Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
411 5.4 警告
Network
appsmith appsmith appsmithにおけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-7299 2026-06-8 11:44 2026-06-2 Show GitHub Exploit DB Packet Storm
412 7.5 重要
Network
Progress Software Corporation Sitefinity Progress Software CorporationのSitefinityにおける認証情報の不十分な保護に関する脆弱性 New CWE-522
認証情報の不十分な保護
CVE-2026-7312 2026-06-8 11:44 2026-06-2 Show GitHub Exploit DB Packet Storm
413 4.9 警告
Network
Progress Software Corporation Sitefinity Progress Software CorporationのSitefinityにおける認証情報の不十分な保護に関する脆弱性 New CWE-522
認証情報の不十分な保護
CVE-2026-7313 2026-06-8 11:44 2026-06-2 Show GitHub Exploit DB Packet Storm
414 8.8 重要
Network
SmarterTools Inc. SmarterMail SmarterTools Inc.のSmarterMailにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-7807 2026-06-8 11:44 2026-05-8 Show GitHub Exploit DB Packet Storm
415 5.5 警告
Local
Python Packaging Authority pip Python Packaging Authorityのpipにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-8643 2026-06-8 11:44 2026-06-1 Show GitHub Exploit DB Packet Storm
416 9.1 緊急
Network
IBM IBM WebSphere Application Server IBMのIBM WebSphere Application Serverにおけるスプーフィングによる認証回避に関する脆弱性 New CWE-290
スプーフィングによる認証回避
CVE-2026-8644 2026-06-8 11:44 2026-06-1 Show GitHub Exploit DB Packet Storm
417 9.8 緊急
Network
F5 Networks njs F5 Networksのnjsにおけるヒープベースのバッファオーバーフローの脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-8711 2026-06-8 11:44 2026-05-19 Show GitHub Exploit DB Packet Storm
418 9 緊急
Network
IBM IBM WebSphere Application Server IBMのIBM WebSphere Application Serverにおけるコードインジェクションの脆弱性 New CWE-94
コード・インジェクション
CVE-2026-9311 2026-06-8 11:44 2026-06-1 Show GitHub Exploit DB Packet Storm
419 9 緊急
Network
IBM IBM WebSphere Application Server IBMのIBM WebSphere Application Serverにおける信頼できないデータのデシリアライゼーションに関する脆弱性 New CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-9319 2026-06-8 11:44 2026-06-1 Show GitHub Exploit DB Packet Storm
420 8.5 重要
Network
IBM IBM WebSphere Application Server IBMのIBM WebSphere Application Serverにおける信頼できないデータのデシリアライゼーションに関する脆弱性 New CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-9330 2026-06-8 11:44 2026-06-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
258161 9.8 CRITICAL
Network
veronalabs wp_statistics The wp-statistics plugin before 12.0.8 for WordPress has SQL injection. CWE-89
SQL Injection
CVE-2017-18515 2024-11-21 12:20 2019-08-14 Show GitHub Exploit DB Packet Storm
258162 6.1 MEDIUM
Network
backup-guard backup_guard The Backup Guard plugin before 1.1.47 for WordPress has multiple XSS issues. CWE-79
Cross-site Scripting
CVE-2017-18488 2024-11-21 12:20 2019-08-14 Show GitHub Exploit DB Packet Storm
258163 6.1 MEDIUM
Network
google_adsense_project google_adsense The adsense-plugin (aka Google AdSense) plugin before 1.44 for WordPress has multiple XSS issues. CWE-79
Cross-site Scripting
CVE-2017-18487 2024-11-21 12:20 2019-08-14 Show GitHub Exploit DB Packet Storm
258164 6.1 MEDIUM
Network
3cx live_chat The wp-live-chat-support plugin before 7.1.05 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2017-18507 2024-11-21 12:20 2019-08-14 Show GitHub Exploit DB Packet Storm
258165 6.1 MEDIUM
Network
presstigers simple_job_board The simple-job-board plugin before 2.4.4 for WordPress has reflected XSS via keyword search. CWE-79
Cross-site Scripting
CVE-2017-18498 2024-11-21 12:20 2019-08-14 Show GitHub Exploit DB Packet Storm
258166 6.1 MEDIUM
Network
w3eden live_forms The liveforms plugin before 3.4.0 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2017-18497 2024-11-21 12:20 2019-08-14 Show GitHub Exploit DB Packet Storm
258167 6.1 MEDIUM
Network
bestwebsoft htaccess The htaccess plugin before 1.7.6 for WordPress has multiple XSS issues. CWE-79
Cross-site Scripting
CVE-2017-18496 2024-11-21 12:20 2019-08-14 Show GitHub Exploit DB Packet Storm
258168 6.1 MEDIUM
Network
mediaburst gravity_forms The gravity-forms-sms-notifications plugin before 2.4.0 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2017-18495 2024-11-21 12:20 2019-08-14 Show GitHub Exploit DB Packet Storm
258169 6.1 MEDIUM
Network
bestwebsoft custom_search The custom-search-plugin plugin before 1.36 for WordPress has multiple XSS issues. CWE-79
Cross-site Scripting
CVE-2017-18494 2024-11-21 12:20 2019-08-14 Show GitHub Exploit DB Packet Storm
258170 6.1 MEDIUM
Network
bestwebsoft custom_admin_page The custom-admin-page plugin before 0.1.2 for WordPress has multiple XSS issues. CWE-79
Cross-site Scripting
CVE-2017-18493 2024-11-21 12:20 2019-08-14 Show GitHub Exploit DB Packet Storm