Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
751 7.9 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2012
Microsoft Windows 11 24h2
Microsoft Windows 10 21h2
Microsoft Wind…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-1329
アップデートができないコンポーネントへの依存
CVE-2026-48576 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
752 7.9 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2012
Microsoft Windows 11 24h2
Microsoft Windows 10 21h2
Microsoft Wind…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-48578 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
753 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 11 24h2
Microsoft Windows 10 21h2
Microsoft Windows Server 2016
Microsoft Wind…
Windows カーネルの特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-48583 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
754 7.3 重要
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-48913 2026-06-11 16:15 2026-06-8 Show GitHub Exploit DB Packet Storm
755 7.5 重要
Network
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 11 24h2
Microsoft Windows 10 21h2
Microsoft Windows Server 2016
Microsoft Wind…
HTTP.sys のサービス拒否の脆弱性 CWE-400
リソースの枯渇
CVE-2026-49160 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
756 5.3 警告
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおけるエンコードおよびエスケープに関する脆弱性 CWE-116
不適切なエンコード、または出力のエスケープ
CVE-2026-49472 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
757 7.5 重要
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおける複数の脆弱性 CWE-125
CWE-20
CWE-787
CVE-2026-49475 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
758 9.1 緊急
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおける複数の脆弱性 CWE-122
CWE-195
CWE-20
CWE-787
CVE-2026-49840 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
759 9.8 緊急
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおける複数の脆弱性 CWE-122
CWE-131
CVE-2026-49841 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
760 7.5 重要
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-49842 2026-06-11 16:15 2026-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3521 7.5 HIGH
Network
oracle rest_data_services Vulnerability in Oracle REST Data Services (component: Mongoapi). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerability allows unauthenticated attacker with networ… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-46829 2026-06-4 02:41 2026-05-29 Show GitHub Exploit DB Packet Storm
3522 6.5 MEDIUM
Network
nextcloud approval Nextcloud is an open source content collaboration platform. Prior to version 2.7.2, a privilege escalation vulnerability exists in the Approval app that allows a user without sharing permissions to f… CWE-285
Improper Authorization
CVE-2026-45275 2026-06-4 02:39 2026-06-2 Show GitHub Exploit DB Packet Storm
3523 9.1 CRITICAL
Network
oracle e-business_suite Vulnerability in the Oracle Internet Procurement Connector product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploi… CWE-284
Improper Access Control
CVE-2026-46819 2026-06-4 02:37 2026-05-29 Show GitHub Exploit DB Packet Storm
3524 3.3 LOW
Local
nextcloud approval Nextcloud is an open source content collaboration platform. Prior to version 2.7.2, authenticated users can check if arbitrary files are associated with specific approval workflows where they can req… CWE-200
NVD-CWE-noinfo
Information Exposure
CVE-2026-45277 2026-06-4 02:36 2026-06-2 Show GitHub Exploit DB Packet Storm
3525 6.1 MEDIUM
Network
nextcloud user_oidc Nextcloud is an open source content collaboration platform. From version 6.1.0 to before version 8.2.2, an attacker can craft links that would redirect users to another website, when the victim uses … CWE-601
Open Redirect
CVE-2026-45278 2026-06-4 02:34 2026-06-2 Show GitHub Exploit DB Packet Storm
3526 7.5 HIGH
Network
mosaic5g flexric FlexRIC v2.0.0 crashes when the iApp receives an E42_RIC_SUBSCRIPTION_REQUEST referencing a non-existent E2 Node. The lookup function returns NULL, which is enforced by assert() in Debug builds (SIGA… CWE-476
 NULL Pointer Dereference
CVE-2026-37226 2026-06-4 02:16 2026-06-2 Show GitHub Exploit DB Packet Storm
3527 7.5 HIGH
Network
mosaic5g flexric FlexRIC v2.0.0 contains a reachable assertion in e2ap_recv_sctp_msg() (src/lib/ep/e2ap_ep.c). The function allocates a fixed 32KB receive buffer and enforces assert(rc < len) on the sctp_recvmsg() re… CWE-617
 Reachable Assertion
CVE-2026-37228 2026-06-4 02:16 2026-06-2 Show GitHub Exploit DB Packet Storm
3528 7.5 HIGH
Network
mosaic5g flexric FlexRIC v2.0.0 contains a reachable assertion in e2ap_create_pdu() triggered when ASN.1 PER decoding fails. A remote unauthenticated attacker can send any non-PER byte sequence (e.g., a single 0x00 b… CWE-617
 Reachable Assertion
CVE-2026-37229 2026-06-4 02:16 2026-06-2 Show GitHub Exploit DB Packet Storm
3529 7.5 HIGH
Network
mosaic5g flexric FlexRIC v2.0.0 crashes when the near-RT RIC receives a RIC_INDICATION message with a ran_func_id that does not exist in its registry. The lookup returns NULL, triggering assert() in Debug builds (SIG… CWE-476
 NULL Pointer Dereference
CVE-2026-37230 2026-06-4 02:16 2026-06-2 Show GitHub Exploit DB Packet Storm
3530 7.5 HIGH
Network
mosaic5g flexric FlexRIC v2.0.0 uses a uint16_t counter for xapp_id assignment but stores the value in uint32_t message fields. After 65,530+ E42_SETUP_REQUESTs, the 16-bit counter wraps around and produces duplicate… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2026-37231 2026-06-4 02:16 2026-06-2 Show GitHub Exploit DB Packet Storm