Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 10:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
821 7.2 重要
Network
オラクル Oracle HR Intelligence オラクルのOracle HR Intelligenceにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-46970 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
822 7.5 重要
Network
オラクル Oracle HR Intelligence オラクルのOracle HR Intelligenceにおける複数の脆弱性 CWE-269
CWE-284
CVE-2026-46971 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
823 8.8 重要
Network
オラクル Oracle Outsourced Manufacturing for Discrete Industries オラクルのOracle Outsourced Manufacturing for Discrete Industriesにおける複数の脆弱性 CWE-269
CWE-287
CWE-306
CVE-2026-46972 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
824 8.8 重要
Network
オラクル Oracle Outsourced Manufacturing for Discrete Industries オラクルのOracle Outsourced Manufacturing for Discrete Industriesにおける複数の脆弱性 CWE-269
CWE-287
CWE-306
CVE-2026-46973 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
825 7.2 重要
Network
オラクル Public Sector Payroll オラクルのPublic Sector Payrollにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-46976 2026-06-22 11:33 2026-06-17 Show GitHub Exploit DB Packet Storm
826 4.4 警告
Network
metal3 ip-address-manager Metal3のip-address-managerにおける不要な特権による実行に関する脆弱性 CWE-250
不要な特権による実行
CVE-2026-47190 2026-06-22 11:32 2026-06-12 Show GitHub Exploit DB Packet Storm
827 9.1 緊急
Network
i18next i18next-fs-backend i18nextのi18next-fs-backendにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-48713 2026-06-22 11:32 2026-06-15 Show GitHub Exploit DB Packet Storm
828 9.1 緊急
Network
i18next i18next-http-middleware i18nextのi18next-http-middlewareにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-48714 2026-06-22 11:32 2026-06-15 Show GitHub Exploit DB Packet Storm
829 9.1 緊急
Network
Apache Software Foundation Airflow SFTP Providers (apache-airflow-providers-sftp) Apache Software FoundationのAirflow SFTP Providers (apache-airflow-providers-sftp)におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-50203 2026-06-22 11:32 2026-06-17 Show GitHub Exploit DB Packet Storm
830 7.5 重要
Network
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 22h2
Microsoft …
Windows NTLM のなりすましの脆弱性 CWE-200
CWE-noinfo
CVE-2026-50508 2026-06-22 11:32 2026-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 26, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
343631 - phpalbum.net phpalbum PHP remote file inclusion vulnerability in sommaire_admin.php in PhpAlbum (mod_phpalbum) 2.15 for PortailPHP allows remote attackers to execute arbitrary PHP code via a URL in the chemin parameter, a… NVD-CWE-Other
CVE-2006-4498 2018-10-18 06:37 2006-09-1 Show GitHub Exploit DB Packet Storm
343632 - ztml ezportal_ztml_cms Cross-site scripting (XSS) vulnerability in index.php in ezPortal/ztml CMS 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) about, (2) again, (3) lastname, (4) email, (5… NVD-CWE-Other
CVE-2006-4500 2018-10-18 06:37 2006-09-1 Show GitHub Exploit DB Packet Storm
343633 - ztml ezportal_ztml_cms SQL injection vulnerability in index.php in ezPortal/ztml CMS 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) about, (2) album, (3) id, (4) use, (5) desc, (6) doc, (7) mname… NVD-CWE-Other
CVE-2006-4501 2018-10-18 06:37 2006-09-1 Show GitHub Exploit DB Packet Storm
343634 - ztml ezportal_ztml_cms ezPortal/ztml CMS 1.0 allows remote attackers to bypass authentication controls via a direct request to the "Administration Area" script. NVD-CWE-Other
CVE-2006-4502 2018-10-18 06:37 2006-09-1 Show GitHub Exploit DB Packet Storm
343635 - nx5 nx5linx Directory traversal vulnerability in link.php in NX5Linx 1.0 allows remote attackers to read arbitrary files via the logo parameter. NVD-CWE-Other
CVE-2006-4503 2018-10-18 06:37 2006-09-1 Show GitHub Exploit DB Packet Storm
343636 - nx5 nx5linx SQL injection vulnerability in NX5Linx 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) c and (2) l parameters. NVD-CWE-Other
CVE-2006-4504 2018-10-18 06:37 2006-09-1 Show GitHub Exploit DB Packet Storm
343637 - nx5 nx5linx CRLF injection vulnerability in links.php in NX5Linx 1.0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a CRLF sequence in the url parameter. NVD-CWE-Other
CVE-2006-4505 2018-10-18 06:37 2006-09-1 Show GitHub Exploit DB Packet Storm
343638 - digiappz freekot Multiple SQL injection vulnerabilities in login_verif.asp in Digiappz Freekot 1.01 allow remote attackers to execute arbitrary SQL commands via the (1) login or (2) password parameters. NOTE: some o… NVD-CWE-Other
CVE-2006-4524 2018-10-18 06:37 2006-09-2 Show GitHub Exploit DB Packet Storm
343639 - membrepass membrepass Multiple cross-site scripting (XSS) vulnerabilities in membrepass 1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) recherche parameter in recherchemembre.php and the (2) … NVD-CWE-Other
CVE-2006-4528 2018-10-18 06:37 2006-09-2 Show GitHub Exploit DB Packet Storm
343640 - membrepass membrepass SQL injection vulnerability in recherchemembre.php in membrepass 1.5. allows remote attackers to execute arbitrary SQL commands via the recherche parameter. NVD-CWE-Other
CVE-2006-4529 2018-10-18 06:37 2006-09-2 Show GitHub Exploit DB Packet Storm