Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241761 6.8 警告 Joomla! - Joomla! 用の GameQ コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2701 2012-09-25 17:17 2008-06-13 Show GitHub Exploit DB Packet Storm
241762 7.5 危険 gwm - Galatolo WebManager の view.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2700 2012-09-25 17:17 2008-06-13 Show GitHub Exploit DB Packet Storm
241763 7.5 危険 gwm - GWM におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2699 2012-09-25 17:17 2008-06-13 Show GitHub Exploit DB Packet Storm
241764 7.5 危険 jiro - JiRo's FAQ Manager eXperience の read.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2691 2012-09-25 17:17 2008-06-13 Show GitHub Exploit DB Packet Storm
241765 7.5 危険 insanelysimple2 - Insanely Simple Blog の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2670 2012-09-25 17:17 2008-06-11 Show GitHub Exploit DB Packet Storm
241766 10 危険 lavrsen - Motion の webhttpd.c の read_client 関数における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2008-2654 2012-09-25 17:17 2008-06-10 Show GitHub Exploit DB Packet Storm
241767 6.8 警告 mebiblio - meBiblio の upload/uploader.html における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-2648 2012-09-25 17:17 2008-06-10 Show GitHub Exploit DB Packet Storm
241768 7.5 危険 mebiblio - meBiblio の admin/journal_change_mask.inc.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2647 2012-09-25 17:17 2008-06-10 Show GitHub Exploit DB Packet Storm
241769 4.3 警告 mebiblio - meBiblio におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2646 2012-09-25 17:17 2008-06-10 Show GitHub Exploit DB Packet Storm
241770 7.5 危険 kmrg-itb - OtomiGenX の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2642 2012-09-25 17:17 2008-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
181 4.3 MEDIUM
Network
- - Authorization Bypass Through User-Controlled Key vulnerability in Matteo Manna Simple User Avatar allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Simple U… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-57676 2026-06-30 03:39 2026-06-29 Show GitHub Exploit DB Packet Storm
182 7.1 HIGH
Network
- - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Epiphyt Embed Privacy allows Path Traversal. This issue affects Embed Privacy: from n/a through 1.12.3. New CWE-22
Path Traversal
CVE-2026-57346 2026-06-30 03:39 2026-06-29 Show GitHub Exploit DB Packet Storm
183 7.1 HIGH
Network
- - Unauthenticated Cross Site Scripting (XSS) in BEAR <= 1.1.8 versions. New CWE-79
Cross-site Scripting
CVE-2026-57320 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
184 6.1 MEDIUM
Network
- - Unauthenticated Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions. New CWE-79
Cross-site Scripting
CVE-2026-57326 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
185 6.3 MEDIUM
Network
- - Subscriber Broken Access Control in MainWP <= 6.1.1 versions. New CWE-862
 Missing Authorization
CVE-2026-57327 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
186 6.5 MEDIUM
Network
- - Subscriber Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions. New CWE-79
Cross-site Scripting
CVE-2026-57328 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
187 6.5 MEDIUM
Network
- - Subscriber Cross Site Scripting (XSS) in WooCommerce Designer Pro <= 1.9.34 versions. New CWE-79
Cross-site Scripting
CVE-2026-57329 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
188 6.5 MEDIUM
Network
- - Subscriber Cross Site Scripting (XSS) in MasterStudy LMS <= 3.7.27 versions. New CWE-79
Cross-site Scripting
CVE-2026-57330 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
189 9.9 CRITICAL
Network
- - Performer Arbitrary File Deletion in Paid Videochat Turnkey Site <= 7.4.8 versions. New CWE-22
Path Traversal
CVE-2026-57331 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
190 7.1 HIGH
Network
- - Subscriber Broken Access Control in Wallet System for WooCommerce <= 2.7.6 versions. New CWE-862
 Missing Authorization
CVE-2026-57332 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm