Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 12:22 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
301 7.3 重要
Local
マイクロソフト Microsoft .NET Framework
.NET
Microsoft Visual Studio 2026
visual studio 2022
.NET の特権の昇格の脆弱性 New CWE-122
CWE-20
CWE-787
CVE-2026-32177 2026-06-22 11:41 2026-05-12 Show GitHub Exploit DB Packet Storm
302 8.8 重要
Local
マイクロソフト Azure Kubernetes Service Azure Kubernetes Service (AKS) のリモートでコードが実行される脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-32193 2026-06-22 11:40 2026-06-9 Show GitHub Exploit DB Packet Storm
303 7.8 重要
Local
マイクロソフト Azure Monitor Agent Azure Monitor エージェントの特権昇格の脆弱性 New CWE-610
CWE-73
CVE-2026-32204 2026-06-22 11:40 2026-05-12 Show GitHub Exploit DB Packet Storm
304 9.8 緊急
Network
Apache Software Foundation Apache DolphinScheduler Apache Software FoundationのApache DolphinSchedulerにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-32966 2026-06-22 11:40 2026-06-17 Show GitHub Exploit DB Packet Storm
305 9.1 緊急
Network
Apache Software Foundation Apache DolphinScheduler Apache Software FoundationのApache DolphinSchedulerにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-32967 2026-06-22 11:40 2026-06-17 Show GitHub Exploit DB Packet Storm
306 8.2 重要
Network
マイクロソフト Azure Machine Learning Azure Machine Learning Notebook のスプーフィングの脆弱性 New CWE-74
インジェクション
CVE-2026-33833 2026-06-22 11:40 2026-05-12 Show GitHub Exploit DB Packet Storm
307 4.3 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける情報漏えいに関する脆弱性 New CWE-200
情報漏えい
CVE-2026-3433 2026-06-22 11:40 2026-06-12 Show GitHub Exploit DB Packet Storm
308 8.7 重要
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおけるオープンリダイレクトの脆弱性 New CWE-601
オープンリダイレクト
CVE-2026-35258 2026-06-22 11:40 2026-06-17 Show GitHub Exploit DB Packet Storm
309 8.8 重要
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおけるオープンリダイレクトの脆弱性 New CWE-601
オープンリダイレクト
CVE-2026-35259 2026-06-22 11:40 2026-06-17 Show GitHub Exploit DB Packet Storm
310 6.5 警告
Network
オラクル Oracle Access Manager オラクルのOracle Access Managerにおける認証に関する脆弱性 New CWE-287
不適切な認証
CVE-2026-35261 2026-06-22 11:40 2026-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
343851 - musicbox musicbox Cross-site scripting (XSS) vulnerability in Shalwan MusicBox 2.3.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the id parameter in a request for the top-level URI. … NVD-CWE-Other
CVE-2006-3881 2018-10-18 06:32 2006-07-27 Show GitHub Exploit DB Packet Storm
343852 - musicbox musicbox Shalwan MusicBox 2.3.4 and earlier allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function. NVD-CWE-Other
CVE-2006-3882 2018-10-18 06:32 2006-07-27 Show GitHub Exploit DB Packet Storm
343853 - gonafish linkscaffe Multiple cross-site scripting (XSS) vulnerabilities in Gonafish LinksCaffe 3.0 allow remote attackers to inject arbitrary web script or HTML via (1) the tablewidth parameter in (a) counter.php; (2) t… NVD-CWE-Other
CVE-2006-3883 2018-10-18 06:32 2006-07-27 Show GitHub Exploit DB Packet Storm
343854 - gonafish linkscaffe Multiple SQL injection vulnerabilities in links.php in Gonafish LinksCaffe 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) offset and (2) limit parameters, (3) newdays parame… NVD-CWE-Other
CVE-2006-3884 2018-10-18 06:32 2006-07-27 Show GitHub Exploit DB Packet Storm
343855 - checkpoint firewall-1 Directory traversal vulnerability in Check Point Firewall-1 R55W before HFA03 allows remote attackers to read arbitrary files via an encoded .. (dot dot) in the URL on TCP port 18264. NVD-CWE-Other
CVE-2006-3885 2018-10-18 06:32 2006-07-27 Show GitHub Exploit DB Packet Storm
343856 - musicbox musicbox SQL injection vulnerability in Shalwan MusicBox 2.3.4 and earlier allows remote attackers to execute arbitrary SQL commands via the page parameter in a viewgallery action in a request for the top-lev… NVD-CWE-Other
CVE-2006-3886 2018-10-18 06:32 2006-07-27 Show GitHub Exploit DB Packet Storm
343857 - tobias_kloy tp-book Cross-site scripting (XSS) vulnerability in guestbook.php in TP-Book 1.00 and earlier allows remote attackers to inject arbitrary web script or HTML via the name parameter. NVD-CWE-Other
CVE-2006-3900 2018-10-18 06:32 2006-07-27 Show GitHub Exploit DB Packet Storm
343858 - tumbleweed mailgate_email_firewall Multiple stack-based buffer overflows in Tumbleweed Email Firewall (EMF) allow remote attackers to execute arbitrary code via an email attachment with an LHA archive that contains a (1) file or (2) d… NVD-CWE-Other
CVE-2006-3901 2018-10-18 06:32 2006-07-27 Show GitHub Exploit DB Packet Storm
343859 - mywebland mybloggie CRLF injection vulnerability in (1) index.php and (2) admin.php in myWebland MyBloggie 2.1.3 allows remote attackers to hijack sessions and conduct cross-site scripting (XSS) attacks via a cookie. NVD-CWE-Other
CVE-2006-3903 2018-10-18 06:32 2006-07-28 Show GitHub Exploit DB Packet Storm
343860 - mywebland mybloggie SQL injection vulnerability in Webland MyBloggie 2.1.3 allows remote attackers to execute arbitrary SQL commands via the (1) post_id parameter in index.php and (2) search function. NVD-CWE-Other
CVE-2006-3905 2018-10-18 06:32 2006-07-28 Show GitHub Exploit DB Packet Storm