Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
199091 6.1 警告
Network
SIBERIAN CMS - SiberianCMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6906 2017-04-18 17:56 2017-03-8 Show GitHub Exploit DB Packet Storm
199092 6.1 警告
Network
コンクリートファイブ - concrete5 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6905 2017-04-18 17:56 2017-03-14 Show GitHub Exploit DB Packet Storm
199093 8.6 重要
Network
シスコシステムズ - Cisco Workload Automation および Tidal Enterprise Scheduler における不適切な入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-3846 2017-04-18 17:07 2017-03-15 Show GitHub Exploit DB Packet Storm
199094 7.8 重要
Local
GNU Project - GNU screen における任意のファイルを変更される脆弱性 CWE-275
パーミッションの問題
CVE-2017-5618 2017-04-18 17:03 2017-02-25 Show GitHub Exploit DB Packet Storm
199095 10 緊急
Network
マカフィー - Intel Security McAfee ePolicy Orchestrator のコアサービスにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-8027 2017-04-18 16:58 2016-09-9 Show GitHub Exploit DB Packet Storm
199096 7.8 重要
Local
マカフィー - Intel Security McAfee Security Scan Plus における任意のコマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-8026 2017-04-18 16:58 2016-12-21 Show GitHub Exploit DB Packet Storm
199097 6.3 警告
Local
マカフィー - McAfee Host Intrusion Prevention Services における認証を回避される脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-8007 2017-04-18 16:58 2016-10-19 Show GitHub Exploit DB Packet Storm
199098 3.1
Network
IBM - IBM Rhapsody DM における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2016-9697 2017-04-18 16:55 2016-12-1 Show GitHub Exploit DB Packet Storm
199099 5.4 警告
Network
IBM - IBM Rhapsody DM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-9696 2017-04-18 16:55 2016-12-1 Show GitHub Exploit DB Packet Storm
199100 5.4 警告
Network
IBM - IBM Rhapsody DM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-9694 2017-04-18 16:55 2016-12-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
171 - - - Nuxt is an open-source web development framework for Vue.js. From versions 3.4.3 to before 3.21.6 and 4.0.0-alpha.1 to before 4.4.6, navigateTo() with external: true generates a server-side HTML redi… New CWE-83
 Improper Neutralization of Script in Attributes in a Web Page
CVE-2026-45669 2026-06-13 01:01 2026-06-12 Show GitHub Exploit DB Packet Storm
172 - - - Nuxt is an open-source web development framework for Vue.js. In @nuxt/rspack-builder and @nuxt/webpack-builder versions 3.15.4 to before 3.21.6, and 4.0.0-alpha.1 to before 4.4.6, there is an incompl… New CWE-749
 Exposed Dangerous Method or Function
CVE-2026-45670 2026-06-13 01:01 2026-06-12 Show GitHub Exploit DB Packet Storm
173 - - - Nuxt is an open-source web development framework for Vue.js. In Nuxt versions 3.1.0 to before 3.21.6 and 4.0.0-alpha.1 to before 4.4.6 and @nuxt/nitro-server versions 3.20.0 to before 3.21.6 and 4.0.… New CWE-79
CWE-349
CWE-444
Cross-site Scripting
 Acceptance of Extraneous Untrusted Data With Trusted Data
HTTP Request Smuggling
CVE-2026-46342 2026-06-13 01:01 2026-06-12 Show GitHub Exploit DB Packet Storm
174 - - - Nuxt is an open-source web development framework for Vue.js. In Nuxt versions 3.11.0 to before 3.21.6 and 4.0.0-alpha.1 to before 4.4.6 and @nuxt/nitro-server versions 3.20.0 to before 3.21.6 and 4.0… New CWE-284
CWE-288
Improper Access Control
Authentication Bypass Using an Alternate Path or Channel
CVE-2026-47200 2026-06-13 01:01 2026-06-12 Show GitHub Exploit DB Packet Storm
175 - - - Nuxt is an open-source web development framework for Vue.js. In @nuxt/rspack-builder and @nuxt/webpack-builder from versions 3.15.4 to before 3.21.7 and 4.0.0 to before 4.4.7, there is an incomplete … New CWE-749
 Exposed Dangerous Method or Function
CVE-2026-49993 2026-06-13 01:01 2026-06-12 Show GitHub Exploit DB Packet Storm
176 - - - Nuxt is an open-source web development framework for Vue.js. From versions 3.11.0 to before 3.21.7 and 4.0.0 to before 4.4.7, there is a route-rule middleware bypass via case-sensitivity mismatch bet… New CWE-178
CWE-863
 Improper Handling of Case Sensitivity
 Incorrect Authorization
CVE-2026-53721 2026-06-13 01:01 2026-06-13 Show GitHub Exploit DB Packet Storm
177 - - - Nuxt is an open-source web development framework for Vue.js. Prior to versions 3.21.7 and 4.4.7, <NuxtLink> did not validate the URL scheme of values bound to its to or href props before rendering th… New CWE-79
CWE-83
Cross-site Scripting
 Improper Neutralization of Script in Attributes in a Web Page
CVE-2026-53722 2026-06-13 01:01 2026-06-13 Show GitHub Exploit DB Packet Storm
178 8.0 HIGH
Network
microsoft sharepoint_server Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. Update CWE-285
Improper Authorization
CVE-2026-47298 2026-06-13 01:00 2026-06-10 Show GitHub Exploit DB Packet Storm
179 8.8 HIGH
Network
- - The SSH service of CelloOS developed by Cellopoint has an Improper Access Control vulnerability, allowing authenticated remote attackers to bypass the enforced command restrictions and execute operat… New CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2026-12059 2026-06-13 01:00 2026-06-12 Show GitHub Exploit DB Packet Storm
180 6.5 MEDIUM
Network
- - Heptabase developed by Hepta Platforms has a Exposed Dangerous Method or Function vulnerability, allowing unauthenticated remote attackers to leverage social engineering techniques to trick a victim … New CWE-749
 Exposed Dangerous Method or Function
CVE-2026-12060 2026-06-13 01:00 2026-06-12 Show GitHub Exploit DB Packet Storm