Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205431 7.2 重要
Network
Novell - Novell Filr の管理インターフェースにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-1607 2016-08-2 13:41 2016-07-21 Show GitHub Exploit DB Packet Storm
205432 6.5 警告
Network
MIT Kerberos - MIT Kerberos 5 の鍵配布センタの kdc_util.c の validate_as_request 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3120 2016-08-2 11:36 2016-07-20 Show GitHub Exploit DB Packet Storm
205433 6.5 警告
Network
NetIQ - NetIQ Sentinel のサーバの ReportViewServlet サーブレットにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-1605 2016-08-2 11:21 2016-07-2 Show GitHub Exploit DB Packet Storm
205434 8.8 重要
Network
Google - Google Chrome の midgard/mali_kbase_vinstr.c における整数オーバーフローの脆弱性 CWE-Other
その他
CVE-2016-5138 2016-08-2 11:11 2016-07-26 Show GitHub Exploit DB Packet Storm
205435 7.5 重要
Network
シスコシステムズ - Cisco E メール セキュリティ アプライアンス デバイス上で稼動する AsyncOS におけるマルウェアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2016-1461 2016-08-2 10:47 2016-07-27 Show GitHub Exploit DB Packet Storm
205436 4.8 警告
Network
Apache Software Foundation - Apache Archiva におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-5005 2016-08-1 17:45 2016-07-11 Show GitHub Exploit DB Packet Storm
205437 8.8 重要
Network
Apache Software Foundation - Apache Archiva におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-4469 2016-08-1 17:45 2016-07-11 Show GitHub Exploit DB Packet Storm
205438 6.5 警告
Adjacent
シスコシステムズ - Cisco Videoscape Session Resource Manager におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-1467 2016-08-1 16:55 2016-07-27 Show GitHub Exploit DB Packet Storm
205439 6.5 警告
Adjacent
シスコシステムズ - Cisco Nexus 1000v Application Virtual Switch デバイスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-1465 2016-08-1 16:55 2016-07-27 Show GitHub Exploit DB Packet Storm
205440 7.5 重要
Network
シスコシステムズ - Cisco FireSIGHT システム ソフトウェアにおける Snort ルールを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2016-1463 2016-08-1 16:55 2016-07-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1651 9.4 CRITICAL
Network
- - AdGuard Home, when started with the --glinet flag, contains an authentication bypass vulnerability that allows unauthenticated attackers to gain full admin access by supplying a path traversal sequen… CWE-22
Path Traversal
CVE-2026-41448 2026-06-9 22:51 2026-06-9 Show GitHub Exploit DB Packet Storm
1652 - - - A command Injection vulnerability exists in the WireGuard client configuration of Archer MR600 v5 due to improper neutralization of user-controlled input within the web management interface. An authe… CWE-78
OS Command 
CVE-2026-8913 2026-06-9 22:51 2026-06-9 Show GitHub Exploit DB Packet Storm
1653 7.5 HIGH
Network
- - Nginx Proxy Manager versions 2.9.14 through 2.15.1, fixed in commit a5db5ed, contain an authenticated remote code execution vulnerability via OS command injection in the setupCertbotPlugins() functio… CWE-78
OS Command 
CVE-2026-40519 2026-06-9 22:51 2026-06-9 Show GitHub Exploit DB Packet Storm
1654 7.1 HIGH
Network
- - WACRM prior to commit 73041bf contain an authorization bypass vulnerability in the automation engine that allows authenticated attackers to access and modify contacts belonging to other tenants by su… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-49141 2026-06-9 22:51 2026-06-9 Show GitHub Exploit DB Packet Storm
1655 3.5 LOW
Network
- - The Custom Block Builder WordPress plugin before 4.3.0 does not consistently check the unfiltered_html capability across all paths that write to its block template code fields, allowing administrato… CWE-79
Cross-site Scripting
CVE-2026-8981 2026-06-9 22:51 2026-06-9 Show GitHub Exploit DB Packet Storm
1656 - - - SQL injection in the ‘two_steps_auth_code’ parameter processed by the ‘twoStepsAuthVerification’ function within the ‘/user-login’ endpoint. The two-factor authentication (2FA) functionality can be a… CWE-89
SQL Injection
CVE-2026-10731 2026-06-9 22:51 2026-06-9 Show GitHub Exploit DB Packet Storm
1657 8.2 HIGH
Network
- - Simply Poll 1.4.1 plugin for WordPress contains an SQL injection vulnerability that allows unauthenticated attackers to extract database information by injecting SQL code through the 'pollid' POST pa… CWE-89
SQL Injection
CVE-2016-20062 2026-06-9 22:51 2026-06-9 Show GitHub Exploit DB Packet Storm
1658 7.1 HIGH
Network
- - Single Personal Message 1.0.3 contains an SQL injection vulnerability that allows authenticated users to execute arbitrary SQL queries by injecting malicious code through the message parameter. Attac… CWE-89
SQL Injection
CVE-2016-20063 2026-06-9 22:51 2026-06-9 Show GitHub Exploit DB Packet Storm
1659 6.2 MEDIUM
Local
- - WP Vault 0.8.6.6 contains a local file inclusion vulnerability that allows unauthenticated attackers to read arbitrary files by exploiting an unescaped parameter in the include functionality. Attacke… CWE-98
 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
CVE-2016-20064 2026-06-9 22:51 2026-06-9 Show GitHub Exploit DB Packet Storm
1660 8.2 HIGH
Network
- - Product Catalog 8 1.2 plugin for WordPress contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the selec… CWE-89
SQL Injection
CVE-2016-20065 2026-06-9 22:51 2026-06-9 Show GitHub Exploit DB Packet Storm