Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230151 7.5 危険 Plohni - Advanced Comment System における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4623 2012-12-20 19:28 2010-01-18 Show GitHub Exploit DB Packet Storm
230152 7.5 危険 tourismscripts - Tourism Script Bus Script における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4618 2012-12-20 19:28 2010-01-18 Show GitHub Exploit DB Packet Storm
230153 7.5 危険 tourismscripts - Tourism Script Accommodation Hotel Booking Portal Script における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4617 2012-12-20 19:28 2010-01-18 Show GitHub Exploit DB Packet Storm
230154 7.2 危険 south river technologies - South River Technologies WebDrive におけるサービスを停止される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4606 2012-12-20 19:28 2010-01-13 Show GitHub Exploit DB Packet Storm
230155 5 警告 The phpMyAdmin Project - phpMyAdmin の scripts/setup.php におけるクロスサイトリクエストフォージェリ (CSRF) 攻撃を実行される脆弱性 CWE-DesignError
CVE-2009-4605 2012-12-20 19:28 2010-01-15 Show GitHub Exploit DB Packet Storm
230156 5 警告 SAP - SAP Kernel の sapstartsrv.exe におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-4603 2012-12-20 19:28 2010-01-12 Show GitHub Exploit DB Packet Storm
230157 4.3 警告 zeeways - Zeeways ZeeJobsite の basic_search_result.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4601 2012-12-20 19:28 2010-01-12 Show GitHub Exploit DB Packet Storm
230158 7.5 危険 phpwares - PHP Inventory の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4597 2012-12-20 19:28 2010-01-12 Show GitHub Exploit DB Packet Storm
230159 4.3 警告 phpwares - PHP Inventory の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4596 2012-12-20 19:28 2010-01-12 Show GitHub Exploit DB Packet Storm
230160 6 警告 phpwares - PHP Inventory の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4595 2012-12-20 19:28 2010-01-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
4151 7.3 HIGH
Network
- - A security flaw has been discovered in itsourcecode Online Blood Bank Management System 1.0. The affected element is an unknown function of the file /admin/campsdetails.php. Performing a manipulation… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10250 2026-06-1 22:14 2026-06-1 Show GitHub Exploit DB Packet Storm
4152 5.4 MEDIUM
Network
jetbrains youtrack In JetBrains YouTrack before 2026.1.13162 stored XSS in project notification templates was possible CWE-79
Cross-site Scripting
CVE-2026-49368 2026-06-1 21:56 2026-05-30 Show GitHub Exploit DB Packet Storm
4153 4.3 MEDIUM
Network
jetbrains youtrack In JetBrains YouTrack before 2026.1.13162 information disclosure was possible on Users and Groups pages CWE-863
 Incorrect Authorization
CVE-2026-49369 2026-06-1 21:56 2026-05-30 Show GitHub Exploit DB Packet Storm
4154 7.5 HIGH
Network
jetbrains youtrack In JetBrains YouTrack before 2026.1.13162 information disclosure was possible on fetchApp requests CWE-201
 Insertion of Sensitive Information Into Sent Data
CVE-2026-49370 2026-06-1 21:52 2026-05-30 Show GitHub Exploit DB Packet Storm
4155 6.1 MEDIUM
Network
jetbrains pycharm In JetBrains PyCharm before 2025.3.4 stored XSS in Jupyter notebook Markdown cells was possible CWE-79
Cross-site Scripting
CVE-2026-49384 2026-06-1 21:44 2026-05-30 Show GitHub Exploit DB Packet Storm
4156 6.5 MEDIUM
Network
jetbrains youtrack In JetBrains YouTrack before 2026.1.13570 improper access control allowed low-privileged users to modify service accounts CWE-862
 Missing Authorization
CVE-2026-49385 2026-06-1 21:41 2026-05-30 Show GitHub Exploit DB Packet Storm
4157 6.5 MEDIUM
Network
jetbrains youtrack In JetBrains YouTrack before 2026.1.13570 improper access control allowed enumeration of restricted issues and articles on Planning Canvas CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-49386 2026-06-1 21:40 2026-05-30 Show GitHub Exploit DB Packet Storm
4158 7.3 HIGH
Network
- - Heap buffer overflow vulnerability in libjxl 0.12.0 via crafted PBM images to the jxl::extras::DecodeImagePNM function in file lib/extras/dec/pnm.cc. CWE-122
Heap-based Buffer Overflow
CVE-2025-70103 2026-05-31 05:16 2026-05-28 Show GitHub Exploit DB Packet Storm
4159 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing skb_try_coalesce() can attach paged frags from @from to @to. If @from… CWE-787
 Out-of-bounds Write
CVE-2026-46300 2026-05-30 20:17 2026-05-23 Show GitHub Exploit DB Packet Storm
4160 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: media: iris: Fix use-after-free in iris_release_internal_buffers() The recent change in commit 1dabf00ee206 ("media: iris: gen1: … - CVE-2026-46240 2026-05-30 20:17 2026-05-28 Show GitHub Exploit DB Packet Storm