Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
611 8.8 重要
Network
Jenkins プロジェクト Script Security JenkinsのScript Securityにおける保護メカニズムの不具合に関する脆弱性 New CWE-693
保護メカニズムの不具合
CVE-2026-57280 2026-06-29 11:09 2026-06-24 Show GitHub Exploit DB Packet Storm
612 5 警告
Network
Jenkins プロジェクト Git Client JenkinsのGit ClientにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-57282 2026-06-29 11:09 2026-06-24 Show GitHub Exploit DB Packet Storm
613 4.3 警告
Network
Jenkins プロジェクト pipeline: groovy Jenkinsのpipeline: groovyにおけるクロスサイトリクエストフォージェリの脆弱性 New CWE-352
同一生成元ポリシー違反
CVE-2026-57283 2026-06-29 11:09 2026-06-24 Show GitHub Exploit DB Packet Storm
614 4.3 警告
Network
Jenkins プロジェクト pipeline: groovy Jenkinsのpipeline: groovyにおけるクラスまたはコードを選択する外部から制御された入力の使用に関する脆弱性 New CWE-470
クラスまたはコードを選択する外部から制御された入力の使用
CVE-2026-57284 2026-06-29 11:09 2026-06-24 Show GitHub Exploit DB Packet Storm
615 4.3 警告
Network
Jenkins プロジェクト GitHub Branch Source JenkinsのGitHub Branch Sourceにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-57285 2026-06-29 11:09 2026-06-24 Show GitHub Exploit DB Packet Storm
616 4.3 警告
Network
Jenkins プロジェクト Git Parameter JenkinsのGit Parameterにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-57286 2026-06-29 11:09 2026-06-24 Show GitHub Exploit DB Packet Storm
617 4.3 警告
Network
Jenkins プロジェクト Job Configuration History JenkinsのJob Configuration Historyにおける重要な情報の平文保存に関する脆弱性 New CWE-312
重要な情報の平文保存
CVE-2026-57287 2026-06-29 11:09 2026-06-24 Show GitHub Exploit DB Packet Storm
618 3.7
Network
Jenkins プロジェクト Active Directory JenkinsのActive DirectoryにおけるLDAP インジェクションの脆弱性 New CWE-90
LDAP インジェクション
CVE-2026-57288 2026-06-29 11:09 2026-06-24 Show GitHub Exploit DB Packet Storm
619 4.8 警告
Network
Jenkins プロジェクト bitbucket push and pull request Jenkinsのbitbucket push and pull requestにおける証明書検証に関する脆弱性 New CWE-295
不正な証明書検証
CVE-2026-57289 2026-06-29 11:09 2026-06-24 Show GitHub Exploit DB Packet Storm
620 4.3 警告
Network
Jenkins プロジェクト contrast continuous application security Jenkinsのcontrast continuous application securityにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-57297 2026-06-29 11:09 2026-06-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
354141 - crackalaka crackalaka The hash_strcmp function in hasch.c in Crackalaka 1.0.8 allows remote attackers to cause a denial of service (crash) via large malformed strings. NVD-CWE-Other
CVE-2004-1919 2017-07-11 10:31 2004-04-9 Show GitHub Exploit DB Packet Storm
354142 - x-micro wlan_11b_broadband_router_firmware X-Micro WLAN 11b Broadband Router 1.2.2, 1.2.2.3, 1.2.2.4, and 1.6.0.0 has a hardcoded "super" username and password, which could allow remote attackers to gain access. NVD-CWE-Other
CVE-2004-1920 2017-07-11 10:31 2004-04-10 Show GitHub Exploit DB Packet Storm
354143 - x-micro wlan_11b_broadband_router_firmware X-Micro WLAN 11b Broadband Router 1.6.0.1 has a hardcoded "1502" username and password, which could allow remote attackers to gain access. NVD-CWE-Other
CVE-2004-1921 2017-07-11 10:31 2004-04-10 Show GitHub Exploit DB Packet Storm
354144 - tiki tikiwiki_cms\/groupware Tiki CMS/Groupware (TikiWiki) 1.8.1 and earlier allows remote attackers to gain sensitive information via a direct request to (1) banner_click.php, (2) categorize.php, (3) tiki-admin_include_director… CWE-200
Information Exposure
CVE-2004-1923 2017-07-11 10:31 2004-04-11 Show GitHub Exploit DB Packet Storm
354145 - tiki tikiwiki_cms\/groupware Directory traversal vulnerability in the map feature (tiki-map.phtml) in Tiki CMS/Groupware (TikiWiki) 1.8.1 and earlier allows remote attackers to determine the existence of arbitrary files via .. (… CWE-22
Path Traversal
CVE-2004-1927 2017-07-11 10:31 2004-04-11 Show GitHub Exploit DB Packet Storm
354146 - tiki tikiwiki_cms\/groupware Multiple cross-site scripting (XSS) vulnerabilities in Tiki CMS/Groupware (TikiWiki) 1.8.1 and earlier allow remote attackers to inject arbitrary web script or HTML via via the (1) theme parameter to… CWE-79
Cross-site Scripting
CVE-2004-1924 2017-07-11 10:31 2004-04-11 Show GitHub Exploit DB Packet Storm
354147 - tiki tikiwiki_cms\/groupware Multiple SQL injection vulnerabilities in Tiki CMS/Groupware (TikiWiki) 1.8.1 and earlier allow remote attackers to execute arbitrary SQL commands via the sort_mode parameter in (1) tiki-usermenu.php… CWE-89
SQL Injection
CVE-2004-1925 2017-07-11 10:31 2004-04-12 Show GitHub Exploit DB Packet Storm
354148 - tiki tikiwiki_cms\/groupware The image upload feature in Tiki CMS/Groupware (TikiWiki) 1.8.1 and earlier allows remote attackers to upload and possibly execute arbitrary files via the img/wiki_up URL. CWE-20
 Improper Input Validation 
CVE-2004-1928 2017-07-11 10:31 2004-04-12 Show GitHub Exploit DB Packet Storm
354149 - francisco_burzi php-nuke SQL injection vulnerability in the bblogin function in functions.php in PHP-Nuke 6.x through 7.2 allows remote attackers to bypass authentication and gain access by injecting base64-encoded SQL code … NVD-CWE-Other
CVE-2004-1929 2017-07-11 10:31 2004-04-13 Show GitHub Exploit DB Packet Storm
354150 - francisco_burzi php-nuke Cross-site scripting (XSS) vulnerability in the cookiedecode function in mainfile.php for PHP-Nuke 6.x through 7.2, when themes are used, allows remote attackers to inject arbitrary web script or HTM… NVD-CWE-Other
CVE-2004-1930 2017-07-11 10:31 2004-04-12 Show GitHub Exploit DB Packet Storm