Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240131 4 警告 オラクル - Oracle PeopleSoft Enterprise および JD Edwards EnterpriseOne における脆弱性 - CVE-2007-0297 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
240132 2.1 注意 オラクル - Oracle PeopleSoft Enterprise および JD Edwards EnterpriseOne における脆弱性 - CVE-2007-0296 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
240133 7.8 危険 オラクル - Oracle PeopleSoft Enterprise および JD Edwards EnterpriseOne における脆弱性 - CVE-2007-0295 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
240134 1.7 注意 オラクル - Oracle Enterprise Manager における脆弱性 - CVE-2007-0294 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
240135 6.4 警告 オラクル - Oracle Enterprise Manager における脆弱性 CWE-noinfo
情報不足
CVE-2007-0293 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
240136 7.5 危険 オラクル - Oracle Enterprise Manager における脆弱性 CWE-noinfo
情報不足
CVE-2007-0292 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
240137 4 警告 オラクル - Oracle E-Business Suite and Applications における脆弱性 - CVE-2007-0291 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
240138 5.5 警告 オラクル - Oracle E-Business Suite and Applications における脆弱性 - CVE-2007-0290 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
240139 6.4 警告 オラクル - Oracle Collaboration Suite における脆弱性 - CVE-2007-0289 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
240140 5 警告 nwom - Nwom topsites の index.php における重要な情報を取得される脆弱性 - CVE-2007-0250 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1551 6.3 MEDIUM
Network
- - A vulnerability was found in JeecgBoot up to 3.9.1. Impacted is the function user.getUsername of the file /sys/user/login/setting/userEdit of the component SysUser. The manipulation of the argument u… CWE-266
CWE-284
 Incorrect Privilege Assignment
Improper Access Control
CVE-2026-9579 2026-05-28 00:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1552 5.3 MEDIUM
Network
- - IBM OPENBMC FW1110.00 through FW1110.11 is vulnerable to denial of service attacks by unauthenticated network users. CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2026-7254 2026-05-28 00:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1553 - - - Webmin before 2.640 does not safely construct a filename for saving of an attachment within the mailboxes component. This occurs in mailboxes/detachall.cgi. CWE-24
 Path Traversal: '../filedir'
CVE-2026-49103 2026-05-28 00:16 2026-05-28 Show GitHub Exploit DB Packet Storm
1554 6.1 MEDIUM
Network
- - Webmin before 2.640 allows mailboxes/detach.cgi XSS via an SVG document attachment that is viewed in the mailboxes component, because image/svg+xml is used instead of a safe type (e.g., text/plain). CWE-79
Cross-site Scripting
CVE-2026-49102 2026-05-28 00:16 2026-05-28 Show GitHub Exploit DB Packet Storm
1555 4.7 MEDIUM
Network
- - URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Facebook Facebook for WooCommerce allows Phishing. This issue affects Facebook for WooCommerce: from n/a through 3.7.0. CWE-601
Open Redirect
CVE-2026-49059 2026-05-28 00:16 2026-05-28 Show GitHub Exploit DB Packet Storm
1556 5.3 MEDIUM
Network
- - Missing Authorization vulnerability in Wpmet ElementsKit Elementor addons Lite allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects ElementsKit Elementor addon… CWE-862
 Missing Authorization
CVE-2026-49053 2026-05-28 00:16 2026-05-28 Show GitHub Exploit DB Packet Storm
1557 4.3 MEDIUM
Network
- - Missing Authorization vulnerability in Wpmet ElementsKit Elementor addons Lite allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects ElementsKit Elementor addon… CWE-862
 Missing Authorization
CVE-2026-49052 2026-05-28 00:16 2026-05-28 Show GitHub Exploit DB Packet Storm
1558 4.3 MEDIUM
Network
- - Missing Authorization vulnerability in Prasad Kirpekar WP Meta and Date Remover allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP Meta and Date Remover: … CWE-862
 Missing Authorization
CVE-2026-49051 2026-05-28 00:16 2026-05-28 Show GitHub Exploit DB Packet Storm
1559 4.3 MEDIUM
Network
- - Missing Authorization vulnerability in DearHive DearFlip allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects DearFlip: from n/a through 2.4.27. CWE-862
 Missing Authorization
CVE-2026-49047 2026-05-28 00:16 2026-05-28 Show GitHub Exploit DB Packet Storm
1560 8.5 HIGH
Network
- - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Arjun Thakur Duplicate Page and Post allows Blind SQL Injection. This issue affects Duplicate Pa… CWE-89
SQL Injection
CVE-2026-49046 2026-05-28 00:16 2026-05-28 Show GitHub Exploit DB Packet Storm