CVEリスト - 高リスク・悪用確認済み脆弱性

NVD や CVE、ほか複数の脅威フィードを束ね、RCE など高リスクな事象を深く追える一覧です。CVSS と EPSS を組み合わせ、Exploit 参照や PoC の有無から悪用しやすさを追跡します。ベンダー修正や緩和策の文脈とあわせて優先度を決め、対応サイクルを短く保ちつつ重要資産を守る支援をします。

Assigner(CNA/発行元):[email protected] この条件を外す

CVSS スコア
表示中 121140 / 13297
CVE 説明 CVSS 最大値 EPSS(%) 公開 更新
CVE-2026-45468 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. 4.6 0.51% 2026-06-09 2026-06-17
CVE-2026-45467 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. 4.6 0.51% 2026-06-09 2026-06-17
CVE-2026-45466 Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to disclose information locally. 3.3 0.37% 2026-06-09 2026-06-19
CVE-2026-45465 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. 5.4 0.51% 2026-06-09 2026-06-17
CVE-2026-45464 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. 5.4 0.51% 2026-06-09 2026-06-17
CVE-2026-45463 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 8.4 0.29% 2026-06-09 2026-06-19
CVE-2026-45462 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. 4.6 0.51% 2026-06-09 2026-06-17
CVE-2026-45461 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 8.4 0.36% 2026-06-09 2026-06-19
CVE-2026-45460 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. 4.7 0.36% 2026-06-09 2026-06-19
CVE-2026-45459 Protection mechanism failure in Microsoft Office Excel allows an unauthorized attacker to bypass a security feature locally. 3.3 0.37% 2026-06-09 2026-06-19
CVE-2026-45458 Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. 8.4 0.44% 2026-06-09 2026-06-19
CVE-2026-45457 Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally. 7.8 0.37% 2026-06-09 2026-06-19
CVE-2026-45456 Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. 8.4 0.44% 2026-06-09 2026-06-19
CVE-2026-45455 Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network. 3.3 0.63% 2026-06-09 2026-06-19
CVE-2026-45454 Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. 6.5 1.63% 2026-06-09 2026-06-17
CVE-2026-45453 Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. 5.4 0.51% 2026-06-09 2026-06-17
CVE-2026-44824 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 7.8 0.46% 2026-06-09 2026-06-19
CVE-2026-44823 Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 7.8 0.37% 2026-06-09 2026-06-19
CVE-2026-44822 Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network. 8.2 0.52% 2026-06-09 2026-06-19
CVE-2026-44821 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. 5.5 0.46% 2026-06-09 2026-06-19
cvelogic Threat Intelligence