Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
831 7.8 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft Windows 11 25h2
Windows カーネルモード ドライバーの特権の昇格の脆弱性 CWE-843
型の取り違え
CVE-2026-45600 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
832 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2012
Microsoft Windows 11 24h2
Microsoft Windows 10 21h2
Microsoft Wind…
UEFI セキュア ブートのセキュリティ機能バイパスの脆弱性 CWE-693
保護メカニズムの不具合
CVE-2026-45656 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
833 9.8 緊急
Network
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 11 24h2
Microsoft Windows Server 2022
Microsoft Windows 11 23h2
Microsoft Wind…
Windows カーネルのリモートでコードが実行される脆弱性 CWE-122
CWE-416
CVE-2026-45657 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
834 6.8 警告
Physics
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2012
Microsoft Windows 11 24h2
Microsoft Windows 10 21h2
Microsoft Wind…
Windows BitLocker セキュリティ機能バイパスの脆弱性 CWE-284
CWE-noinfo
CVE-2026-45658 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
835 7.5 重要
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおけるDTD の再帰的なエンティティ参照の不適切な制限に関する脆弱性 CWE-776
DTD の再帰的なエンティティ参照の不適切な制限
CVE-2026-45771 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
836 4.3 警告
Network
University at Buffalo Open XDMoD University at BuffaloのOpen XDMoDにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-45776 2026-06-11 16:23 2026-06-5 Show GitHub Exploit DB Packet Storm
837 9.8 緊急
Network
University at Buffalo Open XDMoD University at BuffaloのOpen XDMoDにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-45777 2026-06-11 16:23 2026-06-5 Show GitHub Exploit DB Packet Storm
838 5.4 警告
Network
University at Buffalo Open XDMoD University at BuffaloのOpen XDMoDにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-45778 2026-06-11 16:23 2026-06-5 Show GitHub Exploit DB Packet Storm
839 9.8 緊急
Network
University at Buffalo Open XDMoD University at BuffaloのOpen XDMoDにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-45779 2026-06-11 16:23 2026-06-5 Show GitHub Exploit DB Packet Storm
840 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-46144 2026-06-11 16:23 2026-05-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
320011 - - - Dedecms V5.7.115 contains an arbitrary code execution via file upload vulnerability in the backend. - CVE-2024-46373 2024-09-20 21:30 2024-09-19 Show GitHub Exploit DB Packet Storm
320012 - - - Buffer Overflow vulnerability in btstack mesh commit before v.864e2f2b6b7878c8fab3cf5ee84ae566e3380c58 allows a remote attacker to execute arbitrary code via the pb_adv_handle_tranaction_cont functio… - CVE-2024-40568 2024-09-20 21:30 2024-09-19 Show GitHub Exploit DB Packet Storm
320013 - - - CoreDNS through 1.10.1 enables attackers to achieve DNS cache poisoning and inject fake responses via a birthday attack. - CVE-2023-30464 2024-09-20 21:30 2024-09-19 Show GitHub Exploit DB Packet Storm
320014 - - - Stack overflow vulnerability in the Login function in the HNAP service in D-Link DCS-960L with firmware 1.09 allows attackers to execute of arbitrary code. - CVE-2024-44589 2024-09-20 21:30 2024-09-19 Show GitHub Exploit DB Packet Storm
320015 - - - spicedb is an Open Source, Google Zanzibar-inspired permissions database to enable fine-grained authorization for customer applications. Multiple caveats over the same indirect subject type on the sa… CWE-269
 Improper Privilege Management
CVE-2024-46989 2024-09-20 21:30 2024-09-19 Show GitHub Exploit DB Packet Storm
320016 - - - Mesop is a Python-based UI framework designed for rapid web apps development. A vulnerability has been discovered and fixed in Mesop that could potentially allow unauthorized access to files on the s… - CVE-2024-45601 2024-09-20 21:30 2024-09-19 Show GitHub Exploit DB Packet Storm
320017 - - - **UNSUPPORTED WHEN ASSIGNED** An issue was discovered in BMC Remedy Mid Tier 7.6.04. An unauthenticated remote attacker is able to access any user account without using any password. NOTE: This vulne… - CVE-2024-34399 2024-09-20 21:30 2024-09-19 Show GitHub Exploit DB Packet Storm
320018 - - - XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It's possible to get access to notification filters of any user by using a URL such as `<hostn… CWE-200
CWE-359
Information Exposure
 Exposure of Private Personal Information to an Unauthorized Actor
CVE-2024-46979 2024-09-20 21:30 2024-09-19 Show GitHub Exploit DB Packet Storm
320019 - - - XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It's possible for any user knowing the ID of a notification filter preference of another user,… CWE-648
 Incorrect Use of Privileged APIs
CVE-2024-46978 2024-09-20 21:30 2024-09-19 Show GitHub Exploit DB Packet Storm
320020 - - - Victure PC420 1.1.39 was discovered to contain a hardcoded root password which is stored in plaintext. - CVE-2023-41610 2024-09-20 21:30 2024-09-19 Show GitHub Exploit DB Packet Storm