Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1511 7.5 重要
Network
アドビシステムズ Adobe Commerce
Adobe Commerce B2B
magento
アドビのAdobe Commerce等の複数製品におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-34651 2026-05-22 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1512 7.5 重要
Network
アドビシステムズ Adobe Commerce
Adobe Commerce B2B
magento
アドビのAdobe Commerce等の複数製品における不特定の脆弱性 CWE-Other
その他
CVE-2026-34652 2026-05-22 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1513 8.7 重要
Network
アドビシステムズ Adobe Commerce
Adobe Commerce B2B
magento
アドビのAdobe Commerce等の複数製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-34653 2026-05-22 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1514 5.3 警告
Network
アドビシステムズ Adobe Commerce
Adobe Commerce B2B
magento
アドビのAdobe Commerce等の複数製品における不特定の脆弱性 CWE-Other
その他
CVE-2026-34654 2026-05-22 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1515 4.8 警告
Network
アドビシステムズ Adobe Commerce
Adobe Commerce B2B
magento
アドビのAdobe Commerce等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-34655 2026-05-22 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1516 4.3 警告
Network
アドビシステムズ Adobe Commerce
Adobe Commerce B2B
magento
アドビのAdobe Commerce等の複数製品における認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-34656 2026-05-22 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1517 4.8 警告
Network
アドビシステムズ Adobe Commerce
Adobe Commerce B2B
magento
アドビのAdobe Commerce等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-34658 2026-05-22 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1518 3.4
Network
アドビシステムズ Adobe Commerce
Adobe Commerce B2B
magento
アドビのAdobe Commerce等の複数製品における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-34685 2026-05-22 10:54 2026-05-12 Show GitHub Exploit DB Packet Storm
1519 7.5 重要
Network
Linux Foundation Automotive Grade Linux Linux FoundationのAutomotive Grade Linuxにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-37530 2026-05-22 10:54 2026-05-1 Show GitHub Exploit DB Packet Storm
1520 7.8 重要
Local
マイクロソフト Microsoft Malware Protection Engine Microsoft Defender の特権の昇格の脆弱性 CWE-59
リンク解釈の問題
CVE-2026-41091 2026-05-22 10:54 2026-05-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
354111 - entrylevelcms el_cms Cross-site scripting (XSS) vulnerability in index.php in Entry Level CMS (EL CMS) allows remote attackers to inject arbitrary web script or HTML via the subj parameter, which is not properly handled … CWE-79
Cross-site Scripting
CVE-2010-1076 2010-03-25 03:25 2010-03-24 Show GitHub Exploit DB Packet Storm
354112 - proarcadescript proarcadescript SQL injection vulnerability in games/game.php in ProArcadeScript allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2010-1069 2010-03-25 02:25 2010-03-24 Show GitHub Exploit DB Packet Storm
354113 - phpkobo free_real_estate_contact_form_script Directory traversal vulnerability in codelib/sys/common.inc.php in Phpkobo Free Real Estate Contact Form 1.09, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitr… CWE-22
Path Traversal
CVE-2010-1062 2010-03-24 23:40 2010-03-24 Show GitHub Exploit DB Packet Storm
354114 - phpkobo short_url Multiple directory traversal vulnerabilities in Phpkobo Short URL 1.01, when magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitrary local files via directory traversal … CWE-22
Path Traversal
CVE-2010-1061 2010-03-24 23:30 2010-03-24 Show GitHub Exploit DB Packet Storm
354115 - tejimaya openpne The "IP address range limitation" function in OpenPNE 1.6 through 1.8, 2.0 through 2.8, 2.10 through 2.14, and 3.0 through 3.4, when mobile device support is enabled, allows remote attackers to bypas… CWE-287
Improper Authentication
CVE-2010-1040 2010-03-24 13:00 2010-03-24 Show GitHub Exploit DB Packet Storm
354116 - phpkobo address_book_script Directory traversal vulnerability in staff/app/common.inc.php in Phpkobo Address Book Script 1.09, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local fi… CWE-22
Path Traversal
CVE-2010-1059 2010-03-24 13:00 2010-03-24 Show GitHub Exploit DB Packet Storm
354117 - phpkobo short_url Directory traversal vulnerability in staff/app/common.inc.php in Phpkobo Short URL 1.01, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a … CWE-22
Path Traversal
CVE-2010-1060 2010-03-24 13:00 2010-03-24 Show GitHub Exploit DB Packet Storm
354118 - phpkobo free_real_estate_contact_form_script Multiple directory traversal vulnerabilities in Phpkobo Free Real Estate Contact Form 1.09, when magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitrary local files via … CWE-22
Path Traversal
CVE-2010-1063 2010-03-24 13:00 2010-03-24 Show GitHub Exploit DB Packet Storm
354119 - entrylevelcms el_cms SQL injection vulnerability in index.php in Entry Level CMS (EL CMS) allows remote attackers to execute arbitrary SQL commands via the subj parameter. CWE-89
SQL Injection
CVE-2010-1075 2010-03-24 13:00 2010-03-24 Show GitHub Exploit DB Packet Storm
354120 - ryan_marshall rostermain Multiple SQL injection vulnerabilities in index.php in Rostermain 1.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) userid (username) and (2) password parameters. CWE-89
SQL Injection
CVE-2010-1046 2010-03-23 22:53 2010-03-23 Show GitHub Exploit DB Packet Storm