脆弱性一覧
CVE / GHSA / KEV / OSV を統合監視。タグ・カテゴリで絞り込み可能。
| ID | タイトル | |
|---|---|---|
| CVE-2026-12452 |
|
google に 解放後使用 (Use-After-Free) (CVE-2026-12452)
google に 脆弱性 (CVE-2026-12452) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-12438 |
|
google の脆弱性 (CVE-2026-12438)
google に 脆弱性 (CVE-2026-12438) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-12199 |
|
dos の脆弱性 (CVE-2026-12199)
dos に 脆弱性 (CVE-2026-12199) が存在。不正な操作・情報露出のリスクがあります。``nltk.app.wordnet_app`` 経由で攻撃可能。
|
| CVE-2026-0081 |
|
google の脆弱性 (CVE-2026-0081)
google に 脆弱性 (CVE-2026-0081) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-11409 |
|
tp-link に OSコマンドインジェクション (CVE-2026-11409)
tp-link に OSコマンドインジェクション (CVE-2026-11409) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-0068 |
|
google の脆弱性 (CVE-2026-0068)
google に 脆弱性 (CVE-2026-0068) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-11410 |
|
tp-link に OSコマンドインジェクション (CVE-2026-11410)
tp-link に OSコマンドインジェクション (CVE-2026-11410) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-0083 |
|
google の脆弱性 (CVE-2026-0083)
google に 脆弱性 (CVE-2026-0083) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-0063 |
|
google に 権限昇格 (CVE-2026-0063)
google に 脆弱性 (CVE-2026-0063) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-12165 |
|
wordpress に 権限昇格 (CVE-2026-12165)
wordpress に 脆弱性 (CVE-2026-12165) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。``RegistryUserRole`` 経由で攻撃可能。
|
| CVE-2026-12442 |
|
google に 解放後使用 (Use-After-Free) (CVE-2026-12442)
google に 脆弱性 (CVE-2026-12442) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-12441 |
|
google に 解放後使用 (Use-After-Free) (CVE-2026-12441)
google に 脆弱性 (CVE-2026-12441) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-12256 |
|
Contributor PHP Object Injection in Avada <= 3.15.3 versions.
Contributor PHP Object Injection in Avada <= 3.15.3 versions.
|
| CVE-2026-0071 |
|
google の脆弱性 (CVE-2026-0071)
google に 脆弱性 (CVE-2026-0071) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-0082 |
|
google の脆弱性 (CVE-2026-0082)
google に 脆弱性 (CVE-2026-0082) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-12360 |
|
wordpress に SQLインジェクション (CVE-2026-12360)
wordpress に SQLインジェクション (CVE-2026-12360) が存在。機密情報が外部に流出する可能性があります。
|
| CVE-2026-12439 |
|
google に 解放後使用 (Use-After-Free) (CVE-2026-12439)
google に 脆弱性 (CVE-2026-12439) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2025-69162 |
|
Unauthenticated Local File Inclusion in Grecko <= 5.17 versions.
Unauthenticated Local File Inclusion in Grecko <= 5.17 versions.
|
| CVE-2025-69161 |
|
Unauthenticated Local File Inclusion in Snowy <= 1.13 versions.
Unauthenticated Local File Inclusion in Snowy <= 1.13 versions.
|
| CVE-2025-69159 |
|
Unauthenticated Local File Inclusion in Printo <= 1.11 versions.
Unauthenticated Local File Inclusion in Printo <= 1.11 versions.
|
| CVE-2025-69135 |
|
Subscriber SQL Injection in Events Schedule - WordPress Events Calendar Plugin <= 2.7.2 versions.
Subscriber SQL Injection in Events Schedule - WordPress Events Calendar Plugin <= 2.7.2 versions.
|
| CVE-2025-69142 |
|
Unauthenticated Local File Inclusion in Abelle <= 1.22 versions.
Unauthenticated Local File Inclusion in Abelle <= 1.22 versions.
|
| CVE-2025-69136 |
|
Unauthenticated Local File Inclusion in Wanium <= 1.9.8 versions.
Unauthenticated Local File Inclusion in Wanium <= 1.9.8 versions.
|
| CVE-2025-69143 |
|
Unauthenticated Local File Inclusion in Mission <= 1.22 versions.
Unauthenticated Local File Inclusion in Mission <= 1.22 versions.
|
| CVE-2025-69139 |
|
Unauthenticated Arbitrary File Deletion in Car Zone <= 3.7 versions.
Unauthenticated Arbitrary File Deletion in Car Zone <= 3.7 versions.
|
| CVE-2025-69148 |
|
Unauthenticated Local File Inclusion in Quirky <= 1.23 versions.
Unauthenticated Local File Inclusion in Quirky <= 1.23 versions.
|
| CVE-2025-69150 |
|
Unauthenticated Local File Inclusion in Medeus <= 1.14 versions.
