Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
771 3.3
Local
マイクロソフト Microsoft Office 2024 Long-Term Servicing Channel Edition
Microsoft Office 2021 Long Term Servicing Channel Edition
Microsoft&nb…
Microsoft Office の情報漏えいの脆弱性 CWE-125
境界外読み取り
CVE-2026-45485 2026-06-12 14:34 2026-06-9 Show GitHub Exploit DB Packet Storm
772 7.8 重要
Local
マイクロソフト Microsoft Office 2024 Long-Term Servicing Channel Edition
Microsoft Office 2021 Long Term Servicing Channel Edition
Microsoft&nb…
Microsoft Word のリモートでコードが実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-45486 2026-06-12 14:34 2026-06-9 Show GitHub Exploit DB Packet Storm
773 7.8 重要
Local
マイクロソフト Microsoft Office 2024 Long-Term Servicing Channel Edition
Microsoft Office 2021 Long Term Servicing Channel Edition
Microsoft&nb…
Microsoft Word のリモートでコードが実行される脆弱性 CWE-822
信頼性のないポインタデリファレンス
CVE-2026-45643 2026-06-12 14:34 2026-06-9 Show GitHub Exploit DB Packet Storm
774 8.4 重要
Local
マイクロソフト Microsoft Office 2024 Long-Term Servicing Channel Edition Microsoft Outlook および Word のリモートでコードが実行される脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-47635 2026-06-12 14:34 2026-06-9 Show GitHub Exploit DB Packet Storm
775 6.5 警告
Network
ERLANG
chilkat software
Erlang/OTP
Erlang/Inets (Inets)
ftp
ERLANGのErlang/Inets (Inets)等の複数製品におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-48858 2026-06-12 14:34 2026-06-10 Show GitHub Exploit DB Packet Storm
776 7.1 重要
Local
- アップルのmacOSにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2022-26758 2026-06-12 14:34 2026-06-10 Show GitHub Exploit DB Packet Storm
777 3.5
Physics
- アップルのmacOSにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2022-48575 2026-06-12 14:34 2026-06-10 Show GitHub Exploit DB Packet Storm
778 4 警告
Local
NSA Ghidra NSAのGhidraにおける未定義、未指定、または実装定義の動作への依存に関する脆弱性 CWE-758
未定義、未指定、または実装定義の動作への依存
CVE-2024-58350 2026-06-12 14:34 2026-06-10 Show GitHub Exploit DB Packet Storm
779 6 警告
Local
NVIDIA gpu display driver NVIDIAのgpu display driverにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2025-33221 2026-06-12 14:34 2026-05-26 Show GitHub Exploit DB Packet Storm
780 6.7 警告
Local
フォーティネット FortiProxy
FortiOS
フォーティネットのFortiOS等の複数製品における安全でないデバッグアクセスレベルまたは状態にさらされた内部アセットに関する脆弱性 CWE-1244
安全でないデバッグアクセスレベルまたは状態にさらされた内部アセット
CVE-2025-67862 2026-06-12 14:34 2026-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
255831 6.1 MEDIUM
Network
yii_software yii Reflected Cross-site scripting (XSS) vulnerability in Yii Framework before 2.0.11, when development mode is used, allows remote attackers to inject arbitrary web script or HTML via crafted request da… CWE-79
Cross-site Scripting
CVE-2017-7271 2024-11-21 12:31 2017-03-28 Show GitHub Exploit DB Packet Storm
255832 9.8 CRITICAL
Network
irssi irssi The netjoin processing in Irssi 1.x before 1.0.2 allows attackers to cause a denial of service (use-after-free) and possibly execute arbitrary code via unspecified vectors. CWE-416
 Use After Free
CVE-2017-7191 2024-11-21 12:31 2017-03-28 Show GitHub Exploit DB Packet Storm
255833 7.5 HIGH
Network
extraputty extraputty The TFTP server in ExtraPuTTY 0.30 and earlier allows remote attackers to cause a denial of service (crash) via a large (1) read or (2) write TFTP protocol message. CWE-20
 Improper Input Validation 
CVE-2017-7183 2024-11-21 12:31 2017-03-28 Show GitHub Exploit DB Packet Storm
255834 6.1 MEDIUM
Network
netflix security_monkey Netflix Security Monkey before 0.8.0 has an Open Redirect. The logout functionality accepted the "next" parameter which then redirects to any domain irrespective of the Host header. CWE-601
Open Redirect
CVE-2017-7266 2024-11-21 12:31 2017-03-26 Show GitHub Exploit DB Packet Storm
255835 7.8 HIGH
Local
artifex mupdf Use-after-free vulnerability in the fz_subsample_pixmap function in fitz/pixmap.c in Artifex MuPDF 1.10a allows remote attackers to cause a denial of service (application crash) or possibly have unsp… CWE-416
 Use After Free
CVE-2017-7264 2024-11-21 12:31 2017-03-26 Show GitHub Exploit DB Packet Storm
255836 7.8 HIGH
Local
potrace_project potrace The bm_readbody_bmp function in bitmap_io.c in Potrace 1.14 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other… CWE-125
Out-of-bounds Read
CVE-2017-7263 2024-11-21 12:31 2017-03-26 Show GitHub Exploit DB Packet Storm
255837 5.5 MEDIUM
Local
amd ryzen The AMD Ryzen processor with AGESA microcode through 2017-01-27 allows local users to cause a denial of service (system hang) via an application that makes a long series of FMA3 instructions, as demo… CWE-20
 Improper Input Validation 
CVE-2017-7262 2024-11-21 12:31 2017-03-25 Show GitHub Exploit DB Packet Storm
255838 5.5 MEDIUM
Local
linux linux_kernel The vmw_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.10.5 does not check for a zero value of certain levels data, which allows local users to… CWE-20
 Improper Input Validation 
CVE-2017-7261 2024-11-21 12:31 2017-03-25 Show GitHub Exploit DB Packet Storm
255839 5.4 MEDIUM
Network
cmsmadesimple cms_made_simple XSS exists in the CMS Made Simple (CMSMS) 2.1.6 "Content-->News-->Add Article" feature via the m1_content parameter. Someone must login to conduct the attack. CWE-79
Cross-site Scripting
CVE-2017-7257 2024-11-21 12:31 2017-03-25 Show GitHub Exploit DB Packet Storm
255840 5.4 MEDIUM
Network
cmsmadesimple cms_made_simple XSS exists in the CMS Made Simple (CMSMS) 2.1.6 "Content-->News-->Add Article" feature via the m1_summary parameter. Someone must login to conduct the attack. CWE-79
Cross-site Scripting
CVE-2017-7256 2024-11-21 12:31 2017-03-25 Show GitHub Exploit DB Packet Storm