Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
641 9.8 緊急
Network
オラクル Oracle Unified Directory オラクルのOracle Unified Directoryにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46773 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
642 9.8 緊急
Network
オラクル Oracle Unified Directory オラクルのOracle Unified Directoryにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46774 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
643 8.6 重要
Network
オラクル Oracle Unified Directory オラクルのOracle Unified Directoryにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46776 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
644 9.1 緊急
Network
オラクル Oracle WebCenter Content オラクルのOracle WebCenter Contentにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-46777 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
645 8.8 重要
Network
オラクル Oracle WebCenter Content オラクルのOracle WebCenter Contentにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-46780 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
646 9.8 緊急
Network
オラクル Oracle WebCenter Content オラクルのOracle WebCenter Contentにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-46783 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
647 9.1 緊急
Network
オラクル Oracle WebCenter Content オラクルのOracle WebCenter Contentにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46784 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
648 9.3 緊急
Network
オラクル Oracle WebCenter Content オラクルのOracle WebCenter Contentにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-46785 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
649 9.6 緊急
Network
オラクル Oracle WebCenter Content オラクルのOracle WebCenter Contentにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-46786 2026-06-22 11:55 2026-06-17 Show GitHub Exploit DB Packet Storm
650 8 重要
Network
オラクル Oracle WebCenter Content オラクルのOracle WebCenter Contentにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-46787 2026-06-22 11:54 2026-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 26, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
254161 6.1 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
In WordPress before 4.7.5, a cross-site scripting (XSS) vulnerability related to the Customizer exists, involving an invalid customization session. CWE-79
Cross-site Scripting
CVE-2017-9063 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
254162 8.6 HIGH
Network
wordpress
debian
wordpress
debian_linux
In WordPress before 4.7.5, there is improper handling of post meta data values in the XML-RPC API. CWE-352
CWE-79
CWE-601
 Origin Validation Error
Cross-site Scripting
Open Redirect
CVE-2017-9062 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
254163 6.1 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
In WordPress before 4.7.5, a cross-site scripting (XSS) vulnerability exists when attempting to upload very large files, because the error message does not properly restrict presentation of the filen… CWE-79
Cross-site Scripting
CVE-2017-9061 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
254164 5.5 MEDIUM
Local
linux linux_kernel The NFSv4 implementation in the Linux kernel through 4.11.1 allows local users to cause a denial of service (resource consumption) by leveraging improper channel callback shutdown when unmounting an … CWE-404
 Improper Resource Shutdown or Release
CVE-2017-9059 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
254165 9.8 CRITICAL
Network
ytnef_project
canonical
ytnef
ubuntu_linux
In libytnef in ytnef through 1.9.2, there is a heap-based buffer over-read due to incorrect boundary checking in the SIZECHECK macro in lib/ytnef.c. CWE-125
Out-of-bounds Read
CVE-2017-9058 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
254166 9.8 CRITICAL
Network
libdwarf_project libdwarf An issue, also known as DW201703-001, was discovered in libdwarf 2017-03-21. In dwarf_formsdata() a few data types were not checked for being in bounds, leading to a heap-based buffer over-read. CWE-125
Out-of-bounds Read
CVE-2017-9055 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
254167 9.8 CRITICAL
Network
libdwarf_project libdwarf An issue, also known as DW201703-002, was discovered in libdwarf 2017-03-21. In _dwarf_decode_s_leb128_chk() a byte pointer was dereferenced just before it was checked for being in bounds, leading to… CWE-125
Out-of-bounds Read
CVE-2017-9054 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
254168 9.1 CRITICAL
Network
libdwarf_project libdwarf An issue, also known as DW201703-005, was discovered in libdwarf 2017-03-21. A heap-based buffer over-read in _dwarf_read_loc_expr_op() is due to a failure to check a pointer for being in bounds (in … CWE-125
Out-of-bounds Read
CVE-2017-9053 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
254169 9.8 CRITICAL
Network
libdwarf_project libdwarf An issue, also known as DW201703-006, was discovered in libdwarf 2017-03-21. A heap-based buffer over-read in dwarf_formsdata() is due to a failure to check a pointer for being in bounds (in a few pl… CWE-119
CWE-125
Incorrect Access of Indexable Resource ('Range Error') 
Out-of-bounds Read
CVE-2017-9052 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
254170 9.8 CRITICAL
Network
libav libav libav before 12.1 is vulnerable to an invalid read of size 1 due to NULL pointer dereferencing in the nsv_read_chunk function in libavformat/nsvdec.c. CWE-476
 NULL Pointer Dereference
CVE-2017-9051 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm