Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5391 7.8 重要
Local
gitpython project gitpython gitpython projectのgitpythonにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-44244 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
5392 4.3 警告
Network
Weblate Weblate Weblateにおける観測可能な不一致に関する脆弱性 CWE-203
セキュリティ関連の処理に対するレスポンスの違いに起因する情報漏えい
CVE-2026-44263 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
5393 7.5 重要
Network
ZTE ZXCLOUD iRAI ZTEのZXCLOUD iRAIにおける書式文字列に関する脆弱性 CWE-134
CWE-noinfo
CVE-2026-44407 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
5394 2.7
Network
Tanium Tanium Threat Response TaniumのTanium Threat Responseにおける情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2026-6392 2026-05-13 10:21 2026-04-22 Show GitHub Exploit DB Packet Storm
5395 6.5 警告
Network
GitHub Enterprise Server GitHubのEnterprise Serverにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-6736 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
5396 7.5 重要
Network
GitHub Enterprise Server GitHubのEnterprise Serverにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-7541 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
5397 9.8 緊急
Network
GitHub Enterprise Server GitHubのEnterprise Serverにおける複数の脆弱性 CWE-436
CWE-918
CVE-2026-8034 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
5398 6.5 警告
Network
MongoDB Inc. MongoDB MongoDB Inc.のMongoDBにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-8063 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
5399 5.4 警告
Network
MISP MISP MISPにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-8080 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
5400 9.8 緊急
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における例外的な状態のチェックに関する脆弱性 CWE-754
CWE-noinfo
CVE-2026-8091 2026-05-13 10:21 2026-05-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349741 - mozilla firefox
mozilla
Cross-site scripting (XSS) vulnerability in Mozilla 1.7.12 and possibly earlier, Mozilla Firefox 1.0.7 and possibly earlier, and Netscape 8.1 and possibly earlier, allows remote attackers to inject a… NVD-CWE-Other
CVE-2006-0496 2017-07-20 10:29 2006-02-1 Show GitHub Exploit DB Packet Storm
349742 - php_gen php_gen Multiple SQL injection vulnerabilities in PHP GEN before 1.4 allow remote attackers to inject arbitrary SQL commands via unknown attack vectors. NVD-CWE-Other
CVE-2006-0497 2017-07-20 10:29 2006-02-2 Show GitHub Exploit DB Packet Storm
349743 - php_gen php_gen Multiple cross-site scripting (XSS) vulnerabilities in PHP GEN before 1.4 allow remote attackers to inject arbitrary web script or HTML via unknown attack vectors. NVD-CWE-Other
CVE-2006-0498 2017-07-20 10:29 2006-02-2 Show GitHub Exploit DB Packet Storm
349744 - yourboard rlink Cross-site scripting (XSS) vulnerability in rlink.php in Rlink 1.0.0 module for phpBB allows remote attackers to inject arbitrary web script or HTML via the url parameter. NOTE: the provenance of th… NVD-CWE-Other
CVE-2006-0499 2017-07-20 10:29 2006-02-2 Show GitHub Exploit DB Packet Storm
349745 - mailenable mailenable_professional IMAP service in MailEnable Professional Edition before 1.72 allows remote attackers to cause a denial of service (service crash) via unspecified vectors involving the EXAMINE command. NVD-CWE-Other
CVE-2006-0503 2017-07-20 10:29 2006-02-2 Show GitHub Exploit DB Packet Storm
349746 - mailenable mailenable_enterprise Unspecified vulnerability in MailEnable Enterprise Edition before 1.2 allows remote attackers to cause a denial of service (CPU utilization) by viewing "formatted quoted-printable emails" via webmail. NVD-CWE-Other
CVE-2006-0504 2017-07-20 10:29 2006-02-2 Show GitHub Exploit DB Packet Storm
349747 - cerberus cerberus_helpdesk Multiple cross-site scripting (XSS) vulnerabilities in clients.php in Cerberus Helpdesk, possibly 2.7, allow remote attackers to inject arbitrary web script or HTML via (1) the contact_search paramet… NVD-CWE-Other
CVE-2006-0509 2017-07-20 10:29 2006-02-2 Show GitHub Exploit DB Packet Storm
349748 - spip spip Cross-site scripting (XSS) vulnerability in index.php3 in SPIP 1.8.2-e and earlier and 1.9 Alpha 2 (5539) and earlier allows remote attackers to inject arbitrary web script or HTML via the lang param… NVD-CWE-Other
CVE-2006-0518 2017-07-20 10:29 2006-02-2 Show GitHub Exploit DB Packet Storm
349749 - spip spip SPIP 1.8.2-e and earlier and 1.9 Alpha 2 (5539) and earlier allows remote attackers to obtain sensitive information via a direct request to inc-messforum.php3, which reveals the path in an error mess… NVD-CWE-Other
CVE-2006-0519 2017-07-20 10:29 2006-02-2 Show GitHub Exploit DB Packet Storm
349750 - dragoran portal_module SQL injection vulnerability index.php in Dragoran Portal module 1.3 for Invision Power Board (IPB) allows remote attackers to execute arbitrary SQL commands via the site parameter. NOTE: the provena… NVD-CWE-Other
CVE-2006-0520 2017-07-20 10:29 2006-02-2 Show GitHub Exploit DB Packet Storm