Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
199951 5.4 警告
Network
CMS Made Simple - CMS Made Simple の /admin/moduleinterface.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6555 2017-03-30 16:38 2017-03-16 Show GitHub Exploit DB Packet Storm
199952 6.5 警告
Network
Splunk - Splunk Enterprise および Splunk Light の Splunk Web におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2017-5880 2017-03-30 16:26 2017-01-25 Show GitHub Exploit DB Packet Storm
199953 7.5 重要
Network
BlackBerry - BlackBerry Good Control Server のロギングの実装における情報を公開される脆弱性 CWE-200
情報漏えい
CVE-2016-3127 2017-03-30 16:25 2016-07-12 Show GitHub Exploit DB Packet Storm
199954 6.1 警告
Network
Wuhu project - Gargaj/wuhu の wuhu-master/www_admin/users.php における反射型クロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6544 2017-03-30 16:24 2017-03-4 Show GitHub Exploit DB Packet Storm
199955 8.8 重要
Network
ASUSTeK Computer Inc. - ASUS RT-AC53 デバイス上で稼動する ASUSWRT の httpd におけるセッションをハイジャックされる脆弱性 CWE-254
セキュリティ機能
CVE-2017-6549 2017-03-30 16:16 2017-03-8 Show GitHub Exploit DB Packet Storm
199956 9.8 緊急
Network
ASUSTeK Computer Inc. - ASUS RT-AC53 デバイス上で稼動する ASUSWRT の networkmap におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-6548 2017-03-30 16:16 2017-03-8 Show GitHub Exploit DB Packet Storm
199957 6.1 警告
Network
ASUSTeK Computer Inc. - ASUS RT-AC53 デバイス上で稼動する ASUSWRT の httpd におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6547 2017-03-30 16:16 2017-03-8 Show GitHub Exploit DB Packet Storm
199958 9.8 緊急
Network
DELL EMC (旧 EMC Corporation) - EMC Documentum eRoom におけるシステムに侵入される脆弱性 CWE-640
パスワードを忘れた場合の脆弱なパスワードリカバリの仕組み
CVE-2017-2766 2017-03-30 16:16 2017-01-31 Show GitHub Exploit DB Packet Storm
199959 6.1 警告
Network
DELL EMC (旧 EMC Corporation) - EMC RSA Web Threat Detection におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0919 2017-03-30 16:16 2017-01-26 Show GitHub Exploit DB Packet Storm
199960 8.8 重要
Network
Fiyo CMS - Fiyo CMS における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-6823 2017-03-30 16:14 2017-03-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3771 6.3 MEDIUM
Network
- - A security vulnerability has been detected in decolua 9router up to 0.4.0. This issue affects the function isAuthenticated of the file src/dashboardGuard.js of the component HTTP Header Handler. The … CWE-266
CWE-285
 Incorrect Privilege Assignment
Improper Authorization
CVE-2026-10269 2026-06-2 02:57 2026-06-2 Show GitHub Exploit DB Packet Storm
3772 6.3 MEDIUM
Network
- - A flaw has been found in a4m4 Student-Management-System up to f0c5f6842c5e8c431ff02b5260a565ca844df3a0. The affected element is an unknown function of the file admin/ of the component Admin Endpoint.… CWE-698
CWE-705
 Execution After Redirect (EAR)
 Incorrect Control Flow Scoping
CVE-2026-10271 2026-06-2 02:57 2026-06-2 Show GitHub Exploit DB Packet Storm
3773 6.5 MEDIUM
Network
- - A vulnerability has been found in a4m4 Student-Management-System up to f0c5f6842c5e8c431ff02b5260a565ca844df3a0. The impacted element is an unknown function of the file admin/deleteform.php. Such man… CWE-266
CWE-285
 Incorrect Privilege Assignment
Improper Authorization
CVE-2026-10272 2026-06-2 02:57 2026-06-2 Show GitHub Exploit DB Packet Storm
3774 6.3 MEDIUM
Network
- - A vulnerability was determined in indrasishbanerjee aem-mcp-server up to b5f833aef9b5dfd17a5991b3b18a8a11edbdc583. This impacts the function getAssetMetadata of the file src/mcp-server.ts of the comp… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-10274 2026-06-2 02:57 2026-06-2 Show GitHub Exploit DB Packet Storm
3775 5.0 MEDIUM
Network
- - A flaw has been found in OpenSC up to 0.26.1. This affects the function test_kpgen_certwrite of the file src/tools/pkcs11-tool.c of the component pkcs11-tool Key Generation Module. This manipulation … CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-10275 2026-06-2 02:57 2026-06-2 Show GitHub Exploit DB Packet Storm
3776 6.5 MEDIUM
Network
- - Missing Authorization vulnerability in Paolo GeoDirectory allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects GeoDirectory: from n/a through 2.8.157. CWE-862
 Missing Authorization
CVE-2026-42671 2026-06-2 02:57 2026-06-2 Show GitHub Exploit DB Packet Storm
3777 9.3 CRITICAL
Network
- - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Wp Directory Kit WP Directory Kit allows Blind SQL Injection. This issue affects WP Directory Ki… CWE-89
SQL Injection
CVE-2026-42672 2026-06-2 02:57 2026-06-2 Show GitHub Exploit DB Packet Storm
3778 7.5 HIGH
Network
- - Insertion of Sensitive Information Into Sent Data vulnerability in Logtivity Activity Logs Activity Logs, User Activity Tracking, Multisite Activity Log from Logtivity allows Retrieve Embedded Sensit… CWE-201
 Insertion of Sensitive Information Into Sent Data
CVE-2026-42673 2026-06-2 02:57 2026-06-2 Show GitHub Exploit DB Packet Storm
3779 7.5 HIGH
Network
- - Authentication Bypass by Spoofing vulnerability in AAM Plugin Advanced Access Manager allows URL Encoding. This issue affects Advanced Access Manager: from n/a through 7.1.0. CWE-290
 Authentication Bypass by Spoofing
CVE-2026-42674 2026-06-2 02:57 2026-06-2 Show GitHub Exploit DB Packet Storm
3780 7.3 HIGH
Network
- - Missing Authorization vulnerability in Themefic Hydra Booking allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Hydra Booking: from n/a through 1.1.41. CWE-862
 Missing Authorization
CVE-2026-42675 2026-06-2 02:57 2026-06-2 Show GitHub Exploit DB Packet Storm