Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
421 8.8 重要
Network
Quest Software Inc. NetVault Backup Quest Software Inc.のNetVault BackupにおけるSQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2026-9782 2026-06-29 11:00 2026-06-25 Show GitHub Exploit DB Packet Storm
422 8.8 重要
Network
Quest Software Inc. NetVault Backup Quest Software Inc.のNetVault BackupにおけるSQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2026-9783 2026-06-29 11:00 2026-06-25 Show GitHub Exploit DB Packet Storm
423 8.8 重要
Network
Quest Software Inc. NetVault Backup Quest Software Inc.のNetVault BackupにおけるSQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2026-9784 2026-06-29 11:00 2026-06-25 Show GitHub Exploit DB Packet Storm
424 8.8 重要
Network
Quest Software Inc. NetVault Backup Quest Software Inc.のNetVault BackupにおけるSQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2026-9785 2026-06-29 11:00 2026-06-25 Show GitHub Exploit DB Packet Storm
425 8.8 重要
Network
Quest Software Inc. NetVault Backup Quest Software Inc.のNetVault BackupにおけるSQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2026-9786 2026-06-29 11:00 2026-06-25 Show GitHub Exploit DB Packet Storm
426 8.8 重要
Network
Quest Software Inc. NetVault Backup Quest Software Inc.のNetVault BackupにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-9787 2026-06-29 11:00 2026-06-25 Show GitHub Exploit DB Packet Storm
427 7.8 重要
Local
日本電気 ExpressUpdate Agent for Windows ExpressUpdate Agent for Windowsにおける名前付きパイプに対するアクセス制御不備の脆弱性 CWE-Other
その他
CVE-2026-8797 2026-06-26 14:17 2026-06-26 Show GitHub Exploit DB Packet Storm
428 7.5 重要
Network
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-45860 2026-06-26 12:01 2026-05-27 Show GitHub Exploit DB Packet Storm
429 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-45861 2026-06-26 12:01 2026-05-27 Show GitHub Exploit DB Packet Storm
430 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-45862 2026-06-26 12:01 2026-05-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
254111 6.1 MEDIUM
Network
user_project user An issue was discovered in the Users (aka Front-end user management) plugin 1.4.5 for October CMS. XSS exists in the name field. CWE-79
Cross-site Scripting
CVE-2018-10366 2024-11-21 12:41 2018-04-25 Show GitHub Exploit DB Packet Storm
254112 5.4 MEDIUM
Network
catapultthemes cookie_consent A persistent cross-site scripting vulnerability has been identified in the web interface of the Catapult UK Cookie Consent plugin before 2.3.10 for WordPress that allows the execution of arbitrary HT… CWE-79
Cross-site Scripting
CVE-2018-10310 2024-11-21 12:41 2018-04-25 Show GitHub Exploit DB Packet Storm
254113 9.8 CRITICAL
Network
phpliteadmin phpliteadmin An issue was discovered in phpLiteAdmin 1.9.5 through 1.9.7.1. Due to loose comparison with '==' instead of '===' in classes/Authorization.php for the user-provided login password, it is possible to … CWE-287
Improper Authentication
CVE-2018-10362 2024-11-21 12:41 2018-04-25 Show GitHub Exploit DB Packet Storm
254114 7.8 HIGH
Local
kde ktexteditor An issue was discovered in KTextEditor 5.34.0 through 5.45.0. Insecure handling of temporary files in the KTextEditor's kauth_ktexteditor_helper service (as utilized in the Kate text editor) can allo… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2018-10361 2024-11-21 12:41 2018-04-25 Show GitHub Exploit DB Packet Storm
254115 6.1 MEDIUM
Network
phpipam phpipam app/tools/mac-lookup/index.php in phpIPAM 1.3.1 has Reflected XSS on /tools/mac-lookup/ via the mac parameter. CWE-79
Cross-site Scripting
CVE-2018-10329 2024-11-21 12:41 2018-04-24 Show GitHub Exploit DB Packet Storm
254116 7.4 HIGH
Adjacent
momentum momentum_axel_720p_firmware Momentum Axel 720P 5.1.8 devices have a hardcoded password of streaming for the appagent account, which allows remote attackers to view the RTSP video stream. CWE-798
 Use of Hard-coded Credentials
CVE-2018-10328 2024-11-21 12:41 2018-04-24 Show GitHub Exploit DB Packet Storm
254117 5.5 MEDIUM
Local
linux
canonical
debian
linux_kernel
ubuntu_linux
debian_linux
The xfs_bmap_extents_to_btree function in fs/xfs/libxfs/xfs_bmap.c in the Linux kernel through 4.16.3 allows local users to cause a denial of service (xfs_bmapi_write NULL pointer dereference) via a … CWE-476
 NULL Pointer Dereference
CVE-2018-10323 2024-11-21 12:41 2018-04-24 Show GitHub Exploit DB Packet Storm
254118 5.5 MEDIUM
Local
linux
redhat
linux_kernel
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
virtualization_host
The xfs_dinode_verify function in fs/xfs/libxfs/xfs_inode_buf.c in the Linux kernel through 4.16.3 allows local users to cause a denial of service (xfs_ilock_attr_map_shared invalid pointer dereferen… CWE-476
 NULL Pointer Dereference
CVE-2018-10322 2024-11-21 12:41 2018-04-24 Show GitHub Exploit DB Packet Storm
254119 4.8 MEDIUM
Network
frogcms_project frogcms Frog CMS 0.9.5 has a stored Cross Site Scripting Vulnerability via "Admin Site title" in Settings. CWE-79
Cross-site Scripting
CVE-2018-10321 2024-11-21 12:41 2018-04-24 Show GitHub Exploit DB Packet Storm
254120 4.8 MEDIUM
Network
frogcms_project frogcms Frog CMS 0.9.5 has XSS via the admin/?/layout/edit layout[name] parameter, aka Edit Layout. CWE-79
Cross-site Scripting
CVE-2018-10320 2024-11-21 12:41 2018-04-24 Show GitHub Exploit DB Packet Storm