Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
195471 6.1 警告
Network
Novell - Novell GroupWise におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-5761 2017-05-19 10:56 2016-08-16 Show GitHub Exploit DB Packet Storm
195472 6.8 警告
Physics
レッドハット - 複数の Red Hat Enterprise Virtualization Manager 製品における webadmin セッションのタイムアウト制限を回避される脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-6338 2017-05-19 10:44 2016-08-22 Show GitHub Exploit DB Packet Storm
195473 8 重要
Network
Bitrix project - Bitrix 用 mcart.xls モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-8356 2017-05-18 19:48 2015-11-18 Show GitHub Exploit DB Packet Storm
195474 9.8 緊急
Network
Umbraco - Umbraco の FeedProxy.aspx スクリプトにおける代理でプロキシへリクエストされる脆弱性 CWE-20
不適切な入力確認
CVE-2012-1301 2017-05-18 19:47 2012-04-5 Show GitHub Exploit DB Packet Storm
195475 8.8 重要
Network
s9y - Serendipity におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-8101 2017-05-18 18:55 2017-04-9 Show GitHub Exploit DB Packet Storm
195476 7.8 重要
Local
eXtplorer - eXtplorer の unzip/extract feature におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-4313 2017-05-18 18:54 2016-05-14 Show GitHub Exploit DB Packet Storm
195477 8.8 重要
Network
Kallithea - Kallithea におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-3691 2017-05-18 18:53 2016-05-2 Show GitHub Exploit DB Packet Storm
195478 6.5 警告
Network
Kallithea - Kallithea における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3114 2017-05-18 18:53 2016-05-2 Show GitHub Exploit DB Packet Storm
195479 5.5 警告
Local
Fabrice Bellard - QEMU の hw/display/cirrus_vga_rop.h におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2017-7718 2017-05-18 18:51 2017-03-16 Show GitHub Exploit DB Packet Storm
195480 8.8 重要
Network
PoDoFo project - PoDoFo におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2017-8787 2017-05-18 18:50 2017-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2221 - - - In the Linux kernel, the following vulnerability has been resolved: nouveau/gsp: drop WARN_ON in ACPI probes These WARN_ONs seem to trigger a lot, and we don't seem to have a plan to fix them, so j… - CVE-2026-43485 2026-05-14 01:16 2026-05-14 Show GitHub Exploit DB Packet Storm
2222 - - - In the Linux kernel, the following vulnerability has been resolved: mmc: core: Avoid bitfield RMW for claim/retune flags Move claimed and retune control flags out of the bitfield word to avoid unre… - CVE-2026-43484 2026-05-14 01:16 2026-05-14 Show GitHub Exploit DB Packet Storm
2223 - - - In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Set/clear CR8 write interception when AVIC is (de)activated Explicitly set/clear CR8 write interception when AVIC is (d… - CVE-2026-43483 2026-05-14 01:16 2026-05-14 Show GitHub Exploit DB Packet Storm
2224 - - - In the Linux kernel, the following vulnerability has been resolved: sched_ext: Disable preemption between scx_claim_exit() and kicking helper work scx_claim_exit() atomically sets exit_kind, which … - CVE-2026-43482 2026-05-14 01:16 2026-05-14 Show GitHub Exploit DB Packet Storm
2225 - - - In the Linux kernel, the following vulnerability has been resolved: ASoC: amd: acp3x-rt5682-max9836: Add missing error check for clock acquisition The acp3x_5682_init() function did not check the r… - CVE-2026-43480 2026-05-14 01:16 2026-05-14 Show GitHub Exploit DB Packet Storm
2226 - - - In the Linux kernel, the following vulnerability has been resolved: net: usb: lan78xx: fix WARN in __netif_napi_del_locked on disconnect Remove redundant netif_napi_del() call from disconnect path.… - CVE-2026-43479 2026-05-14 01:16 2026-05-14 Show GitHub Exploit DB Packet Storm
2227 - - - In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: rt1011: Use component to get the dapm context in spk_mode_put The correct helper to use in rt1011_recv_spk_mode_put… - CVE-2026-43478 2026-05-14 01:16 2026-05-14 Show GitHub Exploit DB Packet Storm
2228 - - - In the Linux kernel, the following vulnerability has been resolved: drm/i915/vrr: Configure VRR timings after enabling TRANS_DDI_FUNC_CTL Apparently ICL may hang with an MCE if we write TRANS_VRR_V… - CVE-2026-43477 2026-05-14 01:16 2026-05-14 Show GitHub Exploit DB Packet Storm
2229 5.4 MEDIUM
Network
openedx openedx Open edX Platform enables the authoring and delivery of online learning at any scale. The HTML sanitizer clean_thread_html_body() used for discussion notification emails fails to remove <style> tags … CWE-79
Cross-site Scripting
CVE-2026-42857 2026-05-14 01:16 2026-05-12 Show GitHub Exploit DB Packet Storm
2230 8.8 HIGH
Local
- - Pi-hole is a DNS sinkhole that protects devices from unwanted content without installing any client-side software. From 6.0 to before Core 6.4.2 and FTL 6.6.1, two shell scripts executed as root by s… CWE-15
CWE-269
CWE-732
 External Control of System or Configuration Setting
 Improper Privilege Management
 Incorrect Permission Assignment for Critical Resource
CVE-2026-41489 2026-05-14 01:16 2026-05-12 Show GitHub Exploit DB Packet Storm