Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
611 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2019
Microsoft Windows 11 26h1
Microsoft …
Windows プッシュ通知の特権昇格の脆弱性 CWE-362
CWE-416
CVE-2026-42991 2026-06-12 14:51 2026-06-9 Show GitHub Exploit DB Packet Storm
612 6.5 警告
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-43951 2026-06-12 14:51 2026-06-8 Show GitHub Exploit DB Packet Storm
613 5.5 警告
Local
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-44119 2026-06-12 14:51 2026-06-8 Show GitHub Exploit DB Packet Storm
614 7.3 重要
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおけるバッファオーバーリードの脆弱性 CWE-126
バッファオーバーリード
CVE-2026-44185 2026-06-12 14:51 2026-06-8 Show GitHub Exploit DB Packet Storm
615 7.3 重要
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおける無限ループに関する脆弱性 CWE-835
無限ループ
CVE-2026-44186 2026-06-12 14:51 2026-06-8 Show GitHub Exploit DB Packet Storm
616 9.8 緊急
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおけるバッファアンダーフローの脆弱性 CWE-124
バッファアンダーフロー
CVE-2026-44631 2026-06-12 14:51 2026-06-8 Show GitHub Exploit DB Packet Storm
617 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Windows ネットワーク コントローラー (NC) ホスト エージェントのサービス拒否の脆弱性 CWE-416
CWE-822
CVE-2026-44805 2026-06-12 14:51 2026-06-9 Show GitHub Exploit DB Packet Storm
618 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 11 25h2
Microsoft Windows 11 26h1
Microsoft Windows 11 24h2
Windows 共通ログ ファイル システム ドライバーの特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-44809 2026-06-12 14:51 2026-06-9 Show GitHub Exploit DB Packet Storm
619 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows 11 26h1
Microsoft Windows 11 24h2
Microsoft Wind…
Microsoft Cryptographic Services の特権の昇格の脆弱性 CWE-287
不適切な認証
CVE-2026-44810 2026-06-12 14:51 2026-06-9 Show GitHub Exploit DB Packet Storm
620 9.8 緊急
Network
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft&n…
DHCP クライアント サービスのリモートでコードが実行される脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-44815 2026-06-12 14:51 2026-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
309891 - cutesite cutesite_cms SQL injection vulnerability in manage/add_user.php in CuteSITE CMS 1.2.3 and 1.5.0 allows remote authenticated users, with Read privileges, to execute arbitrary SQL commands via the user_id parameter… CWE-89
SQL Injection
CVE-2010-5024 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309892 - cramerdev digital_interchange_calendar SQL injection vulnerability in index.asp in Digital Interchange Calendar 5.8.5 allows remote attackers to execute arbitrary SQL commands via the intDivisionID parameter. CWE-89
SQL Injection
CVE-2010-5023 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309893 - harmistechnology com_jesubmit SQL injection vulnerability in the JExtensions JE Story Submit (com_jesubmit) component 1.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the view parameter to index.php. CWE-89
SQL Injection
CVE-2010-5022 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309894 - cramerdev document_library SQL injection vulnerability in view_group.asp in Digital Interchange Document Library 5.8.5 allows remote attackers to execute arbitrary SQL commands via the intGroupID parameter. CWE-89
SQL Injection
CVE-2010-5021 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309895 - netartmedia iboutique SQL injection vulnerability in index.php in NetArt Media iBoutique 4.0 allows remote attackers to execute arbitrary SQL commands via the page parameter. CWE-89
SQL Injection
CVE-2010-5020 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309896 - 2daybiz online_classified_script SQL injection vulnerability in view_photo.php in 2daybiz Online Classified Script allows remote attackers to execute arbitrary SQL commands via the alb parameter. CWE-89
SQL Injection
CVE-2010-5019 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309897 - 2daybiz online_classified_script Cross-site scripting (XSS) vulnerability in products/classified/headersearch.php in 2daybiz Online Classified Script allows remote attackers to inject arbitrary web script or HTML via the sid paramet… CWE-79
Cross-site Scripting
CVE-2010-5018 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309898 - eliteladders elite_gaming_ladders SQL injection vulnerability in stats.php in Elite Gaming Ladders 3.0 allows remote attackers to execute arbitrary SQL commands via the account parameter. CWE-89
SQL Injection
CVE-2010-5017 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309899 - eliteladders elite_gaming_ladders SQL injection vulnerability in matchdb.php in Elite Gaming Ladders 3.5 and earlier allows remote attackers to execute arbitrary SQL commands via the match parameter. CWE-89
SQL Injection
CVE-2010-5016 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309900 - 2daybiz network_community_script SQL injection vulnerability in view_photo.php in 2daybiz Network Community Script allows remote attackers to execute arbitrary SQL commands via the alb parameter. CWE-89
SQL Injection
CVE-2010-5015 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm