Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4831 7.8 重要
Local
ASSA ABLOY Visionline ASSA ABLOYのVisionlineにおける複数の脆弱性 CWE-250
CWE-276
CWE-732
CWE-732
CVE-2026-3315 2026-05-11 11:03 2026-03-10 Show GitHub Exploit DB Packet Storm
4832 9.8 緊急
Network
NetBox Labs Netbox-docker NetBox LabsのNetbox-dockerにおける複数の脆弱性 CWE-1392
CWE-798
CVE-2023-27573 2026-05-11 11:03 2026-03-11 Show GitHub Exploit DB Packet Storm
4833 6.1 警告
Network
HCL Technologies Limited DFX Analytics HCL Technologies LimitedのDFX Analyticsにおける複数の脆弱性 CWE-358
CWE-79
CVE-2025-31970 2026-05-11 11:03 2026-05-6 Show GitHub Exploit DB Packet Storm
4834 9.8 緊急
Network
HCL Technologies Limited DFX Analytics HCL Technologies LimitedのDFX Analyticsにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2025-59851 2026-05-11 11:03 2026-05-6 Show GitHub Exploit DB Packet Storm
4835 9.1 緊急
Network
HCL Technologies Limited DFX Analytics HCL Technologies LimitedのDFX Analyticsにおける重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2025-59852 2026-05-11 11:03 2026-05-6 Show GitHub Exploit DB Packet Storm
4836 5.3 警告
Network
HCL Technologies Limited DFX Analytics HCL Technologies LimitedのDFX Analyticsにおけるエラーメッセージによる情報漏えいに関する脆弱性 CWE-209
エラーメッセージによる情報漏えい
CVE-2025-59853 2026-05-11 11:03 2026-05-6 Show GitHub Exploit DB Packet Storm
4837 6.1 警告
Network
HCL Technologies Limited DFX Analytics HCL Technologies LimitedのDFX Analyticsにおける複数の脆弱性 CWE-79
CWE-80
CVE-2025-59854 2026-05-11 11:03 2026-05-6 Show GitHub Exploit DB Packet Storm
4838 9.4 緊急
Network
Deutsche Telekom AG Telekom Account Management Portal Deutsche Telekom AGのTelekom Account Management Portalにおけるパスワード管理機能に関する脆弱性 CWE-640
パスワードを忘れた場合の脆弱なパスワードリカバリの仕組み
CVE-2025-69614 2026-05-11 11:03 2026-03-10 Show GitHub Exploit DB Packet Storm
4839 9.1 緊急
Network
Deutsche Telekom AG Telekom Account Management Portal Deutsche Telekom AGのTelekom Account Management Portalにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2025-69615 2026-05-11 11:03 2026-03-10 Show GitHub Exploit DB Packet Storm
4840 6.1 警告
Network
generatedata generatedata generatedataにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-70025 2026-05-11 11:02 2026-03-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347671 - phpcoin phpcoin Directory traversal vulnerability in mod.php in phpCOIN 1.2.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the mod parameter. CWE-22
Path Traversal
CVE-2010-0953 2017-08-17 10:32 2010-03-11 Show GitHub Exploit DB Packet Storm
347672 - preprojects pre_e-learning_portal SQL injection vulnerability in search_result.asp in Pre Projects Pre E-Learning Portal allows remote attackers to execute arbitrary SQL commands via the course_ID parameter. CWE-89
SQL Injection
CVE-2010-0954 2017-08-17 10:32 2010-03-11 Show GitHub Exploit DB Packet Storm
347673 - media-products bild_flirt_community SQL injection vulnerability in index.php in Bild Flirt Community 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2010-0955 2017-08-17 10:32 2010-03-11 Show GitHub Exploit DB Packet Storm
347674 - saskia_bruckner saskias_shopsystem Directory traversal vulnerability in content.php in Saskia's Shopsystem beta1 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the… CWE-22
Path Traversal
CVE-2010-0957 2017-08-17 10:32 2010-03-11 Show GitHub Exploit DB Packet Storm
347675 - media-products eros_webkatalog SQL injection vulnerability in start.php in Eros Webkatalog allows remote attackers to execute arbitrary SQL commands via the id parameter in a rubrik action. CWE-89
SQL Injection
CVE-2010-0964 2017-08-17 10:32 2010-03-17 Show GitHub Exploit DB Packet Storm
347676 - jevci.net jevci_siparis_formu_scripti Jevci Siparis Formu Scripti stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for siparis.mdb. CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-0965 2017-08-17 10:32 2010-03-17 Show GitHub Exploit DB Packet Storm
347677 - geekhelps admp Multiple directory traversal vulnerabilities in Geekhelps ADMP 1.01, when magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitrary local files via directory traversal seq… CWE-22
Path Traversal
CVE-2010-0967 2017-08-17 10:32 2010-03-17 Show GitHub Exploit DB Packet Storm
347678 - jorik_berkepas phpmylogon SQL injection vulnerability in phpmylogon.php in PhpMyLogon 2 allows remote attackers to execute arbitrary SQL commands via the username parameter. NOTE: some of these details are obtained from thir… CWE-89
SQL Injection
CVE-2010-0970 2017-08-17 10:32 2010-03-17 Show GitHub Exploit DB Packet Storm
347679 - atutor atutor Multiple cross-site scripting (XSS) vulnerabilities in ATutor 1.6.4 allow remote authenticated users, with Instructor privileges, to inject arbitrary web script or HTML via the (1) Question and (2) C… CWE-79
Cross-site Scripting
CVE-2010-0971 2017-08-17 10:32 2010-03-17 Show GitHub Exploit DB Packet Storm
347680 - g4j.laoneo com_gcalendar Directory traversal vulnerability in the GCalendar (com_gcalendar) component 2.1.5 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controlle… CWE-22
Path Traversal
CVE-2010-0972 2017-08-17 10:32 2010-03-17 Show GitHub Exploit DB Packet Storm