Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
236931 7.5 危険 phpBB - phpBB 用の Prillian French モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5309 2012-12-20 18:02 2006-10-17 Show GitHub Exploit DB Packet Storm
236932 4 警告 winzip - WinZip 用の WZFILEVIEW.FileViewCtrl.61 ActiveX コントロールにおける任意のコードを実行される脆弱性 - CVE-2006-5198 2012-12-20 18:02 2006-11-14 Show GitHub Exploit DB Packet Storm
236933 6.8 警告 wheatblog - Wheatblog におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5195 2012-12-20 18:02 2006-10-10 Show GitHub Exploit DB Packet Storm
236934 7.5 危険 wikyblog - Josh Schmidt WikyBlog の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5193 2012-12-20 18:02 2006-10-10 Show GitHub Exploit DB Packet Storm
236935 7.5 危険 phpgreetz - phpGreetz の includes/footer.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5192 2012-12-20 18:02 2006-10-10 Show GitHub Exploit DB Packet Storm
236936 5.1 警告 phpBB - phpBB 用の Nivisec Static Topics モジュールにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5191 2012-12-20 18:02 2006-10-10 Show GitHub Exploit DB Packet Storm
236937 5 警告 webgeneius - webGENEius GOOP Gallery の download.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5188 2012-12-20 18:02 2006-10-10 Show GitHub Exploit DB Packet Storm
236938 5.1 警告 phpmyprofiler - phpMyProfiler の functions.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5186 2012-12-20 18:02 2006-10-10 Show GitHub Exploit DB Packet Storm
236939 7.5 危険 pkr internet - PKR Internet Taskjitsu における SQL インジェクションの脆弱性 - CVE-2006-5184 2012-12-20 18:02 2006-09-27 Show GitHub Exploit DB Packet Storm
236940 5.1 警告 powerportal - John Himmelman PowerPortal におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5169 2012-12-20 18:02 2006-10-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
181 4.3 MEDIUM
Network
- - Authorization Bypass Through User-Controlled Key vulnerability in Matteo Manna Simple User Avatar allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Simple U… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-57676 2026-06-30 03:39 2026-06-29 Show GitHub Exploit DB Packet Storm
182 7.1 HIGH
Network
- - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Epiphyt Embed Privacy allows Path Traversal. This issue affects Embed Privacy: from n/a through 1.12.3. New CWE-22
Path Traversal
CVE-2026-57346 2026-06-30 03:39 2026-06-29 Show GitHub Exploit DB Packet Storm
183 7.1 HIGH
Network
- - Unauthenticated Cross Site Scripting (XSS) in BEAR <= 1.1.8 versions. New CWE-79
Cross-site Scripting
CVE-2026-57320 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
184 6.1 MEDIUM
Network
- - Unauthenticated Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions. New CWE-79
Cross-site Scripting
CVE-2026-57326 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
185 6.3 MEDIUM
Network
- - Subscriber Broken Access Control in MainWP <= 6.1.1 versions. New CWE-862
 Missing Authorization
CVE-2026-57327 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
186 6.5 MEDIUM
Network
- - Subscriber Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions. New CWE-79
Cross-site Scripting
CVE-2026-57328 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
187 6.5 MEDIUM
Network
- - Subscriber Cross Site Scripting (XSS) in WooCommerce Designer Pro <= 1.9.34 versions. New CWE-79
Cross-site Scripting
CVE-2026-57329 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
188 6.5 MEDIUM
Network
- - Subscriber Cross Site Scripting (XSS) in MasterStudy LMS <= 3.7.27 versions. New CWE-79
Cross-site Scripting
CVE-2026-57330 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
189 9.9 CRITICAL
Network
- - Performer Arbitrary File Deletion in Paid Videochat Turnkey Site <= 7.4.8 versions. New CWE-22
Path Traversal
CVE-2026-57331 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm
190 7.1 HIGH
Network
- - Subscriber Broken Access Control in Wallet System for WooCommerce <= 2.7.6 versions. New CWE-862
 Missing Authorization
CVE-2026-57332 2026-06-30 03:39 2026-06-30 Show GitHub Exploit DB Packet Storm