Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
751 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-6277 2026-06-12 14:44 2026-06-11 Show GitHub Exploit DB Packet Storm
752 8.7 重要
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-6552 2026-06-12 14:44 2026-06-11 Show GitHub Exploit DB Packet Storm
753 3.7
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-6976 2026-06-12 14:44 2026-06-11 Show GitHub Exploit DB Packet Storm
754 7.5 重要
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-7250 2026-06-12 14:44 2026-06-11 Show GitHub Exploit DB Packet Storm
755 8.7 重要
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-8589 2026-06-12 14:44 2026-06-11 Show GitHub Exploit DB Packet Storm
756 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-9204 2026-06-12 14:44 2026-06-11 Show GitHub Exploit DB Packet Storm
757 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける置換文字列の無害化に関する脆弱性 CWE-153
置換文字列の不適切な無害化
CVE-2026-9694 2026-06-12 14:44 2026-06-11 Show GitHub Exploit DB Packet Storm
758 7.8 重要
Local
The Open Group Unix opengroupのUnixにおける古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2025-71263 2026-06-12 14:35 2026-03-13 Show GitHub Exploit DB Packet Storm
759 7.5 重要
Network
Dana Powers (dpkp) kafka-python Dana Powers (dpkp)のkafka-pythonにおける過剰なサイズ値のメモリ割り当てに関する脆弱性 CWE-789
過剰なサイズ値のメモリ割り当て
CVE-2026-10142 2026-06-12 14:35 2026-06-10 Show GitHub Exploit DB Packet Storm
760 7.5 重要
Network
Dana Powers (dpkp) kafka-python Dana Powers (dpkp)のkafka-pythonにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-10143 2026-06-12 14:35 2026-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
256001 7.5 HIGH
Network
cisco asr_5000_software A vulnerability in the Border Gateway Protocol (BGP) processing functionality of the Cisco StarOS operating system for Cisco ASR 5000 Series Routers and Cisco Virtualized Packet Core (VPC) Software c… NVD-CWE-noinfo
CVE-2017-6729 2024-11-21 12:30 2017-07-11 Show GitHub Exploit DB Packet Storm
256002 8.1 HIGH
Network
siemens simatic_cp_44x-1_redundant_network_access_modules An Improper Authentication issue was discovered in Siemens SIMATIC CP 44x-1 RNA, all versions prior to 1.4.1. An unauthenticated remote attacker may be able to perform administrative actions on the C… CWE-287
Improper Authentication
CVE-2017-6868 2024-11-21 12:30 2017-07-8 Show GitHub Exploit DB Packet Storm
256003 9.8 CRITICAL
Network
cisco ultra_services_framework_staging_server A vulnerability in the AutoIT service of Cisco Ultra Services Framework Staging Server could allow an unauthenticated, remote attacker to execute arbitrary shell commands as the Linux root user. The … CWE-78
OS Command 
CVE-2017-6714 2024-11-21 12:30 2017-07-6 Show GitHub Exploit DB Packet Storm
256004 9.8 CRITICAL
Network
cisco elastic_services_controller A vulnerability in the Play Framework of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote attacker to gain full access to the affected system. The vulnerability is due t… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2017-6713 2024-11-21 12:30 2017-07-6 Show GitHub Exploit DB Packet Storm
256005 8.8 HIGH
Network
cisco elastic_services_controller A vulnerability in certain commands of Cisco Elastic Services Controller could allow an authenticated, remote attacker to elevate privileges to root and run dangerous commands on the server. The vuln… CWE-78
OS Command 
CVE-2017-6712 2024-11-21 12:30 2017-07-6 Show GitHub Exploit DB Packet Storm
256006 9.1 CRITICAL
Network
cisco ultra_services_framework A vulnerability in the Ultra Automation Service (UAS) of the Cisco Ultra Services Framework could allow an unauthenticated, remote attacker to gain unauthorized access to a targeted device. The vulne… CWE-287
Improper Authentication
CVE-2017-6711 2024-11-21 12:30 2017-07-6 Show GitHub Exploit DB Packet Storm
256007 9.8 CRITICAL
Network
cisco ultra_services_framework A vulnerability in the AutoVNF tool for the Cisco Ultra Services Framework could allow an unauthenticated, remote attacker to access administrative credentials for Cisco Elastic Services Controller (… CWE-532
CWE-522
 Inclusion of Sensitive Information in Log Files
 Insufficiently Protected Credentials
CVE-2017-6709 2024-11-21 12:30 2017-07-6 Show GitHub Exploit DB Packet Storm
256008 9.8 CRITICAL
Network
cisco ultra_services_framework A vulnerability in the symbolic link (symlink) creation functionality of the AutoVNF tool for the Cisco Ultra Services Framework could allow an unauthenticated, remote attacker to read sensitive file… CWE-200
Information Exposure
CVE-2017-6708 2024-11-21 12:30 2017-07-6 Show GitHub Exploit DB Packet Storm
256009 8.2 HIGH
Local
cisco staros A vulnerability in the CLI command-parsing code of the Cisco StarOS operating system for Cisco ASR 5000 Series 11.0 through 21.0, 5500 Series, and 5700 Series devices and Cisco Virtualized Packet Cor… CWE-78
OS Command 
CVE-2017-6707 2024-11-21 12:30 2017-07-6 Show GitHub Exploit DB Packet Storm
256010 6.1 MEDIUM
Network
cisco prime_infrastructure A vulnerability in the web framework code of Cisco Prime Infrastructure could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web interf… CWE-79
Cross-site Scripting
CVE-2017-6725 2024-11-21 12:30 2017-07-4 Show GitHub Exploit DB Packet Storm