Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
243491 2.1 注意 ben jeavons
Drupal
- Drupal の Own Term モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1362 2012-06-26 16:19 2010-01-13 Show GitHub Exploit DB Packet Storm
243492 4.3 警告 glarotech - PHPepperShop の shop/USER_ARTIKEL_HANDLING_AUFRUF.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1361 2012-06-26 16:19 2010-04-13 Show GitHub Exploit DB Packet Storm
243493 7.5 危険 boesch-it - FAQEngine における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-1360 2012-06-26 16:19 2010-04-13 Show GitHub Exploit DB Packet Storm
243494 6.8 警告 xt:Commerce
bluegate
- xt:Commerce 用の Direct URL モジュールの bluegate_seo.inc.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1359 2012-06-26 16:19 2010-04-13 Show GitHub Exploit DB Packet Storm
243495 5 警告 cookex
Joomla!
- Joomla! の Cookex Agency ckforms コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1345 2012-06-26 16:19 2010-04-9 Show GitHub Exploit DB Packet Storm
243496 7.5 危険 cookex
Joomla!
- Joomla! の Cookex Agency ckforms コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1344 2012-06-26 16:19 2010-04-9 Show GitHub Exploit DB Packet Storm
243497 7.5 危険 bjsintay - SiteX における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1343 2012-06-26 16:19 2010-04-9 Show GitHub Exploit DB Packet Storm
243498 6.8 警告 directnews - Direct News における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-1342 2012-06-26 16:19 2010-04-9 Show GitHub Exploit DB Packet Storm
243499 5 警告 ermenegildo fiorito - Irmin CMS におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1309 2012-06-26 16:19 2010-04-8 Show GitHub Exploit DB Packet Storm
243500 5 警告 decryptweb
Joomla!
- Joomla! の dwgraphs コンポーネントの dwgraphs.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1302 2012-06-26 16:19 2010-04-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
711 6.5 MEDIUM
Network
- - Hermes WebUI prior to v0.51.221 contains a path traversal vulnerability that allows attackers to escape the workspace boundary by supplying symlinks that resolve to files or directories outside the d… CWE-59
Link Following
CVE-2026-11322 2026-06-5 23:59 2026-06-5 Show GitHub Exploit DB Packet Storm
712 5.4 MEDIUM
Network
- - In Znuny LTS before 6.5.21 and Znuny before 7.3.3, XSS can occur via stored user preferences. CWE-79
Cross-site Scripting
CVE-2026-50591 2026-06-5 23:59 2026-06-5 Show GitHub Exploit DB Packet Storm
713 6.4 MEDIUM
Network
- - In Znuny LTS before 6.5.21 and Znuny before 7.3.3, there is reflected XSS in AdminCommunicationLog (aka the communication log administration view). CWE-79
Cross-site Scripting
CVE-2026-50592 2026-06-5 23:59 2026-06-5 Show GitHub Exploit DB Packet Storm
714 3.6 LOW
Local
- - A weakness has been identified in thedotmack claude-mem up to 11.0.1. The affected element is the function computeObservationContentHash of the file src/services/sqlite/observations/store.ts of the c… CWE-327
CWE-328
 Use of a Broken or Risky Cryptographic Algorithm
 Use of Weak Hash
CVE-2026-11330 2026-06-5 23:59 2026-06-5 Show GitHub Exploit DB Packet Storm
715 6.1 MEDIUM
Network
- - Lyrion Music Server 9.2.0 contains an unauthenticated reflected cross-site scripting vulnerability in the server.log endpoint that allows attackers to inject arbitrary HTML and JavaScript code throug… CWE-79
Cross-site Scripting
CVE-2026-50230 2026-06-5 23:59 2026-06-5 Show GitHub Exploit DB Packet Storm
716 7.2 HIGH
Network
- - Lyrion Music Server 9.2.0 contains an unauthenticated stored cross-site scripting vulnerability in the log viewer that allows attackers to inject malicious scripts by exploiting unescaped template va… CWE-79
Cross-site Scripting
CVE-2026-50231 2026-06-5 23:59 2026-06-5 Show GitHub Exploit DB Packet Storm
717 7.2 HIGH
Network
- - Lyrion Music Server 9.2.0 contains a stored cross-site scripting vulnerability that allows attackers to inject malicious scripts through media file metadata tags like GENRE, ARTIST, and ALBUM. Attack… CWE-79
Cross-site Scripting
CVE-2026-50232 2026-06-5 23:59 2026-06-5 Show GitHub Exploit DB Packet Storm
718 5.3 MEDIUM
Network
- - Lyrion Music Server 9.2.0 contains an arbitrary directory listing vulnerability in its readdirectory query, exposed through both the CLI service (TCP port 9090) and the HTTP JSON-RPC endpoint (/jsonr… CWE-548
 Exposure of Information Through Directory Listing
CVE-2026-50233 2026-06-5 23:59 2026-06-5 Show GitHub Exploit DB Packet Storm
719 7.5 HIGH
Network
- - Lyrion Music Server 9.2.0 contains a path traversal vulnerability that allows unauthenticated attackers to read arbitrary files by exploiting directory traversal in the web server context. Attackers … CWE-22
Path Traversal
CVE-2026-50234 2026-06-5 23:59 2026-06-5 Show GitHub Exploit DB Packet Storm
720 6.1 MEDIUM
Network
- - Lyrion Music Server 9.2.0 contains a reflected cross-site scripting vulnerability in advanced search parameters that fail to properly sanitize user input before displaying it in search forms. Attacke… CWE-79
Cross-site Scripting
CVE-2026-50235 2026-06-5 23:59 2026-06-5 Show GitHub Exploit DB Packet Storm