Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3361 6.1 警告
Network
spin.js spin.js spin.jsにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-3884 2026-05-11 11:02 2026-03-11 Show GitHub Exploit DB Packet Storm
3362 8.3 重要
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)におけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2024-30151 2026-05-11 11:02 2026-05-6 Show GitHub Exploit DB Packet Storm
3363 5.7 警告
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2025-31957 2026-05-11 11:02 2026-05-6 Show GitHub Exploit DB Packet Storm
3364 3.5
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)におけるメタデータのよる重要な情報の公開に関する脆弱性 CWE-1230
メタデータのよる重要な情報の公開
CVE-2025-31959 2026-05-11 11:02 2026-05-6 Show GitHub Exploit DB Packet Storm
3365 5.3 警告
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)におけるエラーメッセージによる情報漏えいに関する脆弱性 CWE-209
エラーメッセージによる情報漏えい
CVE-2025-31960 2026-05-11 11:02 2026-05-6 Show GitHub Exploit DB Packet Storm
3366 5.3 警告
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2025-31975 2026-05-11 11:02 2026-05-6 Show GitHub Exploit DB Packet Storm
3367 5.4 警告
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2025-31984 2026-05-11 11:02 2026-05-6 Show GitHub Exploit DB Packet Storm
3368 7.2 重要
Network
デル data domain operating system デルのdata domain operating systemにおけるセッションの固定化の脆弱性 CWE-384
セッションの固定化
CVE-2025-46605 2026-05-11 11:02 2026-04-17 Show GitHub Exploit DB Packet Storm
3369 7.2 重要
Network
デル data domain operating system デルのdata domain operating systemにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2025-46606 2026-05-11 11:01 2026-04-17 Show GitHub Exploit DB Packet Storm
3370 8.8 重要
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2025-52613 2026-05-11 11:01 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345661 - cookex com_ckforms SQL injection vulnerability in the Cookex Agency CKForms (com_ckforms) component 1.3.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via the fid parameter in a detail action t… CWE-89
SQL Injection
CVE-2010-1344 2017-08-17 10:32 2010-04-10 Show GitHub Exploit DB Packet Storm
345662 - ribafs mini_cms_ribafs SQL injection vulnerability in admin/login.php in Mini CMS RibaFS 1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the login parameter. NOTE: som… CWE-89
SQL Injection
CVE-2010-1346 2017-08-17 10:32 2010-04-10 Show GitHub Exploit DB Packet Storm
345663 - ibm director_agent Director Agent 6.1 before 6.1.2.3 in IBM Systems Director on AIX and Linux uses incorrect permissions for the (1) diruninstall and (2) opt/ibm/director/bin/wcitinst scripts, which allows local users … CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-1347 2017-08-17 10:32 2010-04-13 Show GitHub Exploit DB Packet Storm
345664 - ibm websphere_portal Unspecified vulnerability in the login process in IBM WebSphere Portal 6.0.1.1, and 6.1.0.x before 6.1.0.3 Cumulative Fix 03, has unknown impact and remote attack vectors. NVD-CWE-noinfo
CVE-2010-1348 2017-08-17 10:32 2010-04-13 Show GitHub Exploit DB Packet Storm
345665 - opera opera_browser Integer overflow in Opera 10.10 through 10.50 allows remote attackers to execute arbitrary code via a large Content-Length value, which triggers a heap overflow. CWE-189
Numeric Errors
CVE-2010-1349 2017-08-17 10:32 2010-04-13 Show GitHub Exploit DB Packet Storm
345666 - opera opera_browser Per: http://my.opera.com/securitygroup/blog/2010/03/09/the-malformed-content-length-header-security-issue 'We also determined that the problem only existed in our Windows version. ' CWE-189
Numeric Errors
CVE-2010-1349 2017-08-17 10:32 2010-04-13 Show GitHub Exploit DB Packet Storm
345667 - joomlaprojects com_jp_jobs SQL injection vulnerability in the JP Jobs (com_jp_jobs) component 1.4.1 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to i… CWE-89
SQL Injection
CVE-2010-1350 2017-08-17 10:32 2010-04-13 Show GitHub Exploit DB Packet Storm
345668 - nodesforum nodesforum Multiple PHP remote file inclusion vulnerabilities in Nodesforum 1.033 and 1.045, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the (1) _nodesfor… CWE-94
Code Injection
CVE-2010-1351 2017-08-17 10:32 2010-04-13 Show GitHub Exploit DB Packet Storm
345669 - wowjoomla com_loginbox Directory traversal vulnerability in the LoginBox Pro (com_loginbox) component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php. CWE-22
Path Traversal
CVE-2010-1353 2017-08-17 10:32 2010-04-13 Show GitHub Exploit DB Packet Storm
345670 - sbddirectorysoftware sbd_directory_software Cross-site scripting (XSS) vulnerability in editors/logindialogue.php in SBD Directory Software 4.0 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO. CWE-79
Cross-site Scripting
CVE-2010-1357 2017-08-17 10:32 2010-04-14 Show GitHub Exploit DB Packet Storm