Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
131271 7.5 重要
Network
cumulative-distribution-function project cumulative-distribution-function cumulative-distribution-function における入力確認に関する脆弱性 CWE-20
CWE-835
CVE-2021-29486 2022-01-6 17:30 2021-04-29 Show GitHub Exploit DB Packet Storm
131272 7.8 重要
Local
Pritunl Pritunl Client Electron Pritunl Client における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2020-27519 2022-01-6 17:30 2020-09-3 Show GitHub Exploit DB Packet Storm
131273 5.5 警告
Local
TheHive Project Cortex CNCF Cortex における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2021-31232 2022-01-6 17:30 2021-04-27 Show GitHub Exploit DB Packet Storm
131274 5.5 警告
Local
Grafana Labs Grafana Enterprise Metrics Grafana Enterprise Metrics および Metrics Enterprise における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2021-31231 2022-01-6 17:30 2021-04-27 Show GitHub Exploit DB Packet Storm
131275 5.4 警告
Network
DethemeKit For Elementor project DethemeKit For Elementor WordPress 用 DeTheme Kit for Elementor プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-24270 2022-01-6 17:30 2021-04-13 Show GitHub Exploit DB Packet Storm
131276 4.8 警告
Network
OpenEMR OpenEMR OpenEMR におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-32103 2022-01-6 17:29 2021-05-7 Show GitHub Exploit DB Packet Storm
131277 8.8 重要
Network
OpenEMR OpenEMR OpenEMR における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2021-32102 2022-01-6 17:29 2021-05-7 Show GitHub Exploit DB Packet Storm
131278 8.2 重要
Network
OpenEMR OpenEMR OpenEMR における重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2021-32101 2022-01-6 17:29 2021-05-7 Show GitHub Exploit DB Packet Storm
131279 9.8 緊急
Network
Artica ST Pandora FMS Artica Pandora FMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2021-32099 2022-01-6 17:29 2021-05-7 Show GitHub Exploit DB Packet Storm
131280 9.8 緊急
Network
Artica ST Pandora FMS Artica Pandora FMS における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2021-32098 2022-01-6 17:29 2021-05-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
181 4.3 MEDIUM
Network
- - Authorization Bypass Through User-Controlled Key vulnerability in Matteo Manna Simple User Avatar allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Simple U… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-57676 2026-06-30 03:39 2026-06-29 Show GitHub Exploit DB Packet Storm
182 7.1 HIGH
Network
- - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Epiphyt Embed Privacy allows Path Traversal. This issue affects Embed Privacy: from n/a through 1.12.3. New CWE-22
Path Traversal
CVE-2026-57346 2026-06-30 03:39 2026-06-29 Show GitHub Exploit DB Packet Storm
183 7.1 HIGH
Network
- - Unauthenticated Cross Site Scripting (XSS) in BEAR <= 1.1.8 versions. New CWE-79
Cross-site Scripting
CVE-2026-57320 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
184 6.1 MEDIUM
Network
- - Unauthenticated Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions. New CWE-79
Cross-site Scripting
CVE-2026-57326 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
185 6.3 MEDIUM
Network
- - Subscriber Broken Access Control in MainWP <= 6.1.1 versions. New CWE-862
 Missing Authorization
CVE-2026-57327 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
186 6.5 MEDIUM
Network
- - Subscriber Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions. New CWE-79
Cross-site Scripting
CVE-2026-57328 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
187 6.5 MEDIUM
Network
- - Subscriber Cross Site Scripting (XSS) in WooCommerce Designer Pro <= 1.9.34 versions. New CWE-79
Cross-site Scripting
CVE-2026-57329 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
188 6.5 MEDIUM
Network
- - Subscriber Cross Site Scripting (XSS) in MasterStudy LMS <= 3.7.27 versions. New CWE-79
Cross-site Scripting
CVE-2026-57330 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
189 9.9 CRITICAL
Network
- - Performer Arbitrary File Deletion in Paid Videochat Turnkey Site <= 7.4.8 versions. New CWE-22
Path Traversal
CVE-2026-57331 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
190 7.1 HIGH
Network
- - Subscriber Broken Access Control in Wallet System for WooCommerce <= 2.7.6 versions. New CWE-862
 Missing Authorization
CVE-2026-57332 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm