Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
21 8.8 重要
Network
Stichting NLnet Labs NSD NLnet LabsのNSDにおける複数の脆弱性 New CWE-122
CWE-190
CVE-2026-12244 2026-06-29 11:25 2026-06-25 Show GitHub Exploit DB Packet Storm
22 7.5 重要
Network
Stichting NLnet Labs NSD NLnet LabsのNSDにおける解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-12245 2026-06-29 11:25 2026-06-25 Show GitHub Exploit DB Packet Storm
23 8.1 重要
Network
Stichting NLnet Labs NSD NLnet LabsのNSDにおける複数の脆弱性 New CWE-120
CWE-20
CVE-2026-12246 2026-06-29 11:25 2026-06-25 Show GitHub Exploit DB Packet Storm
24 6.1 警告
Network
PowerSchool Inc. Employee Access Center PowerSchool Inc.のEmployee Access Centerにおけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-12425 2026-06-29 11:25 2026-06-16 Show GitHub Exploit DB Packet Storm
25 7.5 重要
Network
Stichting NLnet Labs NSD NLnet LabsのNSDにおける複数の脆弱性 New CWE-284
CWE-306
CVE-2026-12490 2026-06-29 11:25 2026-06-25 Show GitHub Exploit DB Packet Storm
26 7.1 重要
Local
シーメンス SIMATIC WinCC Unified PC Runtime シーメンスのSIMATIC WinCC Unified PC Runtimeにおけるファイル内またはディスク上の平文保存に関する脆弱性 New CWE-313
ファイル内またはディスク上の平文保存
CVE-2026-24349 2026-06-29 11:25 2026-06-9 Show GitHub Exploit DB Packet Storm
27 8.2 重要
Network
Docling Docling Doclingにおける複数の脆弱性 New CWE-918
CWE-94
CVE-2026-44016 2026-06-29 11:25 2026-06-24 Show GitHub Exploit DB Packet Storm
28 7.5 重要
Network
Docling Docling Doclingにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-44017 2026-06-29 11:25 2026-06-24 Show GitHub Exploit DB Packet Storm
29 7.5 重要
Network
Docling Docling DoclingにおけるDTD の再帰的なエンティティ参照の不適切な制限に関する脆弱性 New CWE-776
DTD の再帰的なエンティティ参照の不適切な制限
CVE-2026-44020 2026-06-29 11:25 2026-06-24 Show GitHub Exploit DB Packet Storm
30 5.5 警告
Local
Docling Docling Doclingにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-44022 2026-06-29 11:25 2026-06-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
254231 9.8 CRITICAL
Network
digitaldruid hoteldruid HotelDruid HotelDruid 2.3.0 version 2.3.0 and earlier contains a SQL Injection vulnerability in "id_utente_mod" parameter in gestione_utenti.php file that can result in An attacker can dump all the d… CWE-89
SQL Injection
CVE-2018-1000871 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254232 6.1 MEDIUM
Network
cebe markdown PHP cebe markdown parser version 1.2.0 and earlier contains a Cross Site Scripting (XSS) vulnerability in all distributed parsers allowing a malicious crafted script to be executed that can result in… CWE-79
Cross-site Scripting
CVE-2018-1000874 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254233 6.5 MEDIUM
Network
fasterxml
oracle
netapp
jackson-modules-java8
database_server
clusterware
global_lifecycle_management_opatch
nosql_database
active_iq_unified_manager
Fasterxml Jackson version Before 2.9.8 contains a CWE-20: Improper Input Validation vulnerability in Jackson-Modules-Java8 that can result in Causes a denial-of-service (DoS). This attack appear to b… CWE-20
 Improper Input Validation 
CVE-2018-1000873 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254234 5.4 MEDIUM
Network
phpipam phpipam PHPipam version 1.3.2 and earlier contains a CWE-79 vulnerability in /app/admin/users/print-user.php that can result in Execute code in the victims browser. This attack appear to be exploitable via A… CWE-79
Cross-site Scripting
CVE-2018-1000870 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254235 9.8 CRITICAL
Network
phpipam phpipam phpIPAM version 1.3.2 contains a CWE-89 vulnerability in /app/admin/nat/item-add-submit.php that can result in SQL Injection.. This attack appear to be exploitable via Rough user, exploiting the vuln… CWE-89
SQL Injection
CVE-2018-1000869 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254236 6.1 MEDIUM
Network
webidsupport webid WeBid version up to current version 1.2.2 contains a Cross Site Scripting (XSS) vulnerability in user_login.php, register.php that can result in Javascript execution in the user's browser, injection … CWE-79
Cross-site Scripting
CVE-2018-1000868 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254237 8.8 HIGH
Network
webidsupport webid WeBid version up to current version 1.2.2 contains a SQL Injection vulnerability in All five yourauctions*.php scripts that can result in Database Read via Blind SQL Injection. This attack appear to … CWE-89
SQL Injection
CVE-2018-1000867 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254238 4.7 MEDIUM
Network
phpipam phpipam phpipam version 1.3.2 and earlier contains a Cross Site Scripting (XSS) vulnerability in The value of the phpipamredirect cookie is copied into an HTML tag on the login page encapsulated in single qu… CWE-79
Cross-site Scripting
CVE-2018-1000860 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254239 8.8 HIGH
Network
gnupg
canonical
gnupg
ubuntu_linux
GnuPG version 2.1.12 - 2.2.11 contains a Cross ite Request Forgery (CSRF) vulnerability in dirmngr that can result in Attacker controlled CSRF, Information Disclosure, DoS. This attack appear to be e… CWE-352
 Origin Validation Error
CVE-2018-1000858 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm
254240 8.8 HIGH
Network
open-systems log-user-session log-user-session version 0.7 and earlier contains a Directory Traversal vulnerability in Main SUID-binary /usr/local/bin/log-user-session that can result in User to root privilege escalation. This at… CWE-22
Path Traversal
CVE-2018-1000857 2024-11-21 12:40 2018-12-21 Show GitHub Exploit DB Packet Storm