Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
741 4.8 警告
Network
F5 Networks nginx open source
DoS
NGINX plus
NGINX Gateway Fabric
WAF
NGINX Instance Manager
NGINX Ingress Controller
F5 NetworksのDoS等の複数製品における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-42934 2026-06-22 11:37 2026-05-13 Show GitHub Exploit DB Packet Storm
742 6.5 警告
Network
F5 Networks BIG-IP WebSafe
big-ip container ingress services
BIG-IP Application Security Manager (ASM)
BIG-IP Advanced Web Application Firewal…
F5 NetworksのBIG-IP Access Policy Manager (APM)等の複数製品における重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-42937 2026-06-22 11:37 2026-05-13 Show GitHub Exploit DB Packet Storm
743 8.1 重要
Network
F5 Networks nginx open source
DoS
NGINX plus
NGINX Gateway Fabric
WAF
NGINX Instance Manager
NGINX Ingress Controller
F5 NetworksのDoS等の複数製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-42945 2026-06-22 11:37 2026-05-13 Show GitHub Exploit DB Packet Storm
744 7.7 重要
Network
OpenStack OpenStack Ironic OpenStackのOpenStack Ironicにおける領域間での誤ったリソース移動に関する脆弱性 CWE-669
領域間での誤ったリソース移動
CVE-2026-42997 2026-06-22 11:37 2026-05-5 Show GitHub Exploit DB Packet Storm
745 8 重要
Network
MariaDB Corporation Ab. MariaDB MariaDB Corporation Ab.のMariaDBにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-44168 2026-06-22 11:37 2026-06-12 Show GitHub Exploit DB Packet Storm
746 4.3 警告
Network
MariaDB Corporation Ab. MariaDB MariaDB Corporation Ab.のMariaDBにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-44169 2026-06-22 11:37 2026-06-12 Show GitHub Exploit DB Packet Storm
747 6.1 警告
Network
CarrierWave project CarrierWave CarrierWave projectのCarrierWaveにおける複数の脆弱性 CWE-184
CWE-625
CWE-79
CVE-2026-44587 2026-06-22 11:37 2026-06-17 Show GitHub Exploit DB Packet Storm
748 4.3 警告
Network
Discourse Discourse Discourseにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-44779 2026-06-22 11:37 2026-06-12 Show GitHub Exploit DB Packet Storm
749 4.3 警告
Network
Discourse Discourse Discourseにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-44780 2026-06-22 11:37 2026-06-12 Show GitHub Exploit DB Packet Storm
750 4.3 警告
Network
Discourse Discourse Discourseにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-44782 2026-06-22 11:37 2026-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
343561 - annuaire 1two SQL injection vulnerability in index.php in Annuaire 1Two 2.2 allows remote attackers to execute arbitrary SQL commands via the id parameter. NVD-CWE-Other
CVE-2006-4601 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
343562 - nch_software swift_sound_web_dictate NCH Swift Sound Web Dictate 1.02 allows remote attackers to bypass authentication via a null password. NVD-CWE-Other
CVE-2006-4603 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
343563 - longino jacome_php-revista PHP remote file inclusion vulnerability in index.php in Longino Jacome php-Revista 1.1.2 allows remote attackers to execute arbitrary PHP code via the adodb parameter. NVD-CWE-Other
CVE-2006-4605 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
343564 - longino jacome_php-revista Multiple SQL injection vulnerabilities in Longino Jacome php-Revista 1.1.2 allow remote attackers to execute arbitrary SQL commands via the (1) id_temas parameter in busqueda_tema.php, the (2) cadena… NVD-CWE-Other
CVE-2006-4606 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
343565 - longino jacome_php-revista admin/index.php in Longino Jacome php-Revista 1.1.2 allows remote attackers to bypass authentication controls by setting the ID_ADMIN and SUPER_ADMIN parameters to 1. NVD-CWE-Other
CVE-2006-4607 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
343566 - longino jacome_php-revista Multiple cross-site scripting (XSS) vulnerabilities in Longino Jacome php-Revista 1.1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) cadena parameter in busqueda.php and … NVD-CWE-Other
CVE-2006-4608 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
343567 - graphiks grapagenda PHP remote file inclusion vulnerability in index.php in GrapAgenda 0.11 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the page parameter. NVD-CWE-Other
CVE-2006-4610 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
343568 - dsocks dsocks Buffer overflow in the _tor_resolve function in dsocks.c in dsocks before 1.4 allows remote attackers to execute arbitrary code via unspecified vectors, possibly involving a long node name. NVD-CWE-Other
CVE-2006-4611 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
343569 - dsocks dsocks This vulnerability is addressed in the following product release: Dsocks, Dsocks, 1.4 NVD-CWE-Other
CVE-2006-4611 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
343570 - john_andersson zixforum SQL injection vulnerability in ReplyNew.asp in ZIXForum 1.12 allows remote attackers to execute arbitrary SQL commands via the RepId parameter. NVD-CWE-Other
CVE-2006-4612 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm