Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 12:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
551 6.1 警告
Network
IBM IBM Datacap Navigator
IBM Datacap
IBMのIBM Datacap等の複数製品におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-8059 2026-06-29 11:00 2026-06-22 Show GitHub Exploit DB Packet Storm
552 4.4 警告
Local
GitLab.org GitLab GitLab.orgのGitLabにおけるログファイルからの情報漏えいに関する脆弱性 New CWE-532
ログファイルからの情報漏えい
CVE-2026-8330 2026-06-29 11:00 2026-06-25 Show GitHub Exploit DB Packet Storm
553 7.5 重要
Network
IBM IBM Datacap Navigator
IBM Datacap
IBMのIBM Datacap等の複数製品におけるメモリにおける平文での重要な情報の保存に関する脆弱性 New CWE-316
メモリにおける平文での重要な情報の保存
CVE-2026-8636 2026-06-29 11:00 2026-06-22 Show GitHub Exploit DB Packet Storm
554 3.8
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-8823 2026-06-29 11:00 2026-06-22 Show GitHub Exploit DB Packet Storm
555 5.3 警告
Network
IBM IBM Datacap Navigator
IBM Datacap
IBMのIBM Datacap等の複数製品におけるリクエストの直接送信に関する脆弱性 New CWE-425
リクエストの直接送信
CVE-2026-9610 2026-06-29 11:00 2026-06-22 Show GitHub Exploit DB Packet Storm
556 8.8 重要
Network
Unraid Unraid OS UnraidのUnraid OSにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-9772 2026-06-29 11:00 2026-06-24 Show GitHub Exploit DB Packet Storm
557 8.8 重要
Network
Unraid Unraid OS UnraidのUnraid OSにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-9773 2026-06-29 11:00 2026-06-24 Show GitHub Exploit DB Packet Storm
558 8.8 重要
Network
Quest Software Inc. NetVault Backup Quest Software Inc.のNetVault Backupにおけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-9780 2026-06-29 11:00 2026-06-25 Show GitHub Exploit DB Packet Storm
559 8.8 重要
Network
Quest Software Inc. NetVault Backup Quest Software Inc.のNetVault BackupにおけるSQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2026-9781 2026-06-29 11:00 2026-06-25 Show GitHub Exploit DB Packet Storm
560 8.8 重要
Network
Quest Software Inc. NetVault Backup Quest Software Inc.のNetVault BackupにおけるSQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2026-9782 2026-06-29 11:00 2026-06-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
191521 6.5 MEDIUM
Network
apache
debian
commons_net
debian_linux
Prior to Apache Commons Net 3.9.0, Net's FTP client trusts the host from PASV response by default. A malicious server can redirect the Commons Net code to use a different host, but the user has to co… - CVE-2021-37533 2024-11-21 15:15 2022-12-4 Show GitHub Exploit DB Packet Storm
191522 4.9 MEDIUM
Network
opencart opencart OpenCart 3.0.3.7 allows users to obtain database information or read server files through SQL injection in the background. CWE-89
SQL Injection
CVE-2021-37823 2024-11-21 15:15 2022-11-4 Show GitHub Exploit DB Packet Storm
191523 5.4 MEDIUM
Network
phpgurukul employee_record_management_system Employee Record Management System v 1.2 is vulnerable to Cross Site Scripting (XSS) via editempprofile.php. CWE-79
Cross-site Scripting
CVE-2021-37781 2024-11-21 15:15 2022-10-29 Show GitHub Exploit DB Packet Storm
191524 7.5 HIGH
Network
pdftk-java_project pdftk-java PDF Labs pdftk-java v3.2.3 was discovered to contain an infinite loop via the component /text/pdf/PdfReader.java. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-37819 2024-11-21 15:15 2022-09-10 Show GitHub Exploit DB Packet Storm
191525 7.8 HIGH
Local
intel wireless-ac_9560_firmware
wireless-ac_9462_firmware
wireless-ac_9461_firmware
killer_ac_1550_firmware
killer_wi-fi_6_ax1650_firmware
killer_wi-fi_6e_ax1690_firmware
killer_wi-fi_6e_…
Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi products may allow a privileged user to potentially enable escalation of privilege via local access. CWE-863
 Incorrect Authorization
CVE-2021-37409 2024-11-21 15:15 2022-08-19 Show GitHub Exploit DB Packet Storm
191526 4.3 MEDIUM
Network
apache superset Apache Superset up to 1.5.1 allowed for authenticated users to access metadata information related to datasets they have no permission on. This metadata included the dataset name, columns and metrics. CWE-273
 Improper Check for Dropped Privileges
CVE-2021-37839 2024-11-21 15:15 2022-07-6 Show GitHub Exploit DB Packet Storm
191527 6.1 MEDIUM
Network
fusionpbx fusionpbx Cross Site Scripting (XSS) vulnerability in FusionPBX 4.5.26 allows remote unauthenticated users to inject arbitrary web script or HTML via an unsanitized "path" parameter in resources/login.php. CWE-79
Cross-site Scripting
CVE-2021-37524 2024-11-21 15:15 2022-07-2 Show GitHub Exploit DB Packet Storm
191528 4.9 MEDIUM
Network
myadmin_project myadmin MyAdmin v1.0 is affected by an incorrect access control vulnerability in viewing personal center in /api/user/userData?userCode=admin. NVD-CWE-Other
CVE-2021-37791 2024-11-21 15:15 2022-07-1 Show GitHub Exploit DB Packet Storm
191529 9.8 CRITICAL
Network
gps-sdr-sim_project gps-sdr-sim There is a buffer overflow in gps-sdr-sim v1.0 when parsing long command line parameters, which can lead to DoS or code execution. CWE-120
Classic Buffer Overflow
CVE-2021-37778 2024-11-21 15:15 2022-07-1 Show GitHub Exploit DB Packet Storm
191530 7.2 HIGH
Network
nucleuscms nucleus_cms Nucleus CMS v3.71 is affected by a file upload vulnerability. In this vulnerability, we can use upload to change the upload path to the path without the Htaccess file. Upload an Htaccess file and wri… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2021-37770 2024-11-21 15:15 2022-07-1 Show GitHub Exploit DB Packet Storm