Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2211 7.3 重要
Network
Zeit, Inc. AI Vercel, Inc. (旧 Zeit, Inc.)のAIにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-8768 2026-05-21 10:47 2026-05-17 Show GitHub Exploit DB Packet Storm
2212 6.5 警告
Network
Zeit, Inc. AI Vercel, Inc. (旧 Zeit, Inc.)のAIにおける複数の脆弱性 CWE-400
CWE-404
CVE-2026-8769 2026-05-21 10:47 2026-05-17 Show GitHub Exploit DB Packet Storm
2213 6.3 警告
Network
Tencent WeKnora TencentのWeKnoraにおける複数の脆弱性 CWE-285
CWE-639
CVE-2026-8786 2026-05-21 10:47 2026-05-18 Show GitHub Exploit DB Packet Storm
2214 7.5 重要
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-8946 2026-05-21 10:47 2026-05-19 Show GitHub Exploit DB Packet Storm
2215 7.3 重要
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-8947 2026-05-21 10:47 2026-05-19 Show GitHub Exploit DB Packet Storm
2216 9.6 緊急
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-8953 2026-05-21 10:47 2026-05-19 Show GitHub Exploit DB Packet Storm
2217 7.5 重要
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-8954 2026-05-21 10:47 2026-05-19 Show GitHub Exploit DB Packet Storm
2218 4.3 警告
Network
シックス・アパート株式会社 Movable Type Premium (Advanced Edition)
Movable Type
Movable Type Advanced
Movable Type Premium
Movable Typeにおける権限チェックの欠如の脆弱性 CWE-Other
その他
CVE-2026-44392 2026-05-20 14:09 2026-05-20 Show GitHub Exploit DB Packet Storm
2219 4.3 警告
Network
Outlook.com Microsoft Edge Chromium Microsoft Edge (Chromium ベース) for Android のスプーフィングの脆弱性 CWE-451
ユーザインターフェースにおける重要情報の誤った表示
CVE-2026-40416 2026-05-20 13:31 2026-05-12 Show GitHub Exploit DB Packet Storm
2220 4.3 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける有効期限後または解放後のリソースの操作に関する脆弱性 CWE-672
有効期限後または解放後のリソースの操作
CVE-2026-4053 2026-05-20 13:31 2026-05-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2931 7.3 HIGH
Network
- - A flaw has been found in CodeAstro Online Job Portal 1.0. This affects an unknown function of the file /users/application_status.php. Executing a manipulation of the argument ID can lead to sql injec… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10261 2026-06-2 01:41 2026-06-2 Show GitHub Exploit DB Packet Storm
2932 7.3 HIGH
Network
- - A vulnerability has been found in code-projects Real State Services 1.0. This impacts an unknown function of the file /loginuser.php of the component Login. The manipulation of the argument Username … CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10262 2026-06-2 01:41 2026-06-2 Show GitHub Exploit DB Packet Storm
2933 7.3 HIGH
Network
- - A vulnerability was found in SourceCodester Computer Repair Shop Management System up to 1.0. Affected is an unknown function of the file /admin/products/manage_product.php. The manipulation of the a… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10263 2026-06-2 01:41 2026-06-2 Show GitHub Exploit DB Packet Storm
2934 3.5 LOW
Adjacent
- - A vulnerability was determined in lharries whatsapp-mcp 0.0.1. Affected by this vulnerability is the function SendMessageRequest of the file whatsapp-bridge/main.go of the component Send API Endpoint… CWE-22
Path Traversal
CVE-2026-10264 2026-06-2 01:41 2026-06-2 Show GitHub Exploit DB Packet Storm
2935 6.3 MEDIUM
Network
- - A vulnerability was identified in itsourcecode Content Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/edit_topic.php. Such manipulation of the argument… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10265 2026-06-2 01:41 2026-06-2 Show GitHub Exploit DB Packet Storm
2936 3.3 LOW
Local
- - A security flaw has been discovered in janet-lang janet up to 1.41.0. This affects the function doframe of the file src/core/debug.c. Performing a manipulation results in out-of-bounds read. Attackin… CWE-119
CWE-125
Incorrect Access of Indexable Resource ('Range Error') 
Out-of-bounds Read
CVE-2026-10267 2026-06-2 01:41 2026-06-2 Show GitHub Exploit DB Packet Storm
2937 9.8 CRITICAL
Network
- - Incorrect Privilege Assignment vulnerability in Wasiliy Strecker / ContestGallery developer Contest Gallery Pro allows Privilege Escalation. This issue affects Contest Gallery Pro: from n/a through … CWE-266
 Incorrect Privilege Assignment
CVE-2026-42680 2026-06-2 01:41 2026-06-2 Show GitHub Exploit DB Packet Storm
2938 7.1 HIGH
Network
- - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in E2Pdf.Com e2pdf allows Reflected XSS. This issue affects e2pdf: from n/a through 1.32.14. CWE-79
Cross-site Scripting
CVE-2026-42681 2026-06-2 01:41 2026-06-2 Show GitHub Exploit DB Packet Storm
2939 9.1 CRITICAL
Network
- - Missing Authorization vulnerability in Tomdever wpForo Forum allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects wpForo Forum: from n/a through 3.0.6. CWE-862
 Missing Authorization
CVE-2026-42682 2026-06-2 01:41 2026-06-2 Show GitHub Exploit DB Packet Storm
2940 7.1 HIGH
Network
- - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in e4jvikwp VikBooking Hotel Booking Engine & PMS allows DOM-Based XSS. This issue affects VikBooki… CWE-79
Cross-site Scripting
CVE-2026-42683 2026-06-2 01:41 2026-06-2 Show GitHub Exploit DB Packet Storm