Unauthenticated Local File Inclusion in Medeus <= 1.14 versions.
|
| CVE-2025-69173 |
|
Unauthenticated Local File Inclusion in Tipsy <= 1.1 versions.
Unauthenticated Local File Inclusion in Tipsy <= 1.1 versions.
|
| CVE-2025-69176 |
|
Unauthenticated Local File Inclusion in ITactics <= 1.0 versions.
Unauthenticated Local File Inclusion in ITactics <= 1.0 versions.
|
| CVE-2025-69177 |
|
Unauthenticated Local File Inclusion in Roneous <= 2.1.5 versions.
Unauthenticated Local File Inclusion in Roneous <= 2.1.5 versions.
|
| CVE-2025-69147 |
|
Unauthenticated Local File Inclusion in Putter <= 1.17 versions.
Unauthenticated Local File Inclusion in Putter <= 1.17 versions.
|
| CVE-2025-69178 |
|
Unauthenticated Local File Inclusion in Truemag <= 4.3.14.2 versions.
Unauthenticated Local File Inclusion in Truemag <= 4.3.14.2 versions.
|
| CVE-2025-69167 |
|
Unauthenticated Local File Inclusion in Eros <= 1.3 versions.
Unauthenticated Local File Inclusion in Eros <= 1.3 versions.
|
| CVE-2025-69165 |
|
Unauthenticated Local File Inclusion in Choreo <= 1.6 versions.
Unauthenticated Local File Inclusion in Choreo <= 1.6 versions.
|
| CVE-2025-69163 |
|
Unauthenticated Local File Inclusion in WineShop <= 3.17 versions.
Unauthenticated Local File Inclusion in WineShop <= 3.17 versions.
|
| CVE-2025-69168 |
|
Unauthenticated Local File Inclusion in Spike <= 1.2 versions.
Unauthenticated Local File Inclusion in Spike <= 1.2 versions.
|
| CVE-2025-69151 |
|
Unauthenticated Cross Site Scripting (XSS) in Grand Car Rental <= 3.7 versions.
Unauthenticated Cross Site Scripting (XSS) in Grand Car Rental <= 3.7 versions.
|
| CVE-2025-69149 |
|
Unauthenticated Local File Inclusion in Top Dog <= 1.0.5 versions.
Unauthenticated Local File Inclusion in Top Dog <= 1.0.5 versions.
|
| CVE-2025-69171 |
|
Unauthenticated Local File Inclusion in Orpheus <= 1.3 versions.
Unauthenticated Local File Inclusion in Orpheus <= 1.3 versions.
|
| CVE-2025-69172 |
|
Unauthenticated Local File Inclusion in Resurs <= 1.3 versions.
Unauthenticated Local File Inclusion in Resurs <= 1.3 versions.
|
| CVE-2026-0019 |
|
google に 権限昇格 (CVE-2026-0019)
google に 脆弱性 (CVE-2026-0019) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2025-69160 |
|
Unauthenticated Local File Inclusion in Gita <= 1.11 versions.
Unauthenticated Local File Inclusion in Gita <= 1.11 versions.
|
| CVE-2025-69113 |
|
Unauthenticated Local File Inclusion in Nexio <= 1.10.0 versions.
Unauthenticated Local File Inclusion in Nexio <= 1.10.0 versions.
|
| CVE-2025-69105 |
|
Unauthenticated Local File Inclusion in Modernee <= 1.6.0 versions.
Unauthenticated Local File Inclusion in Modernee <= 1.6.0 versions.
|
| CVE-2025-69112 |
|
Unauthenticated Local File Inclusion in Planty <= 1.14.0 versions.
Unauthenticated Local File Inclusion in Planty <= 1.14.0 versions.
|
| CVE-2025-69107 |
|
Unauthenticated Local File Inclusion in Rosaleen <= 2.8 versions.
Unauthenticated Local File Inclusion in Rosaleen <= 2.8 versions.
|
| CVE-2025-69109 |
|
Unauthenticated Local File Inclusion in Raider Spirit <= 1.1.2 versions.
Unauthenticated Local File Inclusion in Raider Spirit <= 1.1.2 versions.
|
| CVE-2025-69119 |
|
Unauthenticated Local File Inclusion in Corbesier <= 1.15.0 versions.
Unauthenticated Local File Inclusion in Corbesier <= 1.15.0 versions.
|
| CVE-2025-60223 |
|
Subscriber Arbitrary File Deletion in WPBot Pro Wordpress Chatbot <= 13.6.5 versions.
Subscriber Arbitrary File Deletion in WPBot Pro Wordpress Chatbot <= 13.6.5 versions.
|
| CVE-2025-69124 |
|
Unauthenticated Local File Inclusion in Especio <= 1.0 versions.
Unauthenticated Local File Inclusion in Especio <= 1.0 versions.
|