Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
871 7.8 重要
Local
horsicq Detect-It-Easy horsicqのDetect-It-Easyにおける相対パストラバーサルの脆弱性 CWE-23
相対的パストラバーサル
CVE-2026-43616 2026-06-3 17:04 2026-05-4 Show GitHub Exploit DB Packet Storm
872 9.9 緊急
Network
オラクル Oracle iAssets オラクルのOracle iAssetsにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46822 2026-06-3 17:04 2026-05-28 Show GitHub Exploit DB Packet Storm
873 7.5 重要
Network
fastify fastify/accepts-serializer fastifyのfastify/accepts-serializerにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-7768 2026-06-3 17:04 2026-05-4 Show GitHub Exploit DB Packet Storm
874 8.8 重要
Local
NanoCo NanoClaw NanoCoのNanoClawにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-7875 2026-06-3 17:04 2026-05-6 Show GitHub Exploit DB Packet Storm
875 6.5 警告
Network
Synology Inc. SSL VPN Client Synology Inc.のSSL VPN Clientにおける外部からアクセス可能なファイルまたはディレクトリに関する脆弱性 CWE-552
外部からアクセス可能なファイルまたはディレクトリ
CVE-2021-47960 2026-06-3 17:04 2026-04-10 Show GitHub Exploit DB Packet Storm
876 8.1 重要
Network
Synology Inc. SSL VPN Client Synology Inc.のSSL VPN Clientにおける認証情報の平文保存に関する脆弱性 CWE-256
平文でパスワードを保存
CVE-2021-47961 2026-06-3 17:04 2026-04-10 Show GitHub Exploit DB Packet Storm
877 7.5 重要
Network
デル Dell Unisphere for PowerMax Virtual Appliance デルのDell Unisphere for PowerMax Virtual Applianceにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2022-34363 2026-06-3 17:04 2026-05-22 Show GitHub Exploit DB Packet Storm
878 7.8 重要
Local
Synology Inc. BeeDrive Synology Inc.のBeeDriveにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2023-52945 2026-06-3 17:04 2026-05-27 Show GitHub Exploit DB Packet Storm
879 6.5 警告
Network
Apache Software Foundation Ignite Apache Software FoundationのIgniteにおける相対パストラバーサルの脆弱性 CWE-23
相対的パストラバーサル
CVE-2025-48977 2026-06-3 17:04 2026-05-28 Show GitHub Exploit DB Packet Storm
880 9.1 緊急
Network
Palo Alto Networks PAN-OS
Prisma Access
Palo Alto NetworksのPAN-OS等の複数製品における検証および完全性チェックを行っていない Cookie への依存に関する脆弱性 CWE-565
検証および完全性チェックを行っていない Cookie への依存
CVE-2026-0257 2026-06-3 17:04 2026-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310571 - sijio community_software SQL injection vulnerability in gallery/index.php in Sijio Community Software allows remote attackers to execute arbitrary SQL commands via the parent parameter. CWE-89
SQL Injection
CVE-2010-2696 2024-11-21 10:17 2010-07-13 Show GitHub Exploit DB Packet Storm
310572 - xlightftpd xlight_ftp_server Directory traversal vulnerability in the SFTP/SSH2 virtual server in Xlight FTP Server 3.5.0, 3.5.5, and possibly other versions before 3.6 allows remote authenticated users to read, overwrite, or de… CWE-22
Path Traversal
CVE-2010-2695 2024-11-21 10:17 2010-07-13 Show GitHub Exploit DB Packet Storm
310573 - redcomponent com_redshop SQL injection vulnerability in the redSHOP Component (com_redshop) 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the pid parameter to index.php. CWE-89
SQL Injection
CVE-2010-2694 2024-11-21 10:17 2010-07-13 Show GitHub Exploit DB Packet Storm
310574 - 2daybiz custom_t-shirt_design_script Cross-site scripting (XSS) vulnerability in 2daybiz Custom T-Shirt Design Script allows remote attackers to inject arbitrary web script or HTML via a review comment. CWE-79
Cross-site Scripting
CVE-2010-2692 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
310575 - 2daybiz custom_t-shirt_design_script Multiple SQL injection vulnerabilities in 2daybiz Custom T-Shirt Design Script allow remote attackers to execute arbitrary SQL commands via the (1) sbid parameter to products_details.php, (2) pid par… CWE-89
SQL Injection
CVE-2010-2691 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
310576 - jooforge com_gamesbox SQL injection vulnerability in the JOOFORGE Gamesbox (com_gamesbox) component 1.0.2, and possibly earlier, for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter i… CWE-89
SQL Injection
CVE-2010-2690 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
310577 - internetdm webdm_cms SQL injection vulnerability in cont_form.php in Internet DM WebDM CMS allows remote attackers to execute arbitrary SQL commands via the cf_id parameter. CWE-89
SQL Injection
CVE-2010-2689 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
310578 - site2nite boat_classifieds SQL injection vulnerability in detail.asp in Site2Nite Boat Classifieds allows remote attackers to execute arbitrary SQL commands via the ID parameter. CWE-89
SQL Injection
CVE-2010-2688 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
310579 - site2nite boat_classifieds SQL injection vulnerability in printdetail.asp in Site2Nite Boat Classifieds allows remote attackers to execute arbitrary SQL commands via the Id parameter. CWE-89
SQL Injection
CVE-2010-2687 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm
310580 - topmanage olk_module Multiple SQL injection vulnerabilities in clientes.asp in the TopManage OLK module 1.91.30 for SAP allow remote attackers to execute arbitrary SQL commands via the (1) PriceFrom, (2) PriceTo, and (3)… CWE-89
SQL Injection
CVE-2010-2686 2024-11-21 10:17 2010-07-12 Show GitHub Exploit DB Packet Storm