Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245741 4.3 警告 censura - Censura の productSearch.html におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2595 2012-06-26 16:10 2009-07-24 Show GitHub Exploit DB Packet Storm
245742 4.3 警告 censura - Censura の censura.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2594 2012-06-26 16:10 2009-07-24 Show GitHub Exploit DB Packet Storm
245743 7.5 危険 censura - Censura の censura.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2593 2012-06-26 16:10 2009-07-24 Show GitHub Exploit DB Packet Storm
245744 4.3 警告 dragdropcart - DragDropCart におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2587 2012-06-26 16:10 2009-07-24 Show GitHub Exploit DB Packet Storm
245745 4.3 警告 edgephp - EDGEPHP EZArticles の articles.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2586 2012-06-26 16:10 2009-07-24 Show GitHub Exploit DB Packet Storm
245746 9.3 危険 アカマイテクノロジーズ - Akamai Download Manager の manager.exe におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2582 2012-06-26 16:10 2009-07-23 Show GitHub Exploit DB Packet Storm
245747 4.3 警告 editeurscripts - EditeurScripts EsNews の modifier.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2581 2012-06-26 16:10 2009-07-23 Show GitHub Exploit DB Packet Storm
245748 6.5 警告 CS-Cart - CS-Cart の reward_points.post.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2579 2012-06-26 16:10 2009-08-5 Show GitHub Exploit DB Packet Storm
245749 6.5 警告 bioscripts - MiniTwitter の index.php における任意のアカウントの特定のオプションを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2574 2012-06-26 16:10 2009-07-22 Show GitHub Exploit DB Packet Storm
245750 6 警告 bioscripts - MiniTwitter における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2573 2012-06-26 16:10 2009-07-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2091 4.7 MEDIUM
Network
- - A flaw has been found in jishenghua jshERP up to 3.6. Impacted is the function insertPlatformConfig of the file jshERP-boot/src/main/java/com/jsh/erp/service/PlatformConfigService.java of the compone… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-11469 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2092 6.3 MEDIUM
Network
- - A vulnerability has been found in hs-web hsweb-framework up to 5.0.1. The affected element is the function denied of the file hsweb-system/hsweb-system-file/src/main/java/org/hswebframework/web/file/… CWE-22
Path Traversal
CVE-2026-11470 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2093 7.3 HIGH
Network
- - A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is an unknown function of the file /index2.php. The manipulation of the argument Password resul… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11471 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2094 7.3 HIGH
Network
- - A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /index1.php. This manipulation of the argument Password causes sql… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11472 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2095 6.3 MEDIUM
Network
- - A vulnerability was identified in jflyfox jfinal_cms up to 5.1.0. This impacts the function list of the file AdvicefeedbackController.java. Such manipulation of the argument orderBy leads to sql inje… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11473 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2096 7.3 HIGH
Network
- - A security flaw has been discovered in Kushan2k student-management-system up to f16a4ceaddd6729c4b306ed4641cda3176c1ef2a. Affected is an unknown function of the file service/RegisterService.php of th… CWE-284
CWE-434
Improper Access Control
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-11474 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2097 4.3 MEDIUM
Network
- - A vulnerability was detected in hs-web hsweb-framework up to 5.0.1. This affects the function OAuth2Client of the file hsweb-authorization/hsweb-authorization-oauth2/src/main/java/org/hswebframework/… CWE-601
Open Redirect
CVE-2026-11477 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2098 4.2 MEDIUM
Network
- - A vulnerability has been found in yoanbernabeu grepai 0.35.0. This issue affects some unknown processing of the file indexer/chunker.go of the component Qdrant Backend. Such manipulation leads to use… CWE-327
CWE-328
 Use of a Broken or Risky Cryptographic Algorithm
 Use of Weak Hash
CVE-2026-11479 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2099 7.3 HIGH
Network
- - A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is an unknown function of the file /archive5.php. The manipulation of the argument sy lead… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11482 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm
2100 7.3 HIGH
Network
- - A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /archive4.php. The manipulation of the argument sy results in… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-11483 2026-06-8 23:57 2026-06-8 Show GitHub Exploit DB Packet Storm