Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239761 7.5 危険 ohesa emlak portali - Ohesa Emlak Portali における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5180 2012-09-25 16:59 2007-10-3 Show GitHub Exploit DB Packet Storm
239762 6.8 警告 mxbb - mxBB 用の mx_glance モジュールにおけるリモートファイルインクルージョン攻撃を実行される脆弱性 CWE-94
コード・インジェクション
CVE-2007-5178 2012-09-25 16:59 2007-10-3 Show GitHub Exploit DB Packet Storm
239763 7.5 危険 mambads
Mambo Foundation
- Mambo 用の MambAds コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5177 2012-09-25 16:59 2007-10-3 Show GitHub Exploit DB Packet Storm
239764 6.8 警告 OpenID
phpBB
- phpBB Openid の includes/openid/Auth/OpenID/BBStore.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5173 2012-09-25 16:59 2007-10-3 Show GitHub Exploit DB Packet Storm
239765 4.3 警告 i-systems inc. - i-Systems Feedreader の内部ブラウザにおけるクロスゾーンスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5161 2012-09-25 16:59 2007-10-1 Show GitHub Exploit DB Packet Storm
239766 4.6 警告 ntfs-3g - Fedora などで使用される ntfs-3g パッケージにおける任意のブロックデバイスに書き込まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5159 2012-09-25 16:59 2007-09-25 Show GitHub Exploit DB Packet Storm
239767 4.3 警告 マイクロソフト - Microsoft Internet Explorer 6.0 の onkeydown イベントのフォーカス処理におけるキーストロークをコピーされる脆弱性 CWE-DesignError
CVE-2007-5158 2012-09-25 16:59 2007-10-1 Show GitHub Exploit DB Packet Storm
239768 6.8 警告 php fidonet tosser
phpfidonode
- Alex Kocharin PhFiTo の phfito-post.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5157 2012-09-25 16:59 2007-10-1 Show GitHub Exploit DB Packet Storm
239769 9.3 危険 iceows - ICEOWS の IceGUI.DLL における任意のコードを実行される脆弱性 CWE-119
CWE-20
CVE-2007-5155 2012-09-25 16:59 2007-10-1 Show GitHub Exploit DB Packet Storm
239770 7.5 危険 nukescripts - NukeSentinel の includes/nukesentinel.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5151 2012-09-25 16:59 2007-10-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
361 5.4 MEDIUM
Network
- - A weakness has been identified in zilliztech deep-searcher up to 0.0.2. This affects the function CollectionRouter.invoke of the file deepsearcher/agent/collection_router.py. This manipulation of the… New CWE-266
CWE-284
 Incorrect Privilege Assignment
Improper Access Control
CVE-2026-11466 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
362 2.4 LOW
Network
- - A vulnerability was detected in SourceCodester Hospitals Patient Records Management System 1.0. This issue affects some unknown processing of the file /admin/?page=room_types. Performing a manipulati… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-11468 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
363 7.3 HIGH
Network
- - A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is an unknown function of the file /index2.php. The manipulation of the argument Password resul… New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11471 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
364 7.3 HIGH
Network
- - A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /index1.php. This manipulation of the argument Password causes sql… New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11472 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
365 6.3 MEDIUM
Network
- - A vulnerability was identified in jflyfox jfinal_cms up to 5.1.0. This impacts the function list of the file AdvicefeedbackController.java. Such manipulation of the argument orderBy leads to sql inje… New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11473 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
366 5.4 MEDIUM
Network
- - A security vulnerability has been detected in jishenghua jshERP up to 3.6. This vulnerability affects the function addAccountHeadAndDetail of the file jshERP-boot/src/main/java/com/jsh/erp/service/Ac… New CWE-22
Path Traversal
CVE-2026-11467 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
367 4.7 MEDIUM
Network
- - A flaw has been found in jishenghua jshERP up to 3.6. Impacted is the function insertPlatformConfig of the file jshERP-boot/src/main/java/com/jsh/erp/service/PlatformConfigService.java of the compone… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-11469 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
368 6.3 MEDIUM
Network
- - A vulnerability has been found in hs-web hsweb-framework up to 5.0.1. The affected element is the function denied of the file hsweb-system/hsweb-system-file/src/main/java/org/hswebframework/web/file/… New CWE-22
Path Traversal
CVE-2026-11470 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
369 7.3 HIGH
Network
- - A security flaw has been discovered in Kushan2k student-management-system up to f16a4ceaddd6729c4b306ed4641cda3176c1ef2a. Affected is an unknown function of the file service/RegisterService.php of th… New CWE-284
CWE-434
Improper Access Control
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-11474 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
370 6.3 MEDIUM
Network
- - A weakness has been identified in Kushan2k student-management-system up to f16a4ceaddd6729c4b306ed4641cda3176c1ef2a. Affected by this vulnerability is the function getStatus of the file controllers/G… New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11475 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm