Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2501 5.4 警告
Network
ERLANG Erlang/ssh
Erlang/OTP
ERLANGのErlang/OTP等の複数製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-23942 2026-05-25 10:25 2026-03-13 Show GitHub Exploit DB Packet Storm
2502 5.3 警告
Network
ERLANG Erlang/ssh
Erlang/OTP
ERLANGのErlang/OTP等の複数製品における高圧縮データの処理 (データ増幅)に関する脆弱性 CWE-409
高圧縮データの不適切な処理 (データ増幅)
CVE-2026-23943 2026-05-25 10:25 2026-03-13 Show GitHub Exploit DB Packet Storm
2503 7.8 重要
Local
Uderzo Software SpaceSniffer Uderzo SoftwareのSpaceSnifferにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-26738 2026-05-25 10:25 2026-03-10 Show GitHub Exploit DB Packet Storm
2504 9.8 緊急
Network
zlib zlib Ruby-lang.orgのZlibにおける複数の脆弱性 CWE-120
CWE-131
CVE-2026-27820 2026-05-25 10:25 2026-04-16 Show GitHub Exploit DB Packet Storm
2505 7.8 重要
Local
Louis Pilfold Gleam Louis PilfoldのGleamにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-32146 2026-05-25 10:25 2026-04-11 Show GitHub Exploit DB Packet Storm
2506 4.3 警告
Network
ERLANG Erlang/ssh
Erlang/OTP
ERLANGのErlang/OTP等の複数製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-32147 2026-05-25 10:25 2026-04-21 Show GitHub Exploit DB Packet Storm
2507 7.8 重要
Local
Elixir-ecto Postgrex Elixir-ectoのPostgrexにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-32687 2026-05-25 10:25 2026-05-12 Show GitHub Exploit DB Packet Storm
2508 7.5 重要
Network
マイクロソフト go-ntlmssp マイクロソフトのgo-ntlmsspにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-32952 2026-05-25 10:25 2026-04-24 Show GitHub Exploit DB Packet Storm
2509 7.5 重要
Network
Mtrudel Bandit MtrudelのBanditにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-39803 2026-05-25 10:25 2026-05-13 Show GitHub Exploit DB Packet Storm
2510 7.5 重要
Network
Mtrudel Bandit MtrudelのBanditにおける無限ループに関する脆弱性 CWE-835
無限ループ
CVE-2026-39806 2026-05-25 10:25 2026-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311551 - solucija snews SQL injection vulnerability in index.php in sNews 1.7 allows remote attackers to execute arbitrary SQL commands via the category parameter. CWE-89
SQL Injection
CVE-2010-2926 2024-11-21 10:17 2010-07-31 Show GitHub Exploit DB Packet Storm
311552 - openfreeway freeway SQL injection vulnerability in index.php in Freeway CMS 1.4.3.210 allows remote attackers to execute arbitrary SQL commands via the ecPath parameter. CWE-89
SQL Injection
CVE-2010-2925 2024-11-21 10:17 2010-07-31 Show GitHub Exploit DB Packet Storm
311553 - silvercover mylinksdump_plugin SQL injection vulnerability in myLDlinker.php in the myLinksDump Plugin 1.2 for WordPress allows remote attackers to execute arbitrary SQL commands via the url parameter. NOTE: some of these details… CWE-89
SQL Injection
CVE-2010-2924 2024-11-21 10:17 2010-07-31 Show GitHub Exploit DB Packet Storm
311554 - prasanna com_youtube SQL injection vulnerability in the YouTube (com_youtube) component 1.5 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id_cate parameter to index.php. CWE-89
SQL Injection
CVE-2010-2923 2024-11-21 10:17 2010-07-31 Show GitHub Exploit DB Packet Storm
311555 - ali_kenan aky_blog SQL injection vulnerability in default.asp in AKY Blog allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2010-2922 2024-11-21 10:17 2010-07-31 Show GitHub Exploit DB Packet Storm
311556 - photoindochina com_golfcourseguide SQL injection vulnerability in the Golf Course Guide (com_golfcourseguide) component 0.9.6.0 beta and 1 beta for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter… CWE-89
SQL Injection
CVE-2010-2921 2024-11-21 10:17 2010-07-31 Show GitHub Exploit DB Packet Storm
311557 - foobla com_foobla_suggestions Directory traversal vulnerability in the Foobla Suggestions (com_foobla_suggestions) component 1.5.1.2 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in… CWE-22
Path Traversal
CVE-2010-2920 2024-11-21 10:17 2010-07-31 Show GitHub Exploit DB Packet Storm
311558 - joomlaxt com_staticxt SQL injection vulnerability in the StaticXT (com_staticxt) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. CWE-89
SQL Injection
CVE-2010-2919 2024-11-21 10:17 2010-07-31 Show GitHub Exploit DB Packet Storm
311559 - visocrea com_joomla_visites PHP remote file inclusion vulnerability in core/include/myMailer.class.php in the Visites (com_joomla-visites) component 1.1 RC2 for Joomla! allows remote attackers to execute arbitrary PHP code via … CWE-94
Code Injection
CVE-2010-2918 2024-11-21 10:17 2010-07-31 Show GitHub Exploit DB Packet Storm
311560 - ajsquare aj_article Multiple cross-site scripting (XSS) vulnerabilities in index.php in AJ Square AJ Article 3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) emailid, (2) fname, (3) lname, (… CWE-79
Cross-site Scripting
CVE-2010-2917 2024-11-21 10:17 2010-07-31 Show GitHub Exploit DB Packet Storm