Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 12:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
11 8.8 重要
Network
Rapid7 InsightConnect Tcpdump Rapid7のInsightConnect TcpdumpにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-8658 2026-06-30 11:24 2026-06-25 Show GitHub Exploit DB Packet Storm
12 8.8 重要
Network
Rapid7 InsightConnect SQLmap Rapid7のInsightConnect SQLmapにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-8659 2026-06-30 11:24 2026-06-25 Show GitHub Exploit DB Packet Storm
13 9.8 緊急
Network
Rapid7 InsightConnect Ping Rapid7のInsightConnect PingにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-8660 2026-06-30 11:24 2026-06-25 Show GitHub Exploit DB Packet Storm
14 4.3 警告
Network
Rapid7 InsightConnect Compression Rapid7のInsightConnect Compressionにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-8662 2026-06-30 11:24 2026-06-25 Show GitHub Exploit DB Packet Storm
15 8.8 重要
Network
Rapid7 InsightConnect RPM Rapid7のInsightConnect RPMにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-8663 2026-06-30 11:24 2026-06-25 Show GitHub Exploit DB Packet Storm
16 8.8 重要
Network
Rapid7 InsightConnect Finger Rapid7のInsightConnect FingerにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-8664 2026-06-30 11:24 2026-06-25 Show GitHub Exploit DB Packet Storm
17 9.8 緊急
Network
Rapid7 InsightConnect Translate Rapid7のInsightConnect TranslateにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-8665 2026-06-30 11:24 2026-06-25 Show GitHub Exploit DB Packet Storm
18 9.8 緊急
Network
Rapid7 InsightConnect Traceroute Rapid7のInsightConnect TracerouteにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-8666 2026-06-30 11:24 2026-06-25 Show GitHub Exploit DB Packet Storm
19 7.5 重要
Network
Envoy Proxy Envoy Envoy ProxyのEnvoyにおける過度に深いネストに関する脆弱性 New CWE-1124
過度に深いネスト
CVE-2026-48042 2026-06-30 11:24 2026-06-26 Show GitHub Exploit DB Packet Storm
20 7.8 重要
Local
notepad-plus-plus notepad++ notepad-plus-plusのnotepad++におけるパスの等価性: 'file.name' (末尾のドット)に関する脆弱性 New CWE-42
パスの等価性: 'file.name' (末尾のドット)
CVE-2026-52884 2026-06-30 11:24 2026-06-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
254231 9.8 CRITICAL
Network
digitaldruid hoteldruid HotelDruid HotelDruid 2.3.0 version 2.3.0 and earlier contains a SQL Injection vulnerability in "id_utente_mod" parameter in gestione_utenti.php file that can result in An attacker can dump all the d… CWE-89
SQL Injection
CVE-2018-1000871 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254232 6.1 MEDIUM
Network
cebe markdown PHP cebe markdown parser version 1.2.0 and earlier contains a Cross Site Scripting (XSS) vulnerability in all distributed parsers allowing a malicious crafted script to be executed that can result in… CWE-79
Cross-site Scripting
CVE-2018-1000874 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254233 6.5 MEDIUM
Network
fasterxml
oracle
netapp
jackson-modules-java8
database_server
clusterware
global_lifecycle_management_opatch
nosql_database
active_iq_unified_manager
Fasterxml Jackson version Before 2.9.8 contains a CWE-20: Improper Input Validation vulnerability in Jackson-Modules-Java8 that can result in Causes a denial-of-service (DoS). This attack appear to b… CWE-20
 Improper Input Validation 
CVE-2018-1000873 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254234 5.4 MEDIUM
Network
phpipam phpipam PHPipam version 1.3.2 and earlier contains a CWE-79 vulnerability in /app/admin/users/print-user.php that can result in Execute code in the victims browser. This attack appear to be exploitable via A… CWE-79
Cross-site Scripting
CVE-2018-1000870 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254235 9.8 CRITICAL
Network
phpipam phpipam phpIPAM version 1.3.2 contains a CWE-89 vulnerability in /app/admin/nat/item-add-submit.php that can result in SQL Injection.. This attack appear to be exploitable via Rough user, exploiting the vuln… CWE-89
SQL Injection
CVE-2018-1000869 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254236 6.1 MEDIUM
Network
webidsupport webid WeBid version up to current version 1.2.2 contains a Cross Site Scripting (XSS) vulnerability in user_login.php, register.php that can result in Javascript execution in the user's browser, injection … CWE-79
Cross-site Scripting
CVE-2018-1000868 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254237 8.8 HIGH
Network
webidsupport webid WeBid version up to current version 1.2.2 contains a SQL Injection vulnerability in All five yourauctions*.php scripts that can result in Database Read via Blind SQL Injection. This attack appear to … CWE-89
SQL Injection
CVE-2018-1000867 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254238 4.7 MEDIUM
Network
phpipam phpipam phpipam version 1.3.2 and earlier contains a Cross Site Scripting (XSS) vulnerability in The value of the phpipamredirect cookie is copied into an HTML tag on the login page encapsulated in single qu… CWE-79
Cross-site Scripting
CVE-2018-1000860 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254239 8.8 HIGH
Network
gnupg
canonical
gnupg
ubuntu_linux
GnuPG version 2.1.12 - 2.2.11 contains a Cross ite Request Forgery (CSRF) vulnerability in dirmngr that can result in Attacker controlled CSRF, Information Disclosure, DoS. This attack appear to be e… CWE-352
 Origin Validation Error
CVE-2018-1000858 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254240 8.8 HIGH
Network
open-systems log-user-session log-user-session version 0.7 and earlier contains a Directory Traversal vulnerability in Main SUID-binary /usr/local/bin/log-user-session that can result in User to root privilege escalation. This at… CWE-22
Path Traversal
CVE-2018-1000857 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm