_readbody_bmp function in bitmap_io.c in Potrace 1.14 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other… CWE-125
Out-of-bounds Read
CVE-2017-7263 2024-11-21 12:31 2017-03-26 Show GitHub Exploit DB Packet Storm
255837 5.5 MEDIUM
Local
amd ryzen The AMD Ryzen processor with AGESA microcode through 2017-01-27 allows local users to cause a denial of service (system hang) via an application that makes a long series of FMA3 instructions, as demo… CWE-20
 Improper Input Validation 
CVE-2017-7262 2024-11-21 12:31 2017-03-25 Show GitHub Exploit DB Packet Storm
255838 5.5 MEDIUM
Local
linux linux_kernel The vmw_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.10.5 does not check for a zero value of certain levels data, which allows local users to… CWE-20
 Improper Input Validation 
CVE-2017-7261 2024-11-21 12:31 2017-03-25 Show GitHub Exploit DB Packet Storm
255839 5.4 MEDIUM
Network
cmsmadesimple cms_made_simple XSS exists in the CMS Made Simple (CMSMS) 2.1.6 "Content-->News-->Add Article" feature via the m1_content parameter. Someone must login to conduct the attack. CWE-79
Cross-site Scripting
CVE-2017-7257 2024-11-21 12:31 2017-03-25 Show GitHub Exploit DB Packet Storm
255840 5.4 MEDIUM
Network
cmsmadesimple cms_made_simple XSS exists in the CMS Made Simple (CMSMS) 2.1.6 "Content-->News-->Add Article" feature via the m1_summary parameter. Someone must login to conduct the attack. CWE-79
Cross-site Scripting
CVE-2017-7256 2024-11-21 12:31 2017-03-25 Show GitHub Exploit DB Packet Storm