Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
831 5.4 警告
Network
マイクロソフト Microsoft SharePoint Server Microsoft SharePoint Server のなりすましの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-45479 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
832 7.8 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft Windows 11 25h2
Windows カーネルモード ドライバーの特権の昇格の脆弱性 CWE-843
型の取り違え
CVE-2026-45600 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
833 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2012
Microsoft Windows 11 24h2
Microsoft Windows 10 21h2
Microsoft Wind…
UEFI セキュア ブートのセキュリティ機能バイパスの脆弱性 CWE-693
保護メカニズムの不具合
CVE-2026-45656 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
834 9.8 緊急
Network
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 11 24h2
Microsoft Windows Server 2022
Microsoft Windows 11 23h2
Microsoft Wind…
Windows カーネルのリモートでコードが実行される脆弱性 CWE-122
CWE-416
CVE-2026-45657 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
835 6.8 警告
Physics
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2012
Microsoft Windows 11 24h2
Microsoft Windows 10 21h2
Microsoft Wind…
Windows BitLocker セキュリティ機能バイパスの脆弱性 CWE-284
CWE-noinfo
CVE-2026-45658 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
836 7.5 重要
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおけるDTD の再帰的なエンティティ参照の不適切な制限に関する脆弱性 CWE-776
DTD の再帰的なエンティティ参照の不適切な制限
CVE-2026-45771 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
837 4.3 警告
Network
University at Buffalo Open XDMoD University at BuffaloのOpen XDMoDにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-45776 2026-06-11 16:23 2026-06-5 Show GitHub Exploit DB Packet Storm
838 9.8 緊急
Network
University at Buffalo Open XDMoD University at BuffaloのOpen XDMoDにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-45777 2026-06-11 16:23 2026-06-5 Show GitHub Exploit DB Packet Storm
839 5.4 警告
Network
University at Buffalo Open XDMoD University at BuffaloのOpen XDMoDにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-45778 2026-06-11 16:23 2026-06-5 Show GitHub Exploit DB Packet Storm
840 9.8 緊急
Network
University at Buffalo Open XDMoD University at BuffaloのOpen XDMoDにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-45779 2026-06-11 16:23 2026-06-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
344241 - microsoft office_web_components
project
The Host function in Microsoft Office Web Components (OWC) 2000 and 2002 is exposed in components that are marked as safe for scripting, which allows remote attackers to execute arbitrary commands vi… NVD-CWE-Other
CVE-2002-0727 2018-10-13 06:31 2002-09-24 Show GitHub Exploit DB Packet Storm
344242 - microsoft office_web_components
project
The LoadText method in the spreadsheet component in Microsoft Office Web Components (OWC) 2000 and 2002 allows remote attackers to read arbitrary files through Internet Explorer via a URL that redire… NVD-CWE-Other
CVE-2002-0860 2018-10-13 06:31 2002-09-24 Show GitHub Exploit DB Packet Storm
344243 - microsoft office_web_components
project
Microsoft Office Web Components (OWC) 2000 and 2002 allows remote attackers to bypass the "Allow paste operations via script" setting, even when it is disabled, via the (1) Copy method of the Cell ob… NVD-CWE-Other
CVE-2002-0861 2018-10-13 06:31 2002-09-24 Show GitHub Exploit DB Packet Storm
344244 - microsoft virtual_machine A certain class that supports XML (Extensible Markup Language) in Microsoft Virtual Machine (VM) 5.0.3805 and earlier, probably com.ms.osp.ospmrshl, exposes certain unsafe methods, which allows remot… NVD-CWE-Other
CVE-2002-0865 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm
344245 - microsoft virtual_machine Java Database Connectivity (JDBC) classes in Microsoft Virtual Machine (VM) up to and including 5.0.3805 allow remote attackers to load and execute DLLs (dynamic link libraries) via a Java applet tha… NVD-CWE-Other
CVE-2002-0866 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm
344246 - microsoft virtual_machine Microsoft Virtual Machine (VM) up to and including build 5.0.3805 allows remote attackers to cause a denial of service (crash) in Internet Explorer via invalid handle data in a Java applet, aka "Hand… NVD-CWE-Other
CVE-2002-0867 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm
344247 - microsoft outlook
word
Microsoft Outlook 2000 and 2002, when configured to use Microsoft Word as the email editor, does not block scripts that are used while editing email messages in HTML or Rich Text Format (RTF), which … NVD-CWE-Other
CVE-2002-1056 2018-10-13 06:31 2002-05-16 Show GitHub Exploit DB Packet Storm
344248 - microsoft data_engine
sql_server
Buffer overflow in the authentication function for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 allows remote attackers to execute arbitrary code via a long request to TCP port … NVD-CWE-Other
CVE-2002-1123 2018-10-13 06:31 2002-09-24 Show GitHub Exploit DB Packet Storm
344249 - microsoft data_engine
sql_server
Buffer overflow in the Database Console Command (DBCC) that handles user inputs in Microsoft SQL Server 7.0 and 2000, including Microsoft Data Engine (MSDE) 1.0 and Microsoft Desktop Engine (MSDE) 20… NVD-CWE-Other
CVE-2002-1137 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm
344250 - microsoft data_engine
sql_server
Microsoft SQL Server 7.0 and 2000, including Microsoft Data Engine (MSDE) 1.0 and Microsoft Desktop Engine (MSDE) 2000, writes output files for scheduled jobs under its own privileges instead of the … NVD-CWE-Other
CVE-2002-1138 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm