Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194331 6.1 警告
Network
Joomla! - Joomla! におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-7987 2017-05-31 16:56 2017-04-25 Show GitHub Exploit DB Packet Storm
194332 6.1 警告
Network
Joomla! - Joomla! におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-7986 2017-05-31 16:56 2017-04-25 Show GitHub Exploit DB Packet Storm
194333 6.1 警告
Network
Joomla! - Joomla! におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-7985 2017-05-31 16:56 2017-04-25 Show GitHub Exploit DB Packet Storm
194334 6.1 警告
Network
Joomla! - Joomla! におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-7984 2017-05-31 16:56 2017-04-25 Show GitHub Exploit DB Packet Storm
194335 5.3 警告
Network
Joomla! - Joomla! における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-7983 2017-05-31 16:56 2017-04-25 Show GitHub Exploit DB Packet Storm
194336 7.5 重要
Network
Hyundai Motor America - Blue Link におけるハードコードされた認証情報の使用に関する脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2017-6054 2017-05-31 16:38 2017-03-8 Show GitHub Exploit DB Packet Storm
194337 3.7
Adjacent
Hyundai Motor America - Blue Link における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-6052 2017-05-31 16:37 2017-03-8 Show GitHub Exploit DB Packet Storm
194338 5.3 警告
Network
MODX - MODX Revolution の setup/processors/url_search.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2017-8115 2017-05-31 15:20 2017-04-22 Show GitHub Exploit DB Packet Storm
194339 9.8 緊急
Network
WIFICAM - Wireless IP Camera WIFICAM デバイスにおける認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-8225 2017-05-31 15:13 2017-03-8 Show GitHub Exploit DB Packet Storm
194340 9.8 緊急
Network
WIFICAM - Wireless IP Camera WIFICAM デバイスにおけるハードコードされた認証情報の使用に関する脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2017-8224 2017-05-31 15:13 2017-03-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1571 8.2 HIGH
Network
- - Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Machine Learning allows an unauthorized attacker to perform spoofing over a network. CWE-74
Injection
CVE-2026-33833 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1572 4.3 MEDIUM
Network
- - User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network. CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-35429 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1573 7.3 HIGH
Local
- - Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. CWE-20
CWE-190
 Improper Input Validation 
 Integer Overflow or Wraparound
CVE-2026-35433 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1574 8.8 HIGH
Local
- - Insufficient granularity of access control in Microsoft Office Click-To-Run allows an authorized attacker to elevate privileges locally. CWE-1220
 Insufficient Granularity of Access Control
CVE-2026-35436 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1575 8.3 HIGH
Network
- - Missing authorization in Windows Admin Center allows an authorized attacker to elevate privileges over a network. CWE-862
 Missing Authorization
CVE-2026-35438 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1576 5.5 MEDIUM
Local
- - Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized attacker to disclose information locally. CWE-552
 Files or Directories Accessible to External Parties
CVE-2026-35440 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1577 8.4 HIGH
Local
- - Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. CWE-416
 Use After Free
CVE-2026-40358 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1578 7.8 HIGH
Local
- - Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. CWE-416
 Use After Free
CVE-2026-40359 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1579 7.8 HIGH
Local
- - Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. CWE-125
Out-of-bounds Read
CVE-2026-40360 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1580 8.4 HIGH
Local
- - Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. CWE-416
 Use After Free
CVE-2026-40361 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm