Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
91 6.8 警告
Network
Envoy Proxy Envoy Envoy ProxyのEnvoyにおける複数の脆弱性 New CWE-209
CWE-327
CVE-2026-47775 2026-06-30 11:20 2026-06-26 Show GitHub Exploit DB Packet Storm
92 4.4 警告
Network
Envoy Proxy Envoy Envoy ProxyのEnvoyにおけるNULL バイトまたは NULL キャラクタの無害化に関する脆弱性 New CWE-158
NULL バイトまたは NULL キャラクタの不適切な無害化
CVE-2026-47778 2026-06-30 11:20 2026-06-26 Show GitHub Exploit DB Packet Storm
93 7.5 重要
Network
Envoy Proxy Envoy Envoy ProxyのEnvoyにおける高圧縮データの処理 (データ増幅)に関する脆弱性 New CWE-409
高圧縮データの不適切な処理 (データ増幅)
CVE-2026-48044 2026-06-30 11:20 2026-06-26 Show GitHub Exploit DB Packet Storm
94 5.9 警告
Network
Envoy Proxy Envoy Envoy ProxyのEnvoyにおける解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-48090 2026-06-30 11:20 2026-06-26 Show GitHub Exploit DB Packet Storm
95 7.5 重要
Network
Envoy Proxy Envoy Envoy ProxyのEnvoyにおける演算子の使用に関する脆弱性 New CWE-480
不適切な演算子の使用
CVE-2026-48497 2026-06-30 11:20 2026-06-26 Show GitHub Exploit DB Packet Storm
96 7.5 重要
Network
Envoy Proxy Envoy Envoy ProxyのEnvoyにおける古典的バッファオーバーフローの脆弱性 New CWE-120
古典的バッファオーバーフロー
CVE-2026-48706 2026-06-30 11:20 2026-06-26 Show GitHub Exploit DB Packet Storm
97 7.5 重要
Network
Envoy Proxy Envoy Envoy ProxyのEnvoyにおけるHTTP リクエストスマグリングに関する脆弱性 New CWE-444
HTTP リクエストスマグリング
CVE-2026-48743 2026-06-30 11:20 2026-06-26 Show GitHub Exploit DB Packet Storm
98 5 警告
Local
notepad-plus-plus notepad++ notepad-plus-plusのnotepad++における境界外読み取りに関する脆弱性 New CWE-125
境界外読み取り
CVE-2026-48770 2026-06-30 11:20 2026-06-26 Show GitHub Exploit DB Packet Storm
99 7.8 重要
Local
notepad-plus-plus notepad++ notepad-plus-plusのnotepad++におけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-48778 2026-06-30 11:20 2026-06-26 Show GitHub Exploit DB Packet Storm
100 7.8 重要
Local
notepad-plus-plus notepad++ notepad-plus-plusのnotepad++におけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-48800 2026-06-30 11:20 2026-06-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
254231 9.8 CRITICAL
Network
digitaldruid hoteldruid HotelDruid HotelDruid 2.3.0 version 2.3.0 and earlier contains a SQL Injection vulnerability in "id_utente_mod" parameter in gestione_utenti.php file that can result in An attacker can dump all the d… CWE-89
SQL Injection
CVE-2018-1000871 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254232 6.1 MEDIUM
Network
cebe markdown PHP cebe markdown parser version 1.2.0 and earlier contains a Cross Site Scripting (XSS) vulnerability in all distributed parsers allowing a malicious crafted script to be executed that can result in… CWE-79
Cross-site Scripting
CVE-2018-1000874 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254233 6.5 MEDIUM
Network
fasterxml
oracle
netapp
jackson-modules-java8
database_server
clusterware
global_lifecycle_management_opatch
nosql_database
active_iq_unified_manager
Fasterxml Jackson version Before 2.9.8 contains a CWE-20: Improper Input Validation vulnerability in Jackson-Modules-Java8 that can result in Causes a denial-of-service (DoS). This attack appear to b… CWE-20
 Improper Input Validation 
CVE-2018-1000873 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254234 5.4 MEDIUM
Network
phpipam phpipam PHPipam version 1.3.2 and earlier contains a CWE-79 vulnerability in /app/admin/users/print-user.php that can result in Execute code in the victims browser. This attack appear to be exploitable via A… CWE-79
Cross-site Scripting
CVE-2018-1000870 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254235 9.8 CRITICAL
Network
phpipam phpipam phpIPAM version 1.3.2 contains a CWE-89 vulnerability in /app/admin/nat/item-add-submit.php that can result in SQL Injection.. This attack appear to be exploitable via Rough user, exploiting the vuln… CWE-89
SQL Injection
CVE-2018-1000869 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254236 6.1 MEDIUM
Network
webidsupport webid WeBid version up to current version 1.2.2 contains a Cross Site Scripting (XSS) vulnerability in user_login.php, register.php that can result in Javascript execution in the user's browser, injection … CWE-79
Cross-site Scripting
CVE-2018-1000868 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254237 8.8 HIGH
Network
webidsupport webid WeBid version up to current version 1.2.2 contains a SQL Injection vulnerability in All five yourauctions*.php scripts that can result in Database Read via Blind SQL Injection. This attack appear to … CWE-89
SQL Injection
CVE-2018-1000867 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254238 4.7 MEDIUM
Network
phpipam phpipam phpipam version 1.3.2 and earlier contains a Cross Site Scripting (XSS) vulnerability in The value of the phpipamredirect cookie is copied into an HTML tag on the login page encapsulated in single qu… CWE-79
Cross-site Scripting
CVE-2018-1000860 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254239 8.8 HIGH
Network
gnupg
canonical
gnupg
ubuntu_linux
GnuPG version 2.1.12 - 2.2.11 contains a Cross ite Request Forgery (CSRF) vulnerability in dirmngr that can result in Attacker controlled CSRF, Information Disclosure, DoS. This attack appear to be e… CWE-352
 Origin Validation Error
CVE-2018-1000858 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254240 8.8 HIGH
Network
open-systems log-user-session log-user-session version 0.7 and earlier contains a Directory Traversal vulnerability in Main SUID-binary /usr/local/bin/log-user-session that can result in User to root privilege escalation. This at… CWE-22
Path Traversal
CVE-2018-1000857 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm