Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5781 7.5 重要
Network
アップル iOS
iPadOS
アップルのiPadOS等の複数製品におけるユーザインターフェースにおける重要情報の誤った表示に関する脆弱性 CWE-451
ユーザインターフェースにおける重要情報の誤った表示
CVE-2025-46311 2026-05-14 10:23 2026-05-12 Show GitHub Exploit DB Packet Storm
5782 4.7 警告
Network
ISPConfig ISPConfig ISPConfigにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-52206 2026-05-14 10:23 2026-05-5 Show GitHub Exploit DB Packet Storm
5783 7.3 重要
Network
AstrBot AstrBot AstrBotにおけるハードコードされた暗号鍵の使用に関する脆弱性 CWE-321
ハードコードされた暗号鍵の使用
CVE-2025-55449 2026-05-14 10:23 2026-05-8 Show GitHub Exploit DB Packet Storm
5784 7.2 重要
Network
Check MK Check MK Check MKにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2025-64998 2026-05-14 10:22 2026-03-24 Show GitHub Exploit DB Packet Storm
5785 6.5 警告
Network
Apache Software Foundation CloudStack Apache Software FoundationのCloudStackにおける認可されていない行為者への個人情報の漏えいに関する脆弱性 CWE-359
認可されていないアクターへの個人情報の漏えい
CVE-2025-66171 2026-05-14 10:22 2026-05-8 Show GitHub Exploit DB Packet Storm
5786 8.1 重要
Network
Apache Software Foundation CloudStack Apache Software FoundationのCloudStackにおける認可されていない行為者への個人情報の漏えいに関する脆弱性 CWE-359
認可されていないアクターへの個人情報の漏えい
CVE-2025-66172 2026-05-14 10:22 2026-05-8 Show GitHub Exploit DB Packet Storm
5787 7.2 重要
Network
Dolibarr ERP & CRM dolibarr erp/crm Dolibarr ERP & CRMのdolibarr erp/crmにおけるインジェクションに関する脆弱性 CWE-74
インジェクション
CVE-2025-67486 2026-05-14 10:22 2026-05-8 Show GitHub Exploit DB Packet Storm
5788 9.1 緊急
Network
Electric Sheep Fencing pfSense Electric Sheep FencingのpfSenseにおける複数の脆弱性 CWE-502
CWE-915
CVE-2025-69690 2026-05-14 10:22 2026-05-8 Show GitHub Exploit DB Packet Storm
5789 9.9 緊急
Network
Electric Sheep Fencing pfSense Electric Sheep FencingのpfSenseにおける複数の脆弱性 CWE-284
CWE-915
CVE-2025-69691 2026-05-14 10:22 2026-05-8 Show GitHub Exploit DB Packet Storm
5790 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2025-71271 2026-05-14 10:22 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314491 - 2daybiz custom_t-shirt_design_script Cross-site scripting (XSS) vulnerability in 2daybiz Custom T-Shirt Design Script allows remote attackers to inject arbitrary web script or HTML via a review comment. CWE-79
Cross-site Scripting
CVE-2010-2692 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
314492 - 2daybiz custom_t-shirt_design_script Multiple SQL injection vulnerabilities in 2daybiz Custom T-Shirt Design Script allow remote attackers to execute arbitrary SQL commands via the (1) sbid parameter to products_details.php, (2) pid par… CWE-89
SQL Injection
CVE-2010-2691 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
314493 - jooforge com_gamesbox SQL injection vulnerability in the JOOFORGE Gamesbox (com_gamesbox) component 1.0.2, and possibly earlier, for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter i… CWE-89
SQL Injection
CVE-2010-2690 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
314494 - internetdm webdm_cms SQL injection vulnerability in cont_form.php in Internet DM WebDM CMS allows remote attackers to execute arbitrary SQL commands via the cf_id parameter. CWE-89
SQL Injection
CVE-2010-2689 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
314495 - site2nite boat_classifieds SQL injection vulnerability in detail.asp in Site2Nite Boat Classifieds allows remote attackers to execute arbitrary SQL commands via the ID parameter. CWE-89
SQL Injection
CVE-2010-2688 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
314496 - site2nite boat_classifieds SQL injection vulnerability in printdetail.asp in Site2Nite Boat Classifieds allows remote attackers to execute arbitrary SQL commands via the Id parameter. CWE-89
SQL Injection
CVE-2010-2687 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
314497 - topmanage olk_module Multiple SQL injection vulnerabilities in clientes.asp in the TopManage OLK module 1.91.30 for SAP allow remote attackers to execute arbitrary SQL commands via the (1) PriceFrom, (2) PriceTo, and (3)… CWE-89
SQL Injection
CVE-2010-2686 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
314498 - customerparadigm pagedirector_cms siteadmin/adduser.php in Customer Paradigm PageDirector CMS does not properly restrict access, which allows remote attackers to bypass intended restrictions and add administrative users via a direct … CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-2685 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
314499 - customerparadigm pagedirector_cms SQL injection vulnerability in index.php in Customer Paradigm PageDirector CMS allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2010-2684 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
314500 - customerparadigm pagedirector_cms SQL injection vulnerability in result.php in Customer Paradigm PageDirector CMS allows remote attackers to execute arbitrary SQL commands via the sub_catid parameter. CWE-89
SQL Injection
CVE-2010-2683 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm