Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
199141 5.4 警告
Network
IBM - IBM Call Center for Commerce におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6056 2017-04-25 11:58 2016-06-29 Show GitHub Exploit DB Packet Storm
199142 6.1 警告
Network
Yii Framework - Yii Framework における反射型クロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-7271 2017-04-25 11:35 2017-02-1 Show GitHub Exploit DB Packet Storm
199143 5.4 警告
Network
MetInfo - MetInfo におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6878 2017-04-25 11:34 2017-03-14 Show GitHub Exploit DB Packet Storm
199144 6.1 警告
Network
openSUSE project
The Icinga Project
- Icinga の CSV エクスポートリンクおよびページ分割機能を備えた Classic-UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-8010 2017-04-25 11:28 2015-10-24 Show GitHub Exploit DB Packet Storm
199145 5.4 警告
Network
fomori.org - Cherry Music におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-8310 2017-04-25 11:23 2015-11-21 Show GitHub Exploit DB Packet Storm
199146 4.3 警告
Network
fomori.org - Cherry Music におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-8309 2017-04-25 11:23 2015-11-21 Show GitHub Exploit DB Packet Storm
199147 5.5 警告
Local
JasPer Project - JasPer の jas_image.c における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2016-9557 2017-04-25 11:01 2016-11-24 Show GitHub Exploit DB Packet Storm
199148 7.5 重要
Network
JasPer Project - JasPer の calcstepsizes 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-9399 2017-04-25 11:01 2016-11-21 Show GitHub Exploit DB Packet Storm
199149 7.5 重要
Network
openSUSE project
SUSE
JasPer Project
- JasPer の jpc_math.c の jpc_floorlog2 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-9398 2017-04-25 11:01 2016-11-21 Show GitHub Exploit DB Packet Storm
199150 7.5 重要
Network
JasPer Project - JasPer の jpc_math.c の jpc_dequantize 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-9397 2017-04-25 11:01 2016-11-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
401 5.3 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, four authorization/discl… CWE-200
CWE-862
Information Exposure
 Missing Authorization
CVE-2026-45085 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
402 - - - ApostropheCMS is an open-source Node.js content management system. Versions up to and including 4.29.0 are vulnerable to stored cross-site scripting via unsanitized user display name in draft version… CWE-79
Cross-site Scripting
CVE-2026-45014 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
403 7.6 HIGH
Network
- - ApostropheCMS is an open-source Node.js content management system. Versions up to and including 4.29.0 contain an authenticated server-side request forgery (SSRF) in the rich-text widget import flow.… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-45012 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
404 7.5 HIGH
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, chat events for public c… CWE-200
Information Exposure
CVE-2026-44786 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
405 4.3 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, the AI "explain" helper … CWE-200
Information Exposure
CVE-2026-44785 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
406 6.5 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, group owners who are not… CWE-200
Information Exposure
CVE-2026-44784 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
407 5.4 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, a flaw in how replies to… CWE-284
Improper Access Control
CVE-2026-44783 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
408 4.3 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, GroupPostSerializer decl… CWE-200
Information Exposure
CVE-2026-44782 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
409 4.3 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, ReviewableQueuedPostSeri… CWE-200
Information Exposure
CVE-2026-44780 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm
410 4.3 MEDIUM
Network
- - Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to before 2026.3.1, and 2026.4.0-latest to before 2026.4.1, bot debug endpoints disc… CWE-200
Information Exposure
CVE-2026-44779 2026-06-13 06:16 2026-06-13 Show GitHub Exploit DB Packet Storm