Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3391 7.2 重要
Network
Progress Software Corporation ECS Connection Manager
loadmaster
Connection Manager for ObjectScale
Progress Software CorporationのConnection Manager for ObjectScale等の複数製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-3517 2026-05-7 12:06 2026-04-20 Show GitHub Exploit DB Packet Storm
3392 7.2 重要
Network
Progress Software Corporation ECS Connection Manager
loadmaster
Connection Manager for ObjectScale
Progress Software CorporationのConnection Manager for ObjectScale等の複数製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-3518 2026-05-7 12:06 2026-04-20 Show GitHub Exploit DB Packet Storm
3393 7.2 重要
Network
Progress Software Corporation ECS Connection Manager
loadmaster
Connection Manager for ObjectScale
Progress Software CorporationのConnection Manager for ObjectScale等の複数製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-3519 2026-05-7 12:06 2026-04-20 Show GitHub Exploit DB Packet Storm
3394 8.1 重要
Network
FreeBSD FreeBSD FreeBSDにおける複数の脆弱性 CWE-122
CWE-130
CVE-2026-35547 2026-05-7 12:06 2026-04-30 Show GitHub Exploit DB Packet Storm
3395 7.5 重要
Network
libsndfile project libsndfile libsndfile projectのlibsndfileにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-37555 2026-05-7 12:06 2026-04-29 Show GitHub Exploit DB Packet Storm
3396 6.5 警告
Network
Grokability, Inc. Snipe-IT Grokability, Inc.のSnipe-ITにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-38533 2026-05-7 12:05 2026-04-14 Show GitHub Exploit DB Packet Storm
3397 7.5 重要
Network
Apache Software Foundation ActiveMQ Broker
Apache ActiveMQ
Apache Software FoundationのApache ActiveMQ等の複数製品におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-39304 2026-05-7 12:05 2026-04-10 Show GitHub Exploit DB Packet Storm
3398 6.5 警告
Network
OpenBao OpenBao OpenBaoにおける複数の脆弱性 CWE-400
CWE-674
CWE-770
CVE-2026-39396 2026-05-7 12:05 2026-04-21 Show GitHub Exploit DB Packet Storm
3399 7.8 重要
Local
FreeBSD FreeBSD FreeBSDにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-39457 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
3400 10 緊急
Network
traefik traefik traefikにおける複数の脆弱性 CWE-290
CWE-306
CVE-2026-39858 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306671 - michau_enterprises sensesites_commonsense_cms SQL injection vulnerability in article.php in SenseSites CommonSense CMS allows remote attackers to execute arbitrary SQL commands via the article_id parameter. CWE-89
SQL Injection
CVE-2010-5037 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306672 - iscripts eswap SQL injection vulnerability in addsale.php in iScripts eSwap 2.0 allows remote attackers to execute arbitrary SQL commands via the type parameter. CWE-89
SQL Injection
CVE-2010-5036 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306673 - iscripts eswap Cross-site scripting (XSS) vulnerability in search.php in iScripts eSwap 2.0 allows remote attackers to inject arbitrary web script or HTML via the txtHomeSearch parameter (aka the search field). NO… CWE-79
Cross-site Scripting
CVE-2010-5035 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306674 - iscripts easybiller SQL injection vulnerability in viewhistorydetail.php in iScripts EasyBiller 1.1 allows remote attackers to execute arbitrary SQL commands via the planid parameter. CWE-89
SQL Injection
CVE-2010-5034 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306675 - fusebox fusebox SQL injection vulnerability in ProductList.cfm in Fusebox 5.5.1 allows remote attackers to execute arbitrary SQL commands via the CatDisplay parameter. CWE-89
SQL Injection
CVE-2010-5033 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306676 - tamlyncreative com_bfquiztrial SQL injection vulnerability in the BF Quiz (com_bfquiztrial) component before 1.3.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a bfquiztrial acti… CWE-89
SQL Injection
CVE-2010-5032 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306677 - filenice filenice Cross-site scripting (XSS) vulnerability in index.php in fileNice 1.1 allows remote attackers to inject arbitrary web script or HTML via the sstring parameter (aka the Search Box). NOTE: some of the… CWE-79
Cross-site Scripting
CVE-2010-5031 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306678 - codefabrik ecomat_cms Cross-site scripting (XSS) vulnerability in index.php in Ecomat CMS 5.0 allows remote attackers to inject arbitrary web script or HTML via the lang parameter in a web action. CWE-79
Cross-site Scripting
CVE-2010-5030 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306679 - codefabrik ecomat_cms SQL injection vulnerability in index.php in Ecomat CMS 5.0 allows remote attackers to execute arbitrary SQL commands via the show parameter in a web action. CWE-89
SQL Injection
CVE-2010-5029 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306680 - harmistechnology com_jejob SQL injection vulnerability in the JExtensions JE Job (com_jejob) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in an item action to inde… CWE-89
SQL Injection
CVE-2010-5028 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm