Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1881 5.9 警告
Network
Nextcloud Nextcloud Server NextcloudのNextcloud Serverにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-45691 2026-06-8 11:45 2026-06-1 Show GitHub Exploit DB Packet Storm
1882 7.1 重要
Network
Nextcloud Tables NextcloudのTablesにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-45722 2026-06-8 11:45 2026-06-1 Show GitHub Exploit DB Packet Storm
1883 6.8 警告
Network
Nextcloud Nextcloud Server NextcloudのNextcloud Serverにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-45810 2026-06-8 11:45 2026-06-1 Show GitHub Exploit DB Packet Storm
1884 5.3 警告
Network
Open Quantum Safe liboqs Open Quantum Safeのliboqsにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-46344 2026-06-8 11:45 2026-05-29 Show GitHub Exploit DB Packet Storm
1885 7.7 重要
Network
OpenStack OpenStack Ironic OpenStackのOpenStack Ironicにおける領域間での誤ったリソース移動に関する脆弱性 CWE-669
領域間での誤ったリソース移動
CVE-2026-46447 2026-06-8 11:45 2026-06-3 Show GitHub Exploit DB Packet Storm
1886 9.8 緊急
Network
オラクル Oracle E-Business Suite オラクルのOracle E-Business Suiteにおける複数の脆弱性 CWE-269
CWE-287
CWE-306
CVE-2026-46817 2026-06-8 11:45 2026-05-28 Show GitHub Exploit DB Packet Storm
1887 7.4 重要
Network
オラクル Oracle E-Business Suite オラクルのOracle E-Business Suiteにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46818 2026-06-8 11:45 2026-05-28 Show GitHub Exploit DB Packet Storm
1888 8.8 重要
Network
オラクル Oracle E-Business Suite オラクルのOracle E-Business Suiteにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-46837 2026-06-8 11:45 2026-05-28 Show GitHub Exploit DB Packet Storm
1889 9.9 緊急
Network
オラクル REST Data Services オラクルのREST Data Servicesにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46839 2026-06-8 11:45 2026-05-28 Show GitHub Exploit DB Packet Storm
1890 10 緊急
Network
オラクル REST Data Services オラクルのREST Data Servicesにおける複数の脆弱性 CWE-284
CWE-287
CWE-306
CVE-2026-46840 2026-06-8 11:45 2026-05-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
319991 - - - An Incorrect Access Control vulnerability was found in /music/index.php?page=user_list and /music/index.php?page=edit_user in Kashipara Music Management System v1.0. This allows a low privileged atta… - CVE-2024-42798 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319992 - - - An Incorrect Access Control vulnerability was found in /music/ajax.php?action=delete_genre in Kashipara Music Management System v1.0. This vulnerability allows an unauthenticated attacker to delete t… - CVE-2024-42796 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319993 - - - An Incorrect Access Control vulnerability was found in /music/view_user.php?id=3 and /music/controller.php?page=edit_user&id=3 in Kashipara Music Management System v1.0. This vulnerability allows an … - CVE-2024-42795 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319994 - - - Kashipara Music Management System v1.0 is vulnerable to Incorrect Access Control via /music/ajax.php?action=save_user. - CVE-2024-42794 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319995 - - - Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235. CWE-427
 Uncontrolled Search Path Element
CVE-2024-34016 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319996 - - - DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. It has been discovered that malicious HTML using special nesting techniques can bypass the depth checking ad… CWE-1333
 Inefficient Regular Expression Complexity
CVE-2024-45801 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319997 - - - FluxCP is a web-based Control Panel for rAthena servers written in PHP. A javascript injection is possible via venders/buyers list pages and shop names, that are currently not sanitized. This allows … - CVE-2024-45799 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319998 - - - A Business Logic vulnerability in Shopkit 1.0 allows an attacker to add products with negative quantities to the shopping cart via the qtd parameter in the add-to-cart function. - CVE-2023-45854 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319999 - - - A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code… - CVE-2024-7737 2024-09-20 21:30 2024-09-20 Show GitHub Exploit DB Packet Storm
320000 - - - A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execu… - CVE-2024-7736 2024-09-20 21:30 2024-09-20 Show GitHub Exploit DB Packet Storm