Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241801 7.5 危険 Mambo Foundation - Mambo の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2498 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
241802 5 警告 Mambo Foundation - Mambo における CRLF インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2008-2497 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
241803 7.5 危険 pancake - Zina の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2495 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
241804 4.3 警告 pancake - Zina の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2494 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
241805 7.5 危険 hotscripts - AbleSpace の adv_cat.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2491 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
241806 7.5 危険 maxsite - MAXSITE の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2487 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
241807 4.3 警告 pcpin - PCPIN Chat の URL リダイレクトスクリプトにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2485 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
241808 7.5 危険 InsaneVisions - insanevisions OneCMS の install_mod.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2482 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
241809 7.5 危険 mx-system - MxBB Portal の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2477 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
241810 10 危険 LANDesk - LANDesk Management Suite などの QIP Server Service におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-2468 2012-09-25 17:17 2008-09-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
181 4.3 MEDIUM
Network
- - Authorization Bypass Through User-Controlled Key vulnerability in Matteo Manna Simple User Avatar allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Simple U… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-57676 2026-06-30 03:39 2026-06-29 Show GitHub Exploit DB Packet Storm
182 7.1 HIGH
Network
- - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Epiphyt Embed Privacy allows Path Traversal. This issue affects Embed Privacy: from n/a through 1.12.3. New CWE-22
Path Traversal
CVE-2026-57346 2026-06-30 03:39 2026-06-29 Show GitHub Exploit DB Packet Storm
183 7.1 HIGH
Network
- - Unauthenticated Cross Site Scripting (XSS) in BEAR <= 1.1.8 versions. New CWE-79
Cross-site Scripting
CVE-2026-57320 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
184 6.1 MEDIUM
Network
- - Unauthenticated Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions. New CWE-79
Cross-site Scripting
CVE-2026-57326 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
185 6.3 MEDIUM
Network
- - Subscriber Broken Access Control in MainWP <= 6.1.1 versions. New CWE-862
 Missing Authorization
CVE-2026-57327 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
186 6.5 MEDIUM
Network
- - Subscriber Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions. New CWE-79
Cross-site Scripting
CVE-2026-57328 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
187 6.5 MEDIUM
Network
- - Subscriber Cross Site Scripting (XSS) in WooCommerce Designer Pro <= 1.9.34 versions. New CWE-79
Cross-site Scripting
CVE-2026-57329 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
188 6.5 MEDIUM
Network
- - Subscriber Cross Site Scripting (XSS) in MasterStudy LMS <= 3.7.27 versions. New CWE-79
Cross-site Scripting
CVE-2026-57330 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
189 9.9 CRITICAL
Network
- - Performer Arbitrary File Deletion in Paid Videochat Turnkey Site <= 7.4.8 versions. New CWE-22
Path Traversal
CVE-2026-57331 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
190 7.1 HIGH
Network
- - Subscriber Broken Access Control in Wallet System for WooCommerce <= 2.7.6 versions. New CWE-862
 Missing Authorization
CVE-2026-57332 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm