Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1111 6.5 警告
Network
OTRS プロジェクト OTRS OTRS プロジェクトのOTRSにおける複数の脆弱性 CWE-400
CWE-791
CVE-2026-48208 2026-06-16 13:40 2026-06-1 Show GitHub Exploit DB Packet Storm
1112 7.1 重要
Network
OTRS プロジェクト OTRS OTRS プロジェクトのOTRSにおける複数の脆弱性 CWE-116
CWE-79
CVE-2026-48209 2026-06-16 13:40 2026-06-1 Show GitHub Exploit DB Packet Storm
1113 5.7 警告
Network
OTRS プロジェクト OTRS OTRS プロジェクトのOTRSにおける複数の脆弱性 CWE-200
CWE-269
CVE-2026-48210 2026-06-16 13:40 2026-05-31 Show GitHub Exploit DB Packet Storm
1114 7.5 重要
Network
Django Software Foundation daphne Django Software Foundationのdaphneにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-44545 2026-06-16 13:40 2026-06-3 Show GitHub Exploit DB Packet Storm
1115 5.3 警告
Network
Django Software Foundation daphne Django Software FoundationのdaphneにおけるHTTP リクエストスマグリングに関する脆弱性 CWE-444
HTTP リクエストスマグリング
CVE-2026-44546 2026-06-16 13:40 2026-06-3 Show GitHub Exploit DB Packet Storm
1116 6.1 警告
Network
マイクロソフト Microsoft Exchange Server
Microsoft Exchange Server Subscription Edition (SE)
Microsoft Exchange Server のなりすましの脆弱性 CWE-79
CWE-918
CVE-2026-45501 2026-06-16 13:40 2026-06-9 Show GitHub Exploit DB Packet Storm
1117 5 警告
Network
マイクロソフト Microsoft Exchange Server
Microsoft Exchange Server Subscription Edition (SE)
Microsoft Exchange Server の情報漏えいの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-45502 2026-06-16 13:40 2026-06-9 Show GitHub Exploit DB Packet Storm
1118 6.5 警告
Network
マイクロソフト Microsoft Exchange Server
Microsoft Exchange Server Subscription Edition (SE)
Microsoft Exchange Server の情報漏えいの脆弱性 CWE-285
CWE-918
CVE-2026-45503 2026-06-16 13:40 2026-06-9 Show GitHub Exploit DB Packet Storm
1119 5.4 警告
Network
nuxt nuxt/webpack-builder
nuxt/rspack-builder
Nuxtのnuxt/rspack-builder等の複数製品における危険なメソッドや機能の公開に関する脆弱性 CWE-749
危険なメソッドや機能の公開
CVE-2026-45670 2026-06-16 13:40 2026-06-12 Show GitHub Exploit DB Packet Storm
1120 5.4 警告
Network
nuxt nuxt
nuxt/nitro-server
Nuxtのnuxt/nitro-server等の複数製品における複数の脆弱性 CWE-349
CWE-444
CWE-79
CVE-2026-46342 2026-06-16 13:40 2026-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
320671 5.4 MEDIUM
Network
fontsplugin fonts_plugin Cross-Site Request Forgery (CSRF) vulnerability in Fonts Plugin Fonts allows Stored XSS.This issue affects Fonts: from n/a through 3.7.7. CWE-352
 Origin Validation Error
CVE-2024-43301 2024-09-13 06:24 2024-08-27 Show GitHub Exploit DB Packet Storm
320672 8.8 HIGH
Network
wpdeveloper betterdocs Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPDeveloper BetterDocs allows PHP Local File Inclusion.This issue affects BetterDocs: from n/a through … CWE-22
Path Traversal
CVE-2024-43129 2024-09-13 06:21 2024-08-13 Show GitHub Exploit DB Packet Storm
320673 4.3 MEDIUM
Network
wpdataaccess wp_data_access Cross-Site Request Forgery (CSRF) vulnerability in Passionate Programmers B.V. WP Data Access.This issue affects WP Data Access: from n/a through 5.5.7. CWE-352
 Origin Validation Error
CVE-2024-43295 2024-09-13 06:20 2024-08-27 Show GitHub Exploit DB Packet Storm
320674 8.8 HIGH
Network
sendinblue newsletter\
_smtp\
_email_marketing_and_subscribe
Cross-Site Request Forgery (CSRF) vulnerability in Brevo Newsletter, SMTP, Email marketing and Subscribe forms by Sendinblue.This issue affects Newsletter, SMTP, Email marketing and Subscribe forms b… CWE-352
 Origin Validation Error
CVE-2024-43287 2024-09-13 06:19 2024-08-27 Show GitHub Exploit DB Packet Storm
320675 4.3 MEDIUM
Network
wpbackitup backup_and_restore_wordpress Cross-Site Request Forgery (CSRF) vulnerability in WPBackItUp Backup and Restore WordPress.This issue affects Backup and Restore WordPress: from n/a through 1.50. CWE-352
 Origin Validation Error
CVE-2024-43269 2024-09-13 06:18 2024-08-27 Show GitHub Exploit DB Packet Storm
320676 8.8 HIGH
Network
themewinter wpcafe Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Themewinter WPCafe allows PHP Local File Inclusion.This issue affects WPCafe: from n/a through 2.2.28. CWE-22
Path Traversal
CVE-2024-43135 2024-09-13 06:18 2024-08-13 Show GitHub Exploit DB Packet Storm
320677 3.5 LOW
Network
analytify analytify_-_google_analytics_dashboard Cross-Site Request Forgery (CSRF) vulnerability in Analytify.This issue affects Analytify: from n/a through 5.3.1. CWE-352
 Origin Validation Error
CVE-2024-43265 2024-09-13 06:17 2024-08-27 Show GitHub Exploit DB Packet Storm
320678 7.5 HIGH
Network
storelocatorplus store_locator_plus Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Store Locator Plus.This issue affects Store Locator Plus: from n/a through 2311.17.01. NVD-CWE-noinfo
CVE-2024-43258 2024-09-13 06:11 2024-08-27 Show GitHub Exploit DB Packet Storm
320679 8.8 HIGH
Network
mage-people event_manager_and_tickets_selling_for_woocommerce Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in MagePeople Team Event Manager for WooCommerce allows PHP Local File Inclusion.This issue affects Event … CWE-22
Path Traversal
CVE-2024-43138 2024-09-13 06:11 2024-08-13 Show GitHub Exploit DB Packet Storm
320680 6.5 MEDIUM
Network
nouthemes leopard Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Nouthemes Leopard - WordPress offload media.This issue affects Leopard - WordPress offload media: from n/a through 2.0.36. NVD-CWE-noinfo
CVE-2024-43257 2024-09-13 06:09 2024-08-27 Show GitHub Exploit DB Packet Storm