Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2731 6.1 警告
Network
SimpleSAMLphp simplesamlphp-casserver SimpleSAMLphpのsimplesamlphp-casserverにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2025-65954 2026-05-25 10:26 2026-05-18 Show GitHub Exploit DB Packet Storm
2732 5.3 警告
Network
LupinLin1 JiMeng Web MCP Server LupinLin1のJiMeng Web MCP Serverにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2025-70040 2026-05-25 10:25 2026-03-9 Show GitHub Exploit DB Packet Storm
2733 5.4 警告
Network
ERLANG Erlang/ssh
Erlang/OTP
ERLANGのErlang/OTP等の複数製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-23942 2026-05-25 10:25 2026-03-13 Show GitHub Exploit DB Packet Storm
2734 5.3 警告
Network
ERLANG Erlang/ssh
Erlang/OTP
ERLANGのErlang/OTP等の複数製品における高圧縮データの処理 (データ増幅)に関する脆弱性 CWE-409
高圧縮データの不適切な処理 (データ増幅)
CVE-2026-23943 2026-05-25 10:25 2026-03-13 Show GitHub Exploit DB Packet Storm
2735 7.8 重要
Local
Uderzo Software SpaceSniffer Uderzo SoftwareのSpaceSnifferにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-26738 2026-05-25 10:25 2026-03-10 Show GitHub Exploit DB Packet Storm
2736 9.8 緊急
Network
zlib zlib Ruby-lang.orgのZlibにおける複数の脆弱性 CWE-120
CWE-131
CVE-2026-27820 2026-05-25 10:25 2026-04-16 Show GitHub Exploit DB Packet Storm
2737 7.8 重要
Local
Louis Pilfold Gleam Louis PilfoldのGleamにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-32146 2026-05-25 10:25 2026-04-11 Show GitHub Exploit DB Packet Storm
2738 4.3 警告
Network
ERLANG Erlang/ssh
Erlang/OTP
ERLANGのErlang/OTP等の複数製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-32147 2026-05-25 10:25 2026-04-21 Show GitHub Exploit DB Packet Storm
2739 7.8 重要
Local
Elixir-ecto Postgrex Elixir-ectoのPostgrexにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-32687 2026-05-25 10:25 2026-05-12 Show GitHub Exploit DB Packet Storm
2740 7.5 重要
Network
マイクロソフト go-ntlmssp マイクロソフトのgo-ntlmsspにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-32952 2026-05-25 10:25 2026-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
319371 8.8 HIGH
Network
dedecms dedecms A vulnerability was found in DedeCMS up to 5.7.115. It has been rated as critical. This issue affects some unknown processing of the file article_string_mix.php. The manipulation leads to os command … CWE-78
OS Command 
CVE-2024-9076 2024-09-28 01:14 2024-09-22 Show GitHub Exploit DB Packet Storm
319372 7.3 HIGH
Network
webliberty simple_spoiler The The Simple Spoiler plugin for WordPress is vulnerable to arbitrary shortcode execution in versions 1.2 to 1.3. This is due to the plugin adding the filter add_filter('comment_text', 'do_shortcode… CWE-94
Code Injection
CVE-2024-8479 2024-09-28 01:12 2024-09-14 Show GitHub Exploit DB Packet Storm
319373 9.8 CRITICAL
Network
codezips online_shopping_portal A vulnerability classified as problematic was found in Codezips Online Shopping Portal 1.0. Affected by this vulnerability is an unknown functionality of the file insert-product.php. The manipulation… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-9038 2024-09-28 01:11 2024-09-21 Show GitHub Exploit DB Packet Storm
319374 7.2 HIGH
Network
softaculous backuply The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to SQL Injection via the 'options' parameter passed to the backuply_wp_clone_sql() function in all versions up to,… CWE-89
SQL Injection
CVE-2024-8669 2024-09-28 01:08 2024-09-14 Show GitHub Exploit DB Packet Storm
319375 9.8 CRITICAL
Network
mayurik best_house_rental_management_system A vulnerability, which was classified as critical, has been found in SourceCodester Best House Rental Management System 1.0. Affected by this issue is some unknown functionality of the file /ajax.php… CWE-89
SQL Injection
CVE-2024-9039 2024-09-28 00:58 2024-09-21 Show GitHub Exploit DB Packet Storm
319376 8.8 HIGH
Network
mayurik best_house_rental_management_system A vulnerability has been found in SourceCodester Best House Rental Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /ajax.php?action=update_accoun… CWE-89
SQL Injection
CVE-2024-9041 2024-09-28 00:57 2024-09-21 Show GitHub Exploit DB Packet Storm
319377 5.4 MEDIUM
Network
mayurik best_house_rental_management_system A vulnerability has been found in SourceCodester Best House Rental Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /ajax.ph… CWE-79
Cross-site Scripting
CVE-2024-9033 2024-09-28 00:56 2024-09-21 Show GitHub Exploit DB Packet Storm
319378 6.1 MEDIUM
Network
xootix waitlist_woocommerce The Waitlist Woocommerce ( Back in stock notifier ) plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all… CWE-79
Cross-site Scripting
CVE-2024-8724 2024-09-28 00:56 2024-09-14 Show GitHub Exploit DB Packet Storm
319379 9.8 CRITICAL
Network
code-projects blood_bank_system A vulnerability classified as critical was found in code-projects Blood Bank System 1.0. This vulnerability affects unknown code of the file /admin/blood/update/o-.php. The manipulation of the argume… CWE-89
SQL Injection
CVE-2024-9094 2024-09-28 00:54 2024-09-23 Show GitHub Exploit DB Packet Storm
319380 5.5 MEDIUM
Local
code-projects blood_bank_management_system A vulnerability, which was classified as problematic, was found in code-projects Blood Bank Management System 1.0. This affects an unknown part of the component Password Handler. The manipulation lea… CWE-312
 Cleartext Storage of Sensitive Information
CVE-2024-9040 2024-09-28 00:53 2024-09-21 Show GitHub Exploit DB Packet Storm