Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
661 5.5 警告
Local
Linux Linux Kernel LinuxのLinux KernelにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-71308 2026-06-26 11:49 2026-05-27 Show GitHub Exploit DB Packet Storm
662 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおけるリソースのロックに関する脆弱性 CWE-667
不適切なロック
CVE-2025-71309 2026-06-26 11:49 2026-05-27 Show GitHub Exploit DB Packet Storm
663 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける初期化されていないリソースの使用に関する脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2025-71311 2026-06-26 11:49 2026-05-27 Show GitHub Exploit DB Packet Storm
664 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2025-71312 2026-06-26 11:49 2026-05-27 Show GitHub Exploit DB Packet Storm
665 6.1 警告
Network
flowiseai flowise flowiseaiのflowiseにおけるクロスサイトスクリプティングの脆弱性 CWE-80
クロスサイトスクリプティング (Basic XSS)
CVE-2025-71331 2026-06-26 11:49 2026-06-20 Show GitHub Exploit DB Packet Storm
666 8.3 重要
Network
flowiseai flowise flowiseaiのflowiseにおける未検証のパスワード変更に関する脆弱性 CWE-620
未検証のパスワード変更
CVE-2025-71337 2026-06-26 11:49 2026-06-23 Show GitHub Exploit DB Packet Storm
667 9.6 緊急
Network
オートデスク株式会社 Autodesk Fusion オートデスク株式会社のAutodesk Fusionにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-10789 2026-06-26 11:49 2026-06-22 Show GitHub Exploit DB Packet Storm
668 7.3 重要
Network
IBM IBM WebSphere Application Server IBMのIBM WebSphere Application Serverにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-10845 2026-06-26 11:49 2026-06-22 Show GitHub Exploit DB Packet Storm
669 5.4 警告
Network
plane plane planeにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-10850 2026-06-26 11:48 2026-06-17 Show GitHub Exploit DB Packet Storm
670 3.7
Network
Node.js Foundation undici Node.js Foundationのundiciにおける許容された入力値の許可リストに関する脆弱性 CWE-183
許容された入力値の許可リスト
CVE-2026-11525 2026-06-26 11:48 2026-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
254111 6.1 MEDIUM
Network
user_project user An issue was discovered in the Users (aka Front-end user management) plugin 1.4.5 for October CMS. XSS exists in the name field. CWE-79
Cross-site Scripting
CVE-2018-10366 2024-11-21 12:41 2018-04-25 Show GitHub Exploit DB Packet Storm
254112 5.4 MEDIUM
Network
catapultthemes cookie_consent A persistent cross-site scripting vulnerability has been identified in the web interface of the Catapult UK Cookie Consent plugin before 2.3.10 for WordPress that allows the execution of arbitrary HT… CWE-79
Cross-site Scripting
CVE-2018-10310 2024-11-21 12:41 2018-04-25 Show GitHub Exploit DB Packet Storm
254113 9.8 CRITICAL
Network
phpliteadmin phpliteadmin An issue was discovered in phpLiteAdmin 1.9.5 through 1.9.7.1. Due to loose comparison with '==' instead of '===' in classes/Authorization.php for the user-provided login password, it is possible to … CWE-287
Improper Authentication
CVE-2018-10362 2024-11-21 12:41 2018-04-25 Show GitHub Exploit DB Packet Storm
254114 7.8 HIGH
Local
kde ktexteditor An issue was discovered in KTextEditor 5.34.0 through 5.45.0. Insecure handling of temporary files in the KTextEditor's kauth_ktexteditor_helper service (as utilized in the Kate text editor) can allo… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2018-10361 2024-11-21 12:41 2018-04-25 Show GitHub Exploit DB Packet Storm
254115 6.1 MEDIUM
Network
phpipam phpipam app/tools/mac-lookup/index.php in phpIPAM 1.3.1 has Reflected XSS on /tools/mac-lookup/ via the mac parameter. CWE-79
Cross-site Scripting
CVE-2018-10329 2024-11-21 12:41 2018-04-24 Show GitHub Exploit DB Packet Storm
254116 7.4 HIGH
Adjacent
momentum momentum_axel_720p_firmware Momentum Axel 720P 5.1.8 devices have a hardcoded password of streaming for the appagent account, which allows remote attackers to view the RTSP video stream. CWE-798
 Use of Hard-coded Credentials
CVE-2018-10328 2024-11-21 12:41 2018-04-24 Show GitHub Exploit DB Packet Storm
254117 5.5 MEDIUM
Local
linux
canonical
debian
linux_kernel
ubuntu_linux
debian_linux
The xfs_bmap_extents_to_btree function in fs/xfs/libxfs/xfs_bmap.c in the Linux kernel through 4.16.3 allows local users to cause a denial of service (xfs_bmapi_write NULL pointer dereference) via a … CWE-476
 NULL Pointer Dereference
CVE-2018-10323 2024-11-21 12:41 2018-04-24 Show GitHub Exploit DB Packet Storm
254118 5.5 MEDIUM
Local
linux
redhat
linux_kernel
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
virtualization_host
The xfs_dinode_verify function in fs/xfs/libxfs/xfs_inode_buf.c in the Linux kernel through 4.16.3 allows local users to cause a denial of service (xfs_ilock_attr_map_shared invalid pointer dereferen… CWE-476
 NULL Pointer Dereference
CVE-2018-10322 2024-11-21 12:41 2018-04-24 Show GitHub Exploit DB Packet Storm
254119 4.8 MEDIUM
Network
frogcms_project frogcms Frog CMS 0.9.5 has a stored Cross Site Scripting Vulnerability via "Admin Site title" in Settings. CWE-79
Cross-site Scripting
CVE-2018-10321 2024-11-21 12:41 2018-04-24 Show GitHub Exploit DB Packet Storm
254120 4.8 MEDIUM
Network
frogcms_project frogcms Frog CMS 0.9.5 has XSS via the admin/?/layout/edit layout[name] parameter, aka Edit Layout. CWE-79
Cross-site Scripting
CVE-2018-10320 2024-11-21 12:41 2018-04-24 Show GitHub Exploit DB Packet Storm