Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2031 9.6 緊急
Network
Cline Cline Clineにおける複数の脆弱性 CWE-1385
CWE-306
CVE-2026-44211 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
2032 7.5 重要
Network
Julian Gruber (juliangruber) brace-expansion Julian Gruber (juliangruber)のbrace-expansionにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-45149 2026-06-5 10:46 2026-05-29 Show GitHub Exploit DB Packet Storm
2033 6.5 警告
Network
Nextcloud Approval NextcloudのApprovalにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-45275 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
2034 3.3
Local
Nextcloud Approval NextcloudのApprovalにおける情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2026-45277 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
2035 6.1 警告
Network
Nextcloud user oidc Nextcloudのuser oidcにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-45278 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
2036 6.5 警告
Network
Nextcloud Nextcloud Server NextcloudのNextcloud Serverにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-45279 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
2037 8.1 重要
Network
Nextcloud Nextcloud Server NextcloudのNextcloud Serverにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-45281 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
2038 6.5 警告
Network
Nextcloud Nextcloud Server NextcloudのNextcloud Serverにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-45282 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
2039 4.3 警告
Network
Nextcloud Nextcloud Server NextcloudのNextcloud Serverにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-45283 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
2040 8.8 重要
Network
Nextcloud user oidc Nextcloudのuser oidcにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-45284 2026-06-5 10:46 2026-06-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310321 - wordpress wordpress Multiple cross-site scripting (XSS) vulnerabilities in KSES, as used in WordPress before 3.0.4, allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) the & (ampersa… CWE-79
Cross-site Scripting
CVE-2010-4536 2024-11-21 10:21 2011-01-4 Show GitHub Exploit DB Packet Storm
310322 - mhonarc mhonarc Cross-site scripting (XSS) vulnerability in lib/mhtxthtml.pl in MHonArc 2.6.16 allows remote attackers to inject arbitrary web script or HTML via a malformed start tag and end tag for a SCRIPT elemen… CWE-79
Cross-site Scripting
CVE-2010-4524 2024-11-21 10:21 2011-01-4 Show GitHub Exploit DB Packet Storm
310323 - xwiki xwiki Cross-site scripting (XSS) vulnerability in XWiki Enterprise before 2.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2010-4642 2024-11-21 10:21 2010-12-31 Show GitHub Exploit DB Packet Storm
310324 - xwiki xwiki SQL injection vulnerability in XWiki Enterprise before 2.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2010-4641 2024-11-21 10:21 2010-12-31 Show GitHub Exploit DB Packet Storm
310325 - xwiki xwiki_watch Multiple cross-site scripting (XSS) vulnerabilities in XWiki Watch 1.0 allow remote attackers to inject arbitrary web script or HTML via the rev parameter to (1) bin/viewrev/Main/WebHome and (2) bin/… CWE-79
Cross-site Scripting
CVE-2010-4640 2024-11-21 10:21 2010-12-31 Show GitHub Exploit DB Packet Storm
310326 - intendance mysource_matrix SQL injection vulnerability in index.php in MySource Matrix allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2010-4639 2024-11-21 10:21 2010-12-31 Show GitHub Exploit DB Packet Storm
310327 - iptechinside com_jquarks4s SQL injection vulnerability in the submitSurvey function in controller.php in JQuarks4s (com_jquarks4s) component 1.0.0 for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to exec… CWE-89
SQL Injection
CVE-2010-4638 2024-11-21 10:21 2010-12-31 Show GitHub Exploit DB Packet Storm
310328 - finalcut feedlist Cross-site scripting (XSS) vulnerability in feedlist/handler_image.php in the FeedList plugin 2.61.01 for WordPress allows remote attackers to inject arbitrary web script or HTML via the i parameter. CWE-79
Cross-site Scripting
CVE-2010-4637 2024-11-21 10:21 2010-12-31 Show GitHub Exploit DB Packet Storm
310329 - site2nite business_e-listings SQL injection vulnerability in detail.asp in Site2Nite Business e-Listings allows remote attackers to execute arbitrary SQL commands via the ID parameter. CWE-89
SQL Injection
CVE-2010-4636 2024-11-21 10:21 2010-12-31 Show GitHub Exploit DB Packet Storm
310330 - site2nite vacation_rental_listings SQL injection vulnerability in detail.asp in Site2Nite Vacation Rental (VRBO) Listings allows remote attackers to execute arbitrary SQL commands via the ID parameter. CWE-89
SQL Injection
CVE-2010-4635 2024-11-21 10:21 2010-12-31 Show GitHub Exploit DB Packet Storm