Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2691 9.8 緊急
Network
H2O.ai H2O H2O.aiのH2Oにおける複数の脆弱性 CWE-20
CWE-502
CVE-2026-8751 2026-05-21 10:47 2026-05-17 Show GitHub Exploit DB Packet Storm
2692 5.3 警告
Network
H2O.ai H2O H2O.aiのH2Oにおける複数の脆弱性 CWE-266
CWE-284
CWE-noinfo
CVE-2026-8752 2026-05-21 10:47 2026-05-17 Show GitHub Exploit DB Packet Storm
2693 7.5 重要
Network
Zeit, Inc. AI Vercel, Inc. (旧 Zeit, Inc.)のAIにおける複数の脆弱性 CWE-77
CWE-78
CVE-2026-8767 2026-05-21 10:47 2026-05-17 Show GitHub Exploit DB Packet Storm
2694 7.3 重要
Network
Zeit, Inc. AI Vercel, Inc. (旧 Zeit, Inc.)のAIにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-8768 2026-05-21 10:47 2026-05-17 Show GitHub Exploit DB Packet Storm
2695 6.5 警告
Network
Zeit, Inc. AI Vercel, Inc. (旧 Zeit, Inc.)のAIにおける複数の脆弱性 CWE-400
CWE-404
CVE-2026-8769 2026-05-21 10:47 2026-05-17 Show GitHub Exploit DB Packet Storm
2696 6.3 警告
Network
Tencent WeKnora TencentのWeKnoraにおける複数の脆弱性 CWE-285
CWE-639
CVE-2026-8786 2026-05-21 10:47 2026-05-18 Show GitHub Exploit DB Packet Storm
2697 7.5 重要
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-8946 2026-05-21 10:47 2026-05-19 Show GitHub Exploit DB Packet Storm
2698 7.3 重要
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-8947 2026-05-21 10:47 2026-05-19 Show GitHub Exploit DB Packet Storm
2699 9.6 緊急
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-8953 2026-05-21 10:47 2026-05-19 Show GitHub Exploit DB Packet Storm
2700 7.5 重要
Network
Mozilla Foundation Mozilla Thunderbird
Mozilla Firefox
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-8954 2026-05-21 10:47 2026-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345001 - constructor_component constructor_component PHP remote file inclusion vulnerability in admin.lurm_constructor.php in the Lurm Constructor component (com_lurm_constructor) 0.6b and earlier for Mambo allows remote attackers to execute arbitrary … NVD-CWE-Other
CVE-2006-4372 2017-10-19 10:29 2006-08-27 Show GitHub Exploit DB Packet Storm
345002 - wikepage wikepage Directory traversal vulnerability in index.php for Wikepage 2006.2a Opus 10 allows remote attackers to include arbitrary local files via the lng parameter, as demonstrated by inserting PHP code into … NVD-CWE-Other
CVE-2006-4418 2017-10-19 10:29 2006-08-29 Show GitHub Exploit DB Packet Storm
345003 - promanager promanager SQL injection vulnerability in note.php in ProManager 0.73 allows remote attackers to execute arbitrary SQL commands via the note_id parameter. NVD-CWE-Other
CVE-2006-4419 2017-10-19 10:29 2006-08-29 Show GitHub Exploit DB Packet Storm
345004 - phaos phaos Directory traversal vulnerability in include_lang.php in Phaos 0.9.2 allows remote attackers to include arbitrary local files via ".." sequences in the lang parameter. NVD-CWE-Other
CVE-2006-4420 2017-10-19 10:29 2006-08-29 Show GitHub Exploit DB Packet Storm
345005 - coinsoft_technologies phpcoin PHP remote file inclusion vulnerability in coin_includes/constants.php in phpCOIN 1.2.3 allows remote attackers to execute arbitrary PHP code via the _CCFG[_PKG_PATH_INCL] parameter. NVD-CWE-Other
CVE-2006-4424 2017-10-19 10:29 2006-08-29 Show GitHub Exploit DB Packet Storm
345006 - efiction efiction index.php in eFiction before 2.0.7 allows remote attackers to bypass authentication and gain privileges by setting the (1) adminloggedin, (2) loggedin, and (3) level parameters to "1". NVD-CWE-Other
CVE-2006-4427 2017-10-19 10:29 2006-08-29 Show GitHub Exploit DB Packet Storm
345007 - web3king web3news PHP remote file inclusion vulnerability in security/include/_class.security.php in Web3news 0.95 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code v… NVD-CWE-Other
CVE-2006-4452 2017-10-19 10:29 2006-08-31 Show GitHub Exploit DB Packet Storm
345008 - phpecard phpecard PHP remote file inclusion vulnerability in functions.php in phpECard 2.1.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the include_path parameter. NVD-CWE-Other
CVE-2006-4456 2017-10-19 10:29 2006-08-31 Show GitHub Exploit DB Packet Storm
345009 - phpgroupware phpgroupware Directory traversal vulnerability in calendar/inc/class.holidaycalc.inc.php in phpGroupWare 0.9.16.010 and earlier allows remote attackers to include arbitrary local files via a .. (dot dot) sequence… NVD-CWE-Other
CVE-2006-4458 2017-10-19 10:29 2006-08-31 Show GitHub Exploit DB Packet Storm
345010 - phpgroupware phpgroupware Upgrade to phpGroupWare 0.9.16.011 NVD-CWE-Other
CVE-2006-4458 2017-10-19 10:29 2006-08-31 Show GitHub Exploit DB Packet Storm