Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
214201 7.5 危険 ヒューレット・パッカード
VMware
Apache Software Foundation
- Apache Tomecat の特定の AJP プロトコルコネクタにおける認証回避の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-3190 2015-03-6 16:26 2011-08-20 Show GitHub Exploit DB Packet Storm
214202 4.3 警告 Squid-cache.org - Squid における入力値検証の不備に関する脆弱性 CWE-20
不適切な入力確認
CVE-2015-0881 2015-03-6 14:56 2015-02-20 Show GitHub Exploit DB Packet Storm
214203 5 警告 まろやかCGI - まろやかリレー小説におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-0893 2015-03-6 14:47 2015-03-4 Show GitHub Exploit DB Packet Storm
214204 4.3 警告 まろやかCGI - まろやかイメージアルバムにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-0892 2015-03-6 14:46 2015-03-4 Show GitHub Exploit DB Packet Storm
214205 5 警告 まろやかCGI - まろやか一言ボードにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-0891 2015-03-6 14:45 2015-03-4 Show GitHub Exploit DB Packet Storm
214206 4.3 警告 ヒューレット・パッカード - 複数の HP XP 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-7896 2015-03-6 14:34 2014-10-6 Show GitHub Exploit DB Packet Storm
214207 5 警告 NetCat - NetCat におけるインストールパスを取得される脆弱性 CWE-200
情報漏えい
CVE-2015-2214 2015-03-6 14:29 2015-02-25 Show GitHub Exploit DB Packet Storm
214208 5.8 警告 Services single sign-on server helper project - Drupal 用 Services single sign-on server helper モジュールにおけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2015-2215 2015-03-6 14:28 2015-02-25 Show GitHub Exploit DB Packet Storm
214209 5 警告 DLGuard - DLGuard におけるインストールパスを取得される脆弱性 CWE-200
情報漏えい
CVE-2015-2209 2015-03-6 14:27 2015-02-18 Show GitHub Exploit DB Packet Storm
214210 4.3 警告 フォーティネット - Fortinet FortiMail の WebGUI の Web Action Quarantine Release 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8617 2015-03-6 14:26 2014-11-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3071 6.5 MEDIUM
Network
- - An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the Easy View due to improper neutralization of special elements in a SQL SELECT command. This can resu… CWE-89
SQL Injection
CVE-2026-40831 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3072 6.5 MEDIUM
Network
- - An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getDevicegroups function due to improper neutralization of special elements in a SQL SELECT command… CWE-89
SQL Injection
CVE-2026-40832 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3073 7.1 HIGH
Network
- - An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the dash.php files saveDashboardLayout function due to improper neutralization of special elements in a… CWE-89
SQL Injection
CVE-2026-40833 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3074 7.1 HIGH
Network
- - An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the dash_layout.php files saveDashboardLayout function due to improper neutralization of special elemen… CWE-89
SQL Injection
CVE-2026-40834 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3075 6.5 MEDIUM
Network
- - An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the saveObjectFromData function due to improper neutralization of special elements in a SQL SELECT comm… CWE-89
SQL Injection
CVE-2026-40835 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3076 7.1 HIGH
Network
- - An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the inmessage model due to improper neutralization of special elements in a SQL DELETE command allowing… CWE-89
SQL Injection
CVE-2026-40836 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3077 6.5 MEDIUM
Network
- - An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getProjectScalings function due to improper neutralization of special elements in a SQL SELECT comm… CWE-89
SQL Injection
CVE-2026-40837 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3078 6.5 MEDIUM
Network
- - An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getDeviceScalings function due to improper neutralization of special elements in a SQL SELECT comma… CWE-89
SQL Injection
CVE-2026-40838 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3079 6.5 MEDIUM
Network
- - An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getComponentScalings function due to improper neutralization of special elements in a SQL SELECT co… CWE-89
SQL Injection
CVE-2026-40839 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm
3080 6.5 MEDIUM
Network
- - An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the VerifyCreateLicences function due to improper neutralization of special elements in a SQL SELECT co… CWE-89
SQL Injection
CVE-2026-40840 2026-05-27 23:53 2026-05-27 Show GitHub Exploit DB Packet Storm