Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 28, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1651 4.6 警告
Network
マイクロソフト Microsoft SharePoint Server Microsoft SharePoint Server のなりすましの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-48562 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
1652 5.5 警告
Local
マイクロソフト Visual Studio Code Visual Studio Code セキュリティ機能のバイパスの脆弱性 CWE-20
CWE-23
CWE-noinfo
CVE-2026-48569 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
1653 7.8 重要
Local
マイクロソフト Microsoft PC Manager Microsoft PC マネージャーのセキュリティ機能バイパスの脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-49161 2026-06-15 11:15 2026-06-9 Show GitHub Exploit DB Packet Storm
1654 8.8 重要
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-50223 2026-06-15 11:15 2026-06-10 Show GitHub Exploit DB Packet Storm
1655 6.5 警告
Network
Apache Software Foundation Apache CXF Apache Software FoundationのApache CXFにおける認証に関する脆弱性 CWE-287
CWE-noinfo
CVE-2026-50623 2026-06-15 11:15 2026-06-12 Show GitHub Exploit DB Packet Storm
1656 5.3 警告
Network
Apache Software Foundation Apache CXF Apache Software FoundationのApache CXFにおけるCRLF インジェクションの脆弱性 CWE-93
CRLF インジェクション
CVE-2026-50629 2026-06-15 11:15 2026-06-12 Show GitHub Exploit DB Packet Storm
1657 6.5 警告
Network
Apache Software Foundation Apache CXF Apache Software FoundationのApache CXFにおけるHTTP レスポンス分割に関する脆弱性 CWE-113
HTTP レスポンスの分割
CVE-2026-50630 2026-06-15 11:15 2026-06-12 Show GitHub Exploit DB Packet Storm
1658 7.4 重要
Network
Apache Software Foundation Apache CXF Apache Software FoundationのApache CXFにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-50631 2026-06-15 11:15 2026-06-12 Show GitHub Exploit DB Packet Storm
1659 8.1 重要
Network
Apache Software Foundation Apache CXF Apache Software FoundationのApache CXFにおける入力確認に関する脆弱性 CWE-20
CWE-noinfo
CVE-2026-50632 2026-06-15 11:15 2026-06-12 Show GitHub Exploit DB Packet Storm
1660 8.1 重要
Network
Apache Software Foundation Apache CXF Apache Software FoundationのApache CXFにおける入力確認に関する脆弱性 CWE-20
CWE-noinfo
CVE-2026-50633 2026-06-15 11:15 2026-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 28, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
343751 - easy_software_products
kde
libextractor
poppler
sgi
tetex
xpdf
conectiva
debian
gentoo
mandrakesoft
redhat
sco
slackware
suse
trustix
turbolinux
ubuntu
cups
kdegraphics
koffice
kpdf
kword
libextractor
poppler
propack
tetex
xpdf
linux
debian_linux
mandrake_linux
mandrake_linux_corporate_server
enterprise_linu…
Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely… CWE-399
 Resource Management Errors
CVE-2005-3625 2018-10-20 00:37 2005-12-31 Show GitHub Exploit DB Packet Storm
343752 - easy_software_products
kde
libextractor
poppler
sgi
tetex
xpdf
conectiva
debian
gentoo
mandrakesoft
redhat
sco
slackware
suse
trustix
turbolinux
ubuntu
cups
kdegraphics
koffice
kpdf
kword
libextractor
poppler
propack
tetex
xpdf
linux
debian_linux
mandrake_linux
mandrake_linux_corporate_server
enterprise_linu…
Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (crash) via a crafted FlateDecode stream that tr… CWE-399
 Resource Management Errors
CVE-2005-3626 2018-10-20 00:37 2005-12-31 Show GitHub Exploit DB Packet Storm
343753 - saphp saphplesson SQL injection vulnerability in Saphp Lesson, possibly saphp Lesson1.1 and saphpLesson2.0, allows remote attackers to execute arbitrary SQL commands via the forumid parameter in (1) showcat.php and (2… NVD-CWE-Other
CVE-2005-3363 2018-10-20 00:36 2005-10-30 Show GitHub Exploit DB Packet Storm
343754 - codeworx_technologies dcp-portal Multiple SQL injection vulnerabilities in DCP-Portal 6 and earlier allow remote attackers to execute arbitrary SQL commands, possibly requiring encoded characters, via (1) the name parameter in regis… CWE-89
SQL Injection
CVE-2005-3365 2018-10-20 00:36 2005-10-30 Show GitHub Exploit DB Packet Storm
343755 - trend_micro officescan
pc-cillin_2005
Multiple interpretation error in Trend Micro (1) PC-Cillin 2005 12.0.1244 with the 7.510.1002 engine and (2) OfficeScan 7.0 with the 7.510.1002 engine allows remote attackers to bypass virus scanning… NVD-CWE-Other
CVE-2005-3379 2018-10-20 00:36 2005-10-30 Show GitHub Exploit DB Packet Storm
343756 - oaboard oaboard Multiple SQL injection vulnerabilities in forum.php in oaboard forum 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) channel parameter in the topics module and (2) topic para… NVD-CWE-Other
CVE-2005-3394 2018-10-20 00:36 2005-11-1 Show GitHub Exploit DB Packet Storm
343757 - invision_power_services invision_gallery SQL injection vulnerability in Invision Gallery 2.0.3 allows remote attackers to execute arbitrary SQL commands via the st parameter. NVD-CWE-Other
CVE-2005-3395 2018-10-20 00:36 2005-11-1 Show GitHub Exploit DB Packet Storm
343758 - elite_forum elite_forum Cross-site scripting (XSS) vulnerability in Elite Forum 1.0.0.0 allows remote attackers to inject arbitrary web script or HTML via a Post Reply to a topic, in which the reply contains a javascript: U… NVD-CWE-Other
CVE-2005-3412 2018-10-20 00:36 2005-11-2 Show GitHub Exploit DB Packet Storm
343759 - alexander_palmo simple_php_blog Multiple cross-site scripting (XSS) vulnerabilities in Simple PHP Blog 0.4.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) entry, (2) blog_subject, and (3) blo… NVD-CWE-Other
CVE-2005-3473 2018-10-20 00:36 2005-11-3 Show GitHub Exploit DB Packet Storm
343760 - - - Unspecified vulnerability in HP OpenVMS Integrity 8.2-1 and 8.2, and OpenVMS Alpha 7.3-2 and 8.2, allows local users to cause a denial of service. NVD-CWE-Other
CVE-2005-3476 2018-10-20 00:36 2005-11-3 Show GitHub Exploit DB Packet Storm