Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
681 9.9 緊急
Network
flowiseai flowise flowiseaiのflowiseにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-46442 2026-06-12 14:48 2026-06-8 Show GitHub Exploit DB Packet Storm
682 6.5 警告
Network
flowiseai flowise flowiseaiのflowiseにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-46443 2026-06-12 14:47 2026-06-8 Show GitHub Exploit DB Packet Storm
683 8.8 重要
Network
flowiseai flowise flowiseaiのflowiseにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-46444 2026-06-12 14:47 2026-06-8 Show GitHub Exploit DB Packet Storm
684 8.7 重要
Network
OpenEMR OpenEMR OpenEMRにおける複数の脆弱性 CWE-79
CWE-862
CVE-2026-46518 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
685 7.5 重要
Network
ImageMagick ImageMagick ImageMagickにおける複数の脆弱性 CWE-122
CWE-787
CVE-2026-46520 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
686 5.5 警告
Local
ImageMagick ImageMagick ImageMagickにおける複数の脆弱性 CWE-131
CWE-252
CWE-787
CWE-835
CVE-2026-46521 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
687 7.5 重要
Network
ImageMagick ImageMagick ImageMagickにおける複数の脆弱性 CWE-400
CWE-835
CVE-2026-46522 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
688 6.2 警告
Local
ImageMagick ImageMagick ImageMagickにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-46523 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
689 4.6 警告
Adjacent
Espressif Systems ESP-IDF Espressif SystemsのESP-IDFにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-46532 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
690 6.2 警告
Local
ImageMagick ImageMagick ImageMagickにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-46557 2026-06-12 14:47 2026-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310061 - ventics auto_cms Cross-site scripting (XSS) vulnerability in autocms.php in Auto CMS 1.6 allows remote attackers to inject arbitrary web script or HTML via the sitetitle parameter. CWE-79
Cross-site Scripting
CVE-2010-4882 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm
310062 - apphp apphp_calendar Multiple cross-site request forgery (CSRF) vulnerabilities in calendar.class.php in ApPHP Calendar (ApPHP CAL) allow remote attackers to hijack the authentication of unspecified victims for requests … CWE-352
 Origin Validation Error
CVE-2010-4881 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm
310063 - apphp apphp_calendar Multiple cross-site scripting (XSS) vulnerabilities in calendar.class.php in ApPHP Calendar (ApPHP CAL) allow remote attackers to inject arbitrary web script or HTML via the (1) category_name, (2) ca… CWE-79
Cross-site Scripting
CVE-2010-4880 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm
310064 - digitaljunkies dompdf PHP remote file inclusion vulnerability in dompdf.php in dompdf 0.6.0 beta1 allows remote attackers to execute arbitrary PHP code via a URL in the input_file parameter. CWE-94
Code Injection
CVE-2010-4879 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm
310065 - hinnendahl kontakt_formular PHP remote file inclusion vulnerability in formmailer.php in Kontakt Formular 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the script_pfad parameter. CWE-94
Code Injection
CVE-2010-4878 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm
310066 - insanevisions onecms Cross-site scripting (XSS) vulnerability in index.php in OneCMS 2.6.1 allows remote attackers to inject arbitrary web script or HTML via the view parameter. CWE-79
Cross-site Scripting
CVE-2010-4877 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm
310067 - mblogger_project mblogger SQL injection vulnerability in viewpost.php in mBlogger 1.0.04 allows remote attackers to execute arbitrary SQL commands via the postID parameter. CWE-89
SQL Injection
CVE-2010-4876 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm
310068 - xondie vodpod_video_gallery Cross-site scripting (XSS) vulnerability in vodpod-video-gallery/vodpod_gallery_thumbs.php in the Vodpod Video Gallery Plugin 3.1.5 for WordPress allows remote attackers to inject arbitrary web scrip… CWE-79
Cross-site Scripting
CVE-2010-4875 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm
310069 - ninkobb ninkobb Multiple cross-site scripting (XSS) vulnerabilities in users.php in NinkoBB 1.3 RC5 allow remote attackers to inject arbitrary web script or HTML via the (1) first_name, (2) last_name, (3) msn, or (4… CWE-79
Cross-site Scripting
CVE-2010-4874 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm
310070 - webidsupport webid Cross-site scripting (XSS) vulnerability in confirm.php in WeBid 0.8.5 P1 allows remote attackers to inject arbitrary web script or HTML via the id parameter. CWE-79
Cross-site Scripting
CVE-2010-4873 2024-11-21 10:21 2011-10-7 Show GitHub Exploit DB Packet Storm