Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191431 7 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品における権限を昇格される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-8561 2017-07-18 16:48 2017-07-11 Show GitHub Exploit DB Packet Storm
191432 6.1 警告
Network
マイクロソフト - Microsoft Exchange Server 2013 および 2016 における権限を昇格される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-8560 2017-07-18 16:48 2017-07-11 Show GitHub Exploit DB Packet Storm
191433 6.1 警告
Network
マイクロソフト - Microsoft Exchange Server 2013 および 2016 における権限を昇格される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-8559 2017-07-18 16:48 2017-07-11 Show GitHub Exploit DB Packet Storm
191434 7.5 重要
Network
マイクロソフト - 複数の Microsoft Windows 製品における認証の拡張保護を回避される脆弱性 CWE-287
不適切な認証
CVE-2017-8495 2017-07-18 16:48 2017-07-11 Show GitHub Exploit DB Packet Storm
191435 4.7 警告
Local
マイクロソフト - 複数の Microsoft Windows 製品における情報を公開される脆弱性 CWE-200
情報漏えい
CVE-2017-8486 2017-07-18 16:48 2017-07-11 Show GitHub Exploit DB Packet Storm
191436 8.8 重要
Network
マイクロソフト - Microsoft SharePoint Enterprise Server 2016 における権限を昇格される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-8569 2017-07-18 16:39 2017-07-11 Show GitHub Exploit DB Packet Storm
191437 7 重要
Local
マイクロソフト - Microsoft Windows 10 および Windows Server 2016 における権限を昇格される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-8566 2017-07-18 16:39 2017-07-11 Show GitHub Exploit DB Packet Storm
191438 7.5 重要
Network
マイクロソフト - Microsoft Windows 10 および Windows Server 2016 の Microsoft Edge におけるリモートでコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-8619 2017-07-18 16:26 2017-07-11 Show GitHub Exploit DB Packet Storm
191439 9.8 緊急
Network
マイクロソフト - 複数の Microsoft Windows 製品におけるリモートでコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-8589 2017-07-18 16:09 2017-07-11 Show GitHub Exploit DB Packet Storm
191440 6.5 警告
Network
マイクロソフト - 複数の Microsoft Windows 製品の Windows Explorer におけるサービス運用妨害 (DoS) の脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-8587 2017-07-18 16:09 2017-07-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
451 7.8 HIGH
Local
- - Argus Surveillance DVR 4.0 contains an unquoted service path vulnerability in the DVRWatchdog service that allows local attackers to escalate privileges by exploiting the service binary path. Attacke… New CWE-428
 Unquoted Search Path or Element
CVE-2021-47945 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
452 7.5 HIGH
Network
- - memono Notepad 4.2 contains a denial of service vulnerability that allows attackers to crash the application by pasting excessively long character buffers into note fields. Attackers can generate a p… New CWE-789
 Memory Allocation with Excessive Size Value
CVE-2021-47944 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
453 8.8 HIGH
Network
- - TextPattern CMS 4.8.7 contains a remote code execution vulnerability that allows authenticated attackers to execute arbitrary commands by uploading malicious PHP files through the file upload functio… New CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2021-47943 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
454 8.2 HIGH
Network
- - WordPress Plugin Survey & Poll 1.5.7.3 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the wp_sap co… New CWE-89
SQL Injection
CVE-2021-47941 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
455 9.8 CRITICAL
Network
- - WordPress Plugin Download From Files version 1.48 and earlier contains an arbitrary file upload vulnerability that allows unauthenticated attackers to upload malicious files by exploiting the AJAX fi… New CWE-306
Missing Authentication for Critical Function
CVE-2021-47940 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
456 8.8 HIGH
Network
- - Evolution CMS 3.1.6 contains a remote code execution vulnerability that allows authenticated users with module creation permissions to execute arbitrary system commands by injecting PHP code into mod… New CWE-94
Code Injection
CVE-2021-47939 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
457 8.8 HIGH
Network
- - ImpressCMS 1.4.2 contains a remote code execution vulnerability in the autotasks administrative interface that allows authenticated attackers to execute arbitrary PHP code by injecting malicious code… New CWE-94
Code Injection
CVE-2021-47938 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
458 8.8 HIGH
Network
- - e107 CMS 2.3.0 contains a remote code execution vulnerability that allows authenticated users with theme installation permissions to execute arbitrary commands by uploading malicious theme files. Att… New CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2021-47937 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
459 9.8 CRITICAL
Network
- - OpenCATS 0.9.4 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary commands by uploading malicious PHP files disguised as resume attachments. Att… New CWE-306
Missing Authentication for Critical Function
CVE-2021-47936 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
460 8.8 HIGH
Network
- - Sentry 8.2.0 contains a remote code execution vulnerability that allows authenticated superusers to execute arbitrary commands by injecting malicious pickle-serialized objects through the audit log e… New CWE-94
Code Injection
CVE-2021-47935 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm