CVEリスト - 高リスク・悪用確認済み脆弱性

NVD や CVE、ほか複数の脅威フィードを束ね、RCE など高リスクな事象を深く追える一覧です。CVSS と EPSS を組み合わせ、Exploit 参照や PoC の有無から悪用しやすさを追跡します。ベンダー修正や緩和策の文脈とあわせて優先度を決め、対応サイクルを短く保ちつつ重要資産を守る支援をします。

Assigner(CNA/発行元):[email protected] この条件を外す

CVSS スコア
表示中 120 / 13285
«« 先頭 « 前へ 1 / 665 次へ »
CVE 説明 CVSS 最大値 EPSS(%) 公開 更新
CVE-2026-45504 Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network. 8.8 0.08% 2026-06-09 2026-06-12
CVE-2026-49161 Improper access control in Microsoft PC Manager allows an authorized attacker to bypass a security feature locally. 7.8 0.04% 2026-06-09 2026-06-12
CVE-2026-42835 Improper neutralization of special elements in output used by a downstream component ('injection') in Microsoft Teams for Android allows an authorized attacker to disclose information over a network. 8.1 0.16% 2026-06-09 2026-06-12
CVE-2026-42902 Improper authorization in Microsoft PowerToys allows an authorized attacker to elevate privileges locally. 7.8 0.06% 2026-06-09 2026-06-12
CVE-2026-45602 No cwe for this issue in Windows DHCP Server allows an unauthorized attacker to perform tampering over a network. 9.1 0.07% 2026-06-09 2026-06-12
CVE-2026-45608 Out-of-bounds read in Windows DHCP Server allows an authorized attacker to disclose information locally. 6.8 0.05% 2026-06-09 2026-06-12
CVE-2026-45634 Out-of-bounds read in Windows DHCP Server allows an authorized attacker to disclose information locally. 5.5 0.05% 2026-06-09 2026-06-12
CVE-2026-47289 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. 8.8 0.08% 2026-06-09 2026-06-12
CVE-2026-47653 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. 8.8 0.08% 2026-06-09 2026-06-12
CVE-2026-47654 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. 7.5 0.07% 2026-06-09 2026-06-12
CVE-2026-44801 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. 7.5 0.07% 2026-06-09 2026-06-12
CVE-2026-44802 Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. 7.8 0.06% 2026-06-09 2026-06-12
CVE-2026-44804 Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. 7.8 0.06% 2026-06-09 2026-06-12
CVE-2026-44807 Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. 7.8 0.06% 2026-06-09 2026-06-12
CVE-2026-44808 Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. 7.8 0.06% 2026-06-09 2026-06-12
CVE-2026-44811 Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. 7.8 0.09% 2026-06-09 2026-06-12
CVE-2026-44813 Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. 7.8 0.06% 2026-06-09 2026-06-12
CVE-2026-44814 Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally. 5.5 0.05% 2026-06-09 2026-06-12
CVE-2026-48565 Untrusted search path in Windows Narrator Braille allows an authorized attacker to elevate privileges locally. 7.8 0.12% 2026-06-09 2026-06-12
CVE-2026-48569 Improper input validation in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally. 7.1 0.08% 2026-06-09 2026-06-12
«« 先頭 « 前へ 1 / 665 次へ »
cvelogic Threat Intelligence