Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4921 7.8 重要
Local
マイクロソフト SQL Server 2019
SQL Server 2025
SQL Server 2016
SQL Server 2022
SQL Server 2017
SQL サーバーの特権の昇格の脆弱性 CWE-89
SQLインジェクション
CVE-2026-32167 2026-05-11 10:59 2026-04-14 Show GitHub Exploit DB Packet Storm
4922 7.8 重要
Local
マイクロソフト SQL Server 2019
SQL Server 2025
SQL Server 2016
SQL Server 2022
SQL Server 2017
SQL サーバーの特権の昇格の脆弱性 CWE-89
SQLインジェクション
CVE-2026-32176 2026-05-11 10:58 2026-04-14 Show GitHub Exploit DB Packet Storm
4923 7.5 重要
Network
マイクロソフト .NET
visual studio 2022
.NET のなりすましの脆弱性 CWE-138
特殊要素の不適切な無害化
CVE-2026-32178 2026-05-11 10:58 2026-04-14 Show GitHub Exploit DB Packet Storm
4924 6.5 警告
Local
sandboxie-plus Sandboxie sandboxie-plusのSandboxieにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-32603 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
4925 9.1 緊急
Network
X.Org Foundation
レッドハット
X.Org X Server
Red Hat Enterprise Linux
レッドハット等の複数ベンダの製品における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-34000 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
4926 9.1 緊急
Network
X.Org Foundation
レッドハット
X.Org X Server
Red Hat Enterprise Linux
レッドハット等の複数ベンダの製品における不適切な長さの値によるバッファへのアクセスに関する脆弱性 CWE-805
不適切な長さの値によるバッファへのアクセス
CVE-2026-34002 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
4927 8.8 重要
Local
sandboxie-plus Sandboxie sandboxie-plusのSandboxieにおけるCRLF インジェクションの脆弱性 CWE-93
CRLF インジェクション
CVE-2026-34458 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
4928 8.8 重要
Local
sandboxie-plus Sandboxie sandboxie-plusのSandboxieにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-34459 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
4929 7.8 重要
Local
sandboxie-plus Sandboxie sandboxie-plusのSandboxieにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-34461 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
4930 7.8 重要
Local
sandboxie-plus Sandboxie sandboxie-plusのSandboxieにおける複数の脆弱性 CWE-121
CWE-170
CVE-2026-34462 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313771 6.1 MEDIUM
Network
vice webopac Webopac from Grand Vice info has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript code in the user's browser through phishing … CWE-79
Cross-site Scripting
CVE-2024-11019 2024-11-19 03:59 2024-11-11 Show GitHub Exploit DB Packet Storm
313772 9.8 CRITICAL
Network
vice webopac Webopac from Grand Vice info does not properly validate uploaded file types, allowing unauthenticated remote attackers to upload and execute webshells, which could lead to arbitrary code execution on… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-11018 2024-11-19 03:59 2024-11-11 Show GitHub Exploit DB Packet Storm
313773 9.8 CRITICAL
Network
1000projects beauty_parlour_management_system A vulnerability was found in 1000 Projects Beauty Parlour Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/search-invoices.php. The manipu… CWE-89
SQL Injection
CVE-2024-11101 2024-11-19 03:57 2024-11-12 Show GitHub Exploit DB Packet Storm
313774 9.8 CRITICAL
Network
1000projects beauty_parlour_management_system A vulnerability was found in 1000 Projects Beauty Parlour Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /index.php. T… CWE-89
SQL Injection
CVE-2024-11100 2024-11-19 03:52 2024-11-12 Show GitHub Exploit DB Packet Storm
313775 8.8 HIGH
Network
vice webopac Webopac from Grand Vice info does not properly validate uploaded file types, allowing remote attackers with regular privileges to upload and execute webshells, which could lead to arbitrary code exec… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-11017 2024-11-19 03:47 2024-11-11 Show GitHub Exploit DB Packet Storm
313776 7.7 HIGH
Network
adobe commerce
magento
Adobe Commerce versions 3.2.5 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could lead to a security feature bypass. A low privileged attacker could exploit this… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2024-49521 2024-11-19 03:44 2024-11-13 Show GitHub Exploit DB Packet Storm
313777 8.8 HIGH
Network
oretnom23 online_veterinary_appointment_system A vulnerability classified as critical was found in SourceCodester Online Veterinary Appointment System 1.0. This vulnerability affects unknown code of the file /admin/services/view_service.php. The … CWE-89
SQL Injection
CVE-2024-10990 2024-11-19 03:42 2024-11-8 Show GitHub Exploit DB Packet Storm
313778 7.8 HIGH
Local
adobe animate Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue… CWE-416
 Use After Free
CVE-2024-49526 2024-11-19 03:41 2024-11-13 Show GitHub Exploit DB Packet Storm
313779 8.8 HIGH
Network
codezips online_institute_management_system A vulnerability has been found in Codezips Online Institute Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /edit_user.php. Th… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-10994 2024-11-19 03:41 2024-11-8 Show GitHub Exploit DB Packet Storm
313780 8.8 HIGH
Network
codezips online_institute_management_system A vulnerability, which was classified as critical, was found in Codezips Online Institute Management System 1.0. Affected is an unknown function of the file /manage_website.php. The manipulation of t… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-10993 2024-11-19 03:41 2024-11-8 Show GitHub Exploit DB Packet Storm