Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 10:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
361 8.8 重要
Network
マイクロソフト SQL Server 2016
SQL Server 2019
SQL Server 2025
SQL Server 2022
SQL Server 2017
SQL Server のリモート コードが実行される脆弱性 New CWE-610
CWE-73
CVE-2026-40370 2026-06-22 11:38 2026-05-12 Show GitHub Exploit DB Packet Storm
362 8.8 重要
Network
マイクロソフト Microsoft Dynamics 365 Microsoft Dynamics 365 (オンプレミス) の特権昇格の脆弱性 New CWE-280
CWE-755
CVE-2026-40371 2026-06-22 11:38 2026-06-9 Show GitHub Exploit DB Packet Storm
363 7.2 重要
Network
VMware Spring Security VMwareのSpring Securityにおける信頼できないデータのデシリアライゼーションに関する脆弱性 New CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-40993 2026-06-22 11:38 2026-06-10 Show GitHub Exploit DB Packet Storm
364 8.4 重要
Network
マイクロソフト Azure Stack Edge Azure Stack Edge のなりすましの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-41098 2026-06-22 11:38 2026-06-9 Show GitHub Exploit DB Packet Storm
365 5.3 警告
Network
opentelemetry opentelemetry opentelemetryにおける過剰なサイズ値のメモリ割り当てに関する脆弱性 New CWE-789
過剰なサイズ値のメモリ割り当て
CVE-2026-41178 2026-06-22 11:38 2026-06-4 Show GitHub Exploit DB Packet Storm
366 4.9 警告
Network
Apache Software Foundation Apache DolphinScheduler Apache Software FoundationのApache DolphinSchedulerにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-41280 2026-06-22 11:38 2026-06-17 Show GitHub Exploit DB Packet Storm
367 6.1 警告
Network
VMware Spring Security VMwareのSpring Securityにおけるオープンリダイレクトの脆弱性 New CWE-601
オープンリダイレクト
CVE-2026-41706 2026-06-22 11:37 2026-06-10 Show GitHub Exploit DB Packet Storm
368 6.5 警告
Network
Apache Software Foundation Apache DolphinScheduler Apache Software FoundationのApache DolphinSchedulerにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-42357 2026-06-22 11:37 2026-06-17 Show GitHub Exploit DB Packet Storm
369 7.2 重要
Network
OpenStack OpenStack Ironic OpenStackのOpenStack Ironicにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 New CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-42510 2026-06-22 11:37 2026-04-28 Show GitHub Exploit DB Packet Storm
370 7.5 重要
Network
マイクロソフト Microsoft Windows 11 26h1
Microsoft Windows Server 2022
Microsoft Windows 10 22h2
Microsoft Windows 10 1607
Microsoft Wind…
Windows リモート デスクトップ プロトコル (RDP) の情報漏えいの脆弱性 New CWE-125
境界外読み取り
CVE-2026-42908 2026-06-22 11:37 2026-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
343751 - zonemetrics zonex_publishers_gold_edition PHP remote file inclusion vulnerability in includes/usercp_register.php in ZoneMetrics ZoneX Publishers Gold Edition 1.0.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL … NVD-CWE-Other
CVE-2006-4036 2018-10-18 06:33 2006-08-10 Show GitHub Exploit DB Packet Storm
343752 - chaossoft gaestechaos Multiple cross-site scripting (XSS) vulnerabilities in eintragen.php in GaesteChaos 0.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) gastname or (2) gastwohno… CWE-79
Cross-site Scripting
CVE-2006-4038 2018-10-18 06:33 2006-08-10 Show GitHub Exploit DB Packet Storm
343753 - chaossoft gaestechaos Multiple SQL injection vulnerabilities in eintragen.php in GaesteChaos 0.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) gastname, (2) gastwohnort, or (3) gasteintr… CWE-89
SQL Injection
CVE-2006-4039 2018-10-18 06:33 2006-08-10 Show GitHub Exploit DB Packet Storm
343754 - mywebland mybloggie Multiple SQL injection vulnerabilities in trackback.php in myWebland myBloggie 2.1.4 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) title, (2) url, (3) excerpt, or (… CWE-89
SQL Injection
CVE-2006-4042 2018-10-18 06:33 2006-08-10 Show GitHub Exploit DB Packet Storm
343755 - mywebland mybloggie index.php in myWebland myBloggie 2.1.4 and earlier allows remote attackers to obtain sensitive information via a query that only specifies the viewdate mode, which reveals the table prefix in a SQL e… NVD-CWE-Other
CVE-2006-4043 2018-10-18 06:33 2006-08-10 Show GitHub Exploit DB Packet Storm
343756 - open_cubic_player open_cubic_player Multiple stack-based buffer overflows in Open Cubic Player 2.6.0pre6 and earlier for Windows, and 0.1.10_rc5 and earlier on Linux/BSD, allow remote attackers to execute arbitrary code via (1) a large… NVD-CWE-Other
CVE-2006-4046 2018-10-18 06:33 2006-08-10 Show GitHub Exploit DB Packet Storm
343757 - david_walker phpautomembersarea PHP remote file inclusion vulnerability in auto_check_renewals.php in phpAutoMembersArea (phpAMA) 3.2.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the installed_co… NVD-CWE-Other
CVE-2006-4050 2018-10-18 06:33 2006-08-10 Show GitHub Exploit DB Packet Storm
343758 - david_walker phpautomembersarea This vulnerability is addressed in the following product release: David Walker, phpAutoMembersArea, 3.2.5 NVD-CWE-Other
CVE-2006-4050 2018-10-18 06:33 2006-08-10 Show GitHub Exploit DB Packet Storm
343759 - turnkey_web_tools php_live_helper PHP remote file inclusion vulnerability in global.php in Turnkey Web Tools PHP Live Helper 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the abs_path parameter. NVD-CWE-Other
CVE-2006-4051 2018-10-18 06:33 2006-08-10 Show GitHub Exploit DB Packet Storm
343760 - turnkey_web_tools php_simple_shop Multiple PHP remote file inclusion vulnerabilities in Turnkey Web Tools PHP Simple Shop 2.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the abs_path parameter to (1)… NVD-CWE-Other
CVE-2006-4052 2018-10-18 06:33 2006-08-10 Show GitHub Exploit DB Packet Storm