Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 12:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3501 8.8 重要
Network
DataEase DataEase DataEaseにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-33121 2026-04-21 10:49 2026-04-16 Show GitHub Exploit DB Packet Storm
3502 9.8 緊急
Network
DataEase DataEase DataEaseにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-33122 2026-04-21 10:49 2026-04-16 Show GitHub Exploit DB Packet Storm
3503 8.8 重要
Network
DataEase DataEase DataEaseにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-33207 2026-04-21 10:49 2026-04-16 Show GitHub Exploit DB Packet Storm
3504 6.7 警告
Local
Acronis International GmbH True Image Acronis International GmbHのTrue Imageにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-33271 2026-04-21 10:49 2026-04-2 Show GitHub Exploit DB Packet Storm
3505 9.1 緊急
Network
lollms lollms web ui lollmsのlollms web uiにおける複数の脆弱性 CWE-306
CWE-918
CVE-2026-33340 2026-04-21 10:49 2026-03-24 Show GitHub Exploit DB Packet Storm
3506 7.2 重要
Network
JetBrains YouTrack JetBrainsのYouTrackにおけるテンプレートエンジンで使用される特殊な要素の不適切な無効化に関する脆弱性 CWE-1336
テンプレートエンジンで使用される特殊な要素の不適切な無効化
CVE-2026-33392 2026-04-21 10:49 2026-04-17 Show GitHub Exploit DB Packet Storm
3507 6.3 警告
Network
Check MK Check MK Check MKにおける区切り文字の不適切な無害化に関する脆弱性 CWE-140
区切り文字の不適切な無害化
CVE-2026-33455 2026-04-21 10:49 2026-04-10 Show GitHub Exploit DB Packet Storm
3508 7.6 重要
Network
Check MK Check MK Check MKにおける区切り文字の不適切な無害化に関する脆弱性 CWE-140
区切り文字の不適切な無害化
CVE-2026-33456 2026-04-21 10:49 2026-04-10 Show GitHub Exploit DB Packet Storm
3509 6.3 警告
Network
Check MK Check MK Check MKにおける区切り文字の不適切な無害化に関する脆弱性 CWE-140
区切り文字の不適切な無害化
CVE-2026-33457 2026-04-21 10:48 2026-04-10 Show GitHub Exploit DB Packet Storm
3510 7.5 重要
Network
goxmldsig project goxmldsig goxmldsig projectのgoxmldsigにおける複数の脆弱性 CWE-347
CWE-682
CVE-2026-33487 2026-04-21 10:48 2026-03-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347781 - johnmccollum com_advertising Directory traversal vulnerability in the Advertising (com_advertising) component 0.25 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (… CWE-22
Path Traversal
CVE-2010-1473 2010-06-11 13:00 2010-04-20 Show GitHub Exploit DB Packet Storm
347782 - alphaplug com_alphauserpoints Directory traversal vulnerability in the AlphaUserPoints (com_alphauserpoints) component 1.5.5 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact v… CWE-22
Path Traversal
CVE-2010-1476 2010-06-11 13:00 2010-04-20 Show GitHub Exploit DB Packet Storm
347783 - martin_hess com_sermonspeaker SQL injection vulnerability in the SermonSpeaker (com_sermonspeaker) component before 3.2.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a latest_serm… CWE-89
SQL Injection
CVE-2010-1477 2010-06-11 13:00 2010-04-20 Show GitHub Exploit DB Packet Storm
347784 - ternaria com_jfeedback Directory traversal vulnerability in the Ternaria Informatica Jfeedback! (com_jfeedback) component 1.2 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other … CWE-22
Path Traversal
CVE-2010-1478 2010-06-11 13:00 2010-04-20 Show GitHub Exploit DB Packet Storm
347785 - rockettheme com_rokmodule SQL injection vulnerability in the RokModule (com_rokmodule) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the moduleid parameter in a raw action to index.ph… CWE-89
SQL Injection
CVE-2010-1479 2010-06-11 13:00 2010-04-20 Show GitHub Exploit DB Packet Storm
347786 - pligg pligg_cms Multiple cross-site request forgery (CSRF) vulnerabilities in Pligg before 1.0.3 allow remote attackers to hijack the authentication of administrators for requests that create user accounts or have u… CWE-352
 Origin Validation Error
CVE-2009-4787 2010-06-11 13:00 2010-04-21 Show GitHub Exploit DB Packet Storm
347787 - shape5 bridge_of_hope_template SQL injection vulnerability in the Shape5 Bridge of Hope template for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an article action to index.php. CWE-89
SQL Injection
CVE-2010-2254 2010-06-10 13:00 2010-06-10 Show GitHub Exploit DB Packet Storm
347788 - tamlyncreative com_bfsurvey_profree
com_bfsurvey_pro
com_bfsurvey_basic
SQL injection vulnerability in the BF Survey Pro (com_bfsurvey_pro) component before 1.3.1, BF Survey Pro Free (com_bfsurvey_profree) component 1.2.6, and BF Survey Basic component before 1.2 for Joo… CWE-89
SQL Injection
CVE-2010-2255 2010-06-10 13:00 2010-06-10 Show GitHub Exploit DB Packet Storm
347789 - payperviewvideosoftware pay_per_minute_video_chat_script Multiple cross-site scripting (XSS) vulnerabilities in Pay Per Minute Video Chat Script 2.0 and 2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to admin/mem… CWE-79
Cross-site Scripting
CVE-2010-2256 2010-06-10 13:00 2010-06-10 Show GitHub Exploit DB Packet Storm
347790 - payperviewvideosoftware pay_per_minute_video_chat_script SQL injection vulnerability in index_ie.php in Pay Per Minute Video Chat Script 2.0 and 2.1 allows remote attackers to execute arbitrary SQL commands via the page parameter. CWE-89
SQL Injection
CVE-2010-2257 2010-06-10 13:00 2010-06-10 Show GitHub Exploit DB Packet Storm