Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4241 8.2 重要
Network
デル PowerFlex Rack
PowerFlex appliance Intelligent Catalog Software
PowerFlex Manager
デルのPowerFlex appliance Intelligent Catalog Software等の複数製品におけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2025-26483 2026-05-28 14:33 2026-05-22 Show GitHub Exploit DB Packet Storm
4242 6.5 警告
Adjacent
デル PowerFlex Rack
PowerFlex appliance Intelligent Catalog Software
PowerFlex Manager
デルのPowerFlex appliance Intelligent Catalog Software等の複数製品における証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2025-32745 2026-05-28 14:33 2026-05-22 Show GitHub Exploit DB Packet Storm
4243 5.5 警告
Local
デル PowerFlex Rack
PowerFlex appliance Intelligent Catalog Software
PowerFlex Manager
デルのPowerFlex appliance Intelligent Catalog Software等の複数製品における重要な情報のセキュアでない格納に関する脆弱性 CWE-922
重要な情報のセキュアでない格納
CVE-2025-32746 2026-05-28 14:33 2026-05-22 Show GitHub Exploit DB Packet Storm
4244 7.8 重要
Local
デル PowerFlex Rack
PowerFlex appliance Intelligent Catalog Software
PowerFlex Manager
デルのPowerFlex appliance Intelligent Catalog Software等の複数製品における不適切な権限設定に関する脆弱性 CWE-266
不適切な権限設定
CVE-2025-32747 2026-05-28 14:33 2026-05-22 Show GitHub Exploit DB Packet Storm
4245 7.5 重要
Network
デル PowerFlex Rack
PowerFlex appliance Intelligent Catalog Software
PowerFlex Manager
デルのPowerFlex appliance Intelligent Catalog Software等の複数製品における不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2025-32749 2026-05-28 14:33 2026-05-22 Show GitHub Exploit DB Packet Storm
4246 5.5 警告
Local
デル PowerFlex Rack
PowerFlex appliance Intelligent Catalog Software
PowerFlex Manager
デルのPowerFlex appliance Intelligent Catalog Software等の複数製品における重要な情報のセキュアでない格納に関する脆弱性 CWE-922
重要な情報のセキュアでない格納
CVE-2025-32751 2026-05-28 14:33 2026-05-22 Show GitHub Exploit DB Packet Storm
4247 5.5 警告
Local
デル PowerFlex Rack
PowerFlex appliance Intelligent Catalog Software
PowerFlex Manager
デルのPowerFlex appliance Intelligent Catalog Software等の複数製品における暗号アルゴリズムの使用に関する脆弱性 CWE-327
不完全、または危険な暗号アルゴリズムの使用
CVE-2025-46371 2026-05-28 14:33 2026-05-22 Show GitHub Exploit DB Packet Storm
4248 6.5 警告
Network
Splunk Splunk AI Toolkit SplunkのSplunk AI Toolkitにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-20238 2026-05-28 14:33 2026-05-20 Show GitHub Exploit DB Packet Storm
4249 7.5 重要
Network
NVIDIA NVIDIA TensorRT NVIDIAのNVIDIA TensorRTにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-24188 2026-05-28 14:33 2026-05-20 Show GitHub Exploit DB Packet Storm
4250 5.3 警告
Network
Dropbox Erlang SAML library Lexi Wilson (arekinath)等の複数ベンダの製品におけるXML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2026-28809 2026-05-28 14:33 2026-03-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
344661 - alan_ward a-cart A-CART 2.0 stores the acart2_0.mdb file under the web document root with insufficient access control, which allows remote attackers to obtain username and password information. NVD-CWE-Other
CVE-2006-2948 2018-10-19 01:44 2006-06-13 Show GitHub Exploit DB Packet Storm
344662 - mybulletinboard mybulletinboard Cross-site scripting (XSS) vulnerability in private.php in MyBB 1.1.2 allows remote attackers to inject arbitrary web script or HTML via the do parameter. NVD-CWE-Other
CVE-2006-2949 2018-10-19 01:44 2006-06-13 Show GitHub Exploit DB Packet Storm
344663 - mybulletinboard mybulletinboard This vulnerability is addressed in the following product release: MyBB, MyBB, 1.1.3 NVD-CWE-Other
CVE-2006-2949 2018-10-19 01:44 2006-06-13 Show GitHub Exploit DB Packet Storm
344664 - npds npds Net Portal Dynamic System (NPDS) 5.10 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) header.php, (2) contact.php, or (3) forum_extender.php, which rev… CWE-200
Information Exposure
CVE-2006-2950 2018-10-19 01:44 2006-06-13 Show GitHub Exploit DB Packet Storm
344665 - npds npds Multiple cross-site scripting (XSS) vulnerabilities in Net Portal Dynamic System (NPDS) 5.10 and earlier allow remote attackers to inject arbitrary web script and HTML via the (1) Titlesitename or (2… CWE-79
Cross-site Scripting
CVE-2006-2951 2018-10-19 01:44 2006-06-13 Show GitHub Exploit DB Packet Storm
344666 - net_portal_dynamic_system net_portal_dynamic_system Directory traversal vulnerability in Net Portal Dynamic System (NPDS) 5.10 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) sequence and trailing null (%00) byte in the … NVD-CWE-Other
CVE-2006-2952 2018-10-19 01:44 2006-06-13 Show GitHub Exploit DB Packet Storm
344667 - snitz_communications snitz_forums_2000 SQL injection vulnerability in inc_header.asp in Snitz Forum 3.4.05 and earlier allows remote attackers to execute arbitrary SQL commands via the %strCookieURL%.GROUP parameter in a cookie. NVD-CWE-Other
CVE-2006-2959 2018-10-19 01:44 2006-06-13 Show GitHub Exploit DB Packet Storm
344668 - joomla joomla PHP remote file inclusion vulnerability in includes/joomla.php in Joomla! 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the includepath parameter. NVD-CWE-Other
CVE-2006-2960 2018-10-19 01:44 2006-06-13 Show GitHub Exploit DB Packet Storm
344669 - it-direkt cabacos_web_cms Cross-site scripting (XSS) vulnerability in Suchergebnisse.asp in Cabacos Web CMS 3.8.498 and earlier allows remote attackers to inject arbitrary web script or HTML via the suchtext parameter. NVD-CWE-Other
CVE-2006-2963 2018-10-19 01:44 2006-06-13 Show GitHub Exploit DB Packet Storm
344670 - xtreme_scripts download_manager Multiple PHP remote file inclusion vulnerabilities in Xtreme Scripts Download Manager (aka Xtreme Downloads) 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the root parameter i… NVD-CWE-Other
CVE-2006-2964 2018-10-19 01:44 2006-06-13 Show GitHub Exploit DB Packet Storm