Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
831 5.4 警告
Network
マイクロソフト Microsoft SharePoint Server Microsoft SharePoint Server のなりすましの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-45479 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
832 7.8 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft Windows 11 25h2
Windows カーネルモード ドライバーの特権の昇格の脆弱性 CWE-843
型の取り違え
CVE-2026-45600 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
833 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2012
Microsoft Windows 11 24h2
Microsoft Windows 10 21h2
Microsoft Wind…
UEFI セキュア ブートのセキュリティ機能バイパスの脆弱性 CWE-693
保護メカニズムの不具合
CVE-2026-45656 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
834 9.8 緊急
Network
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 11 24h2
Microsoft Windows Server 2022
Microsoft Windows 11 23h2
Microsoft Wind…
Windows カーネルのリモートでコードが実行される脆弱性 CWE-122
CWE-416
CVE-2026-45657 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
835 6.8 警告
Physics
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2012
Microsoft Windows 11 24h2
Microsoft Windows 10 21h2
Microsoft Wind…
Windows BitLocker セキュリティ機能バイパスの脆弱性 CWE-284
CWE-noinfo
CVE-2026-45658 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
836 7.5 重要
Network
FreeSWITCH FreeSWITCH FreeSWITCHにおけるDTD の再帰的なエンティティ参照の不適切な制限に関する脆弱性 CWE-776
DTD の再帰的なエンティティ参照の不適切な制限
CVE-2026-45771 2026-06-11 16:23 2026-06-9 Show GitHub Exploit DB Packet Storm
837 4.3 警告
Network
University at Buffalo Open XDMoD University at BuffaloのOpen XDMoDにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-45776 2026-06-11 16:23 2026-06-5 Show GitHub Exploit DB Packet Storm
838 9.8 緊急
Network
University at Buffalo Open XDMoD University at BuffaloのOpen XDMoDにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-45777 2026-06-11 16:23 2026-06-5 Show GitHub Exploit DB Packet Storm
839 5.4 警告
Network
University at Buffalo Open XDMoD University at BuffaloのOpen XDMoDにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-45778 2026-06-11 16:23 2026-06-5 Show GitHub Exploit DB Packet Storm
840 9.8 緊急
Network
University at Buffalo Open XDMoD University at BuffaloのOpen XDMoDにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-45779 2026-06-11 16:23 2026-06-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
309891 - cutesite cutesite_cms SQL injection vulnerability in manage/add_user.php in CuteSITE CMS 1.2.3 and 1.5.0 allows remote authenticated users, with Read privileges, to execute arbitrary SQL commands via the user_id parameter… CWE-89
SQL Injection
CVE-2010-5024 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309892 - cramerdev digital_interchange_calendar SQL injection vulnerability in index.asp in Digital Interchange Calendar 5.8.5 allows remote attackers to execute arbitrary SQL commands via the intDivisionID parameter. CWE-89
SQL Injection
CVE-2010-5023 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309893 - harmistechnology com_jesubmit SQL injection vulnerability in the JExtensions JE Story Submit (com_jesubmit) component 1.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the view parameter to index.php. CWE-89
SQL Injection
CVE-2010-5022 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309894 - cramerdev document_library SQL injection vulnerability in view_group.asp in Digital Interchange Document Library 5.8.5 allows remote attackers to execute arbitrary SQL commands via the intGroupID parameter. CWE-89
SQL Injection
CVE-2010-5021 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309895 - netartmedia iboutique SQL injection vulnerability in index.php in NetArt Media iBoutique 4.0 allows remote attackers to execute arbitrary SQL commands via the page parameter. CWE-89
SQL Injection
CVE-2010-5020 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309896 - 2daybiz online_classified_script SQL injection vulnerability in view_photo.php in 2daybiz Online Classified Script allows remote attackers to execute arbitrary SQL commands via the alb parameter. CWE-89
SQL Injection
CVE-2010-5019 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309897 - 2daybiz online_classified_script Cross-site scripting (XSS) vulnerability in products/classified/headersearch.php in 2daybiz Online Classified Script allows remote attackers to inject arbitrary web script or HTML via the sid paramet… CWE-79
Cross-site Scripting
CVE-2010-5018 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309898 - eliteladders elite_gaming_ladders SQL injection vulnerability in stats.php in Elite Gaming Ladders 3.0 allows remote attackers to execute arbitrary SQL commands via the account parameter. CWE-89
SQL Injection
CVE-2010-5017 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309899 - eliteladders elite_gaming_ladders SQL injection vulnerability in matchdb.php in Elite Gaming Ladders 3.5 and earlier allows remote attackers to execute arbitrary SQL commands via the match parameter. CWE-89
SQL Injection
CVE-2010-5016 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
309900 - 2daybiz network_community_script SQL injection vulnerability in view_photo.php in 2daybiz Network Community Script allows remote attackers to execute arbitrary SQL commands via the alb parameter. CWE-89
SQL Injection
CVE-2010-5015 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm