Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205691 3.3
Local
アップル - Apple OS X の AMD サブシステムにおける重要なカーネルのメモリレイアウト情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-1791 2016-05-23 16:12 2016-05-16 Show GitHub Exploit DB Packet Storm
205692 7.8 重要
Local
アップル - Apple iOS および OS X のカーネルにおける特権付きコンテキスト内で任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-1831 2016-05-23 14:46 2016-05-16 Show GitHub Exploit DB Packet Storm
205693 3.3
Local
アップル - Apple iOS の Accessibility コンポーネントにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-1790 2016-05-23 14:46 2016-05-16 Show GitHub Exploit DB Packet Storm
205694 7.8 重要
Local
アップル - Apple iTunes のインストーラにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-1742 2016-05-23 14:10 2016-05-16 Show GitHub Exploit DB Packet Storm
205695 7.5 重要
Network
Petri Lehtinen - Jansson におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-4425 2016-05-23 13:58 2016-05-3 Show GitHub Exploit DB Packet Storm
205696 9.8 緊急
Network
VMware - Windows 上で稼動する VMware Workstation および Player におけるホスト OS の権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2077 2016-05-23 13:43 2016-05-17 Show GitHub Exploit DB Packet Storm
205697 6.8 警告 Lantronix, Inc. - Lantronix xPrintServer におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-9003 2016-05-23 12:16 2014-11-11 Show GitHub Exploit DB Packet Storm
205698 10 危険 Lantronix, Inc. - Lantronix xPrintServer における任意のコマンドを実行される脆弱性 CWE-264
CWE-Other
CVE-2014-9002 2016-05-23 12:15 2014-11-11 Show GitHub Exploit DB Packet Storm
205699 9.8 緊急
Network
Lantronix, Inc. - Lantronix xPrintServer デバイスのファームウェアにおける root アクセス権を取得される脆弱性 CWE-255
CWE-Other
CVE-2016-4325 2016-05-23 12:13 2016-05-13 Show GitHub Exploit DB Packet Storm
205700 7.5 重要
Network
Xstream
Debian
- XStream の複数のドライバにおける XML 外部エンティティの脆弱性 CWE-200
情報漏えい
CVE-2016-3674 2016-05-23 12:13 2016-03-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1291 9.8 CRITICAL
Network
- - WordPress Hybrid Composer 1.4.6 contains an unauthenticated settings change vulnerability that allows unauthenticated attackers to modify WordPress options by exploiting the hc_ajax_save_option actio… CWE-306
Missing Authentication for Critical Function
CVE-2019-25738 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1292 6.4 MEDIUM
Network
- - GigToDo 1.3 contains a persistent cross-site scripting vulnerability that allows authenticated attackers to inject malicious JavaScript and HTML code through the proposal description field. Attackers… CWE-79
Cross-site Scripting
CVE-2019-25739 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1293 6.5 MEDIUM
Network
- - Joomla com_jsjobs 1.2.6 contains an arbitrary file deletion vulnerability that allows authenticated attackers to delete files by manipulating custom userfield parameters. Attackers can send POST requ… CWE-22
Path Traversal
CVE-2019-25740 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1294 9.8 CRITICAL
Network
- - Mobatek MobaXterm 12.1 contains a structured exception handling (SEH) based buffer overflow vulnerability in the username field of session files that allows remote attackers to execute arbitrary code… CWE-120
Classic Buffer Overflow
CVE-2019-25741 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1295 6.4 MEDIUM
Network
- - WordPress Theme Zoner Real Estate 4.1.1 contains a persistent cross-site scripting vulnerability that allows authenticated agents to inject malicious scripts through the Address input field when crea… CWE-79
Cross-site Scripting
CVE-2019-25742 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1296 6.4 MEDIUM
Network
- - WordPress Soliloquy Lite 2.5.6 contains a persistent cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by inserting script tags in the post title fiel… CWE-79
Cross-site Scripting
CVE-2019-25743 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1297 6.4 MEDIUM
Network
- - WordPress Popup Builder 3.49 contains a persistent cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by breaking out of option tags in the post_title … CWE-79
Cross-site Scripting
CVE-2019-25744 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1298 8.2 HIGH
Network
- - WordPress Plugin Google Review Slider 6.1 contains a time-based blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through th… CWE-89
SQL Injection
CVE-2019-25745 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1299 7.3 HIGH
Network
- - A vulnerability was detected in SourceCodester Pizzafy E-Commerce System 1.0. Affected by this vulnerability is the function Login of the file /admin/admin_class_novo.php of the component Administrat… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10704 2026-06-4 23:58 2026-06-3 Show GitHub Exploit DB Packet Storm
1300 7.3 HIGH
Network
- - A vulnerability was identified in DedeCMS 5.7.88. The impacted element is the function dede_htmlspecialchars of the file /plus/flink.php. The manipulation of the argument msg leads to sql injection. … CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10607 2026-06-4 23:56 2026-06-3 Show GitHub Exploit DB Packet Storm