Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
821 7.5 重要
Network
オラクル Oracle HR Intelligence オラクルのOracle HR Intelligenceにおける複数の脆弱性 CWE-269
CWE-284
CVE-2026-46971 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
822 8.8 重要
Network
オラクル Oracle Outsourced Manufacturing for Discrete Industries オラクルのOracle Outsourced Manufacturing for Discrete Industriesにおける複数の脆弱性 CWE-269
CWE-287
CWE-306
CVE-2026-46972 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
823 8.8 重要
Network
オラクル Oracle Outsourced Manufacturing for Discrete Industries オラクルのOracle Outsourced Manufacturing for Discrete Industriesにおける複数の脆弱性 CWE-269
CWE-287
CWE-306
CVE-2026-46973 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
824 7.2 重要
Network
オラクル Public Sector Payroll オラクルのPublic Sector Payrollにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46976 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
825 4.4 警告
Network
metal3 ip-address-manager Metal3のip-address-managerにおける不要な特権による実行に関する脆弱性 CWE-250
不要な特権による実行
CVE-2026-47190 2026-06-22 11:32 2026-06-12 Show GitHub Exploit DB Packet Storm
826 9.1 緊急
Network
i18next i18next-fs-backend i18nextのi18next-fs-backendにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-48713 2026-06-22 11:32 2026-06-15 Show GitHub Exploit DB Packet Storm
827 9.1 緊急
Network
i18next i18next-http-middleware i18nextのi18next-http-middlewareにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-48714 2026-06-22 11:32 2026-06-15 Show GitHub Exploit DB Packet Storm
828 9.1 緊急
Network
Apache Software Foundation Airflow SFTP Providers (apache-airflow-providers-sftp) Apache Software FoundationのAirflow SFTP Providers (apache-airflow-providers-sftp)におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-50203 2026-06-22 11:32 2026-06-17 Show GitHub Exploit DB Packet Storm
829 7.5 重要
Network
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 22h2
Microsoft …
Windows NTLM のなりすましの脆弱性 CWE-200
CWE-noinfo
CVE-2026-50508 2026-06-22 11:32 2026-06-9 Show GitHub Exploit DB Packet Storm
830 7.5 重要
Network
LLDAP lldap LLDAPのlldapにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-50889 2026-06-22 11:32 2026-06-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
343581 - softbb softbb Direct static code injection vulnerability in admin/save_opt.php in SoftBB 0.1, and possibly earlier, allows remote authenticated users to upload and execute arbitrary PHP code via the cache_forum pa… NVD-CWE-Other
CVE-2006-4631 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
343582 - softbb softbb Multiple SQL injection vulnerabilities in SoftBB 0.1, and possibly earlier, allow remote attackers to execute arbitrary SQL commands via the (1) groupe parameter in addmembre.php and the (2) select p… NVD-CWE-Other
CVE-2006-4632 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
343583 - softbb softbb index.php in SoftBB 0.1, and possibly earlier, allows remote attackers to obtain the installation path via a null or invalid page[] parameter. NVD-CWE-Other
CVE-2006-4633 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
343584 - vbzoom vbzoom Cross-site scripting (XSS) vulnerability in index.php in VBZooM allows remote attackers to inject arbitrary web script or HTML via the UserID parameter, a different vector than CVE-2006-1133 and CVE-… NVD-CWE-Other
CVE-2006-4634 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
343585 - acgv_news acgv_news Multiple PHP remote file inclusion vulnerabilities in ACGV News 0.9.1 allow remote attackers to execute arbitrary PHP code via a URL in the PathNews parameter in (1) header.php or (2) news.php. NOTE… CWE-94
Code Injection
CVE-2006-4637 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
343586 - acgv_news acgv_news Successful exploitation requires that "register_globals" is enabled. CWE-94
Code Injection
CVE-2006-4637 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
343587 - c-news.fr c-news Multiple PHP remote file inclusion vulnerabilities in C-News.fr C-News 1.0.1 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the path … CWE-94
Code Injection
CVE-2006-4639 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
343588 - auditwizard auditwizard AuditWizard 6.3.2, when using "Remote Audit," logs the administrator password in plaintext to LaytonCmdSvc.log, which allows local users to obtain sensitive information by reading the file. NVD-CWE-Other
CVE-2006-4642 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
343589 - akarru social_bookmarking_engine PHP remote file inclusion vulnerability in akarru.gui/main_content.php in Akarru Social BookMarking Engine 0.4.3.34 and earlier, and possibly 0.4.4.120, allows remote attackers to execute arbitrary P… NVD-CWE-Other
CVE-2006-4645 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
343590 - bingo_news bingo_news PHP remote file inclusion vulnerability in bp_ncom.php in BinGo News (BP News) 3.01 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the bnrep parameter. NVD-CWE-Other
CVE-2006-4648 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm