Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
196761 7.8 重要
Local
JasPer Project
openSUSE project
Fedora Project
- JasPer の jas_stream.c の mem_close 関数におけるメモリ二重解放の脆弱性 CWE-415
二重解放
CVE-2016-8693 2017-03-9 16:03 2016-10-20 Show GitHub Exploit DB Packet Storm
196762 5.5 警告
Local
Debian
JasPer Project
Fedora Project
- JasPer の libjasper/jpc/jpc_dec.c の jpc_dec_process_siz 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-369
ゼロ除算
CVE-2016-8692 2017-03-9 16:03 2016-10-16 Show GitHub Exploit DB Packet Storm
196763 5.5 警告
Local
Debian
JasPer Project
Fedora Project
- JasPer の libjasper/jpc/jpc_dec.c の jpc_dec_process_siz 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-369
ゼロ除算
CVE-2016-8691 2017-03-9 16:03 2016-10-16 Show GitHub Exploit DB Packet Storm
196764 5 警告 アップル
日本電気
- 複数の Apple 製品の Secure Transport における EXPORT_RSA 暗号に対して暗号スイートのダウングレード攻撃を実行される脆弱性 CWE-310
暗号の問題
CVE-2015-1067 2017-03-9 15:34 2015-03-9 Show GitHub Exploit DB Packet Storm
196765 7.8 危険 日本電気 - SSL/TLS の実装が輸出グレードの RSA 鍵を受け入れる問題 (FREAK 攻撃) CWE-Other
その他
- 2017-03-9 15:33 2015-03-6 Show GitHub Exploit DB Packet Storm
196766 4.3 警告 マイクロソフト
日本電気
- 複数の Microsoft Windows 製品の Schannel における EXPORT_RSA 暗号に対して暗号スイートのダウングレード攻撃を実行される脆弱性 CWE-310
暗号の問題
CVE-2015-1637 2017-03-9 15:33 2015-03-5 Show GitHub Exploit DB Packet Storm
196767 4.3 警告 日本電気
アップル
サン・マイクロシステムズ
ヒューレット・パッカード
OpenSSL Project
オラクル
日立
- OpenSSL の s3_clnt.c の ssl3_get_key_exchange 関数における RSA-to-EXPORT_RSA ダウングレード攻撃を実行される脆弱性 CWE-310
暗号の問題
CVE-2015-0204 2017-03-9 15:33 2015-01-8 Show GitHub Exploit DB Packet Storm
196768 5 警告 アップル
日本電気
OpenSSL Project
オラクル
- OpenSSL の crypto/cms/cms_smime.c の do_free_upto 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-1792 2017-03-9 15:31 2015-06-11 Show GitHub Exploit DB Packet Storm
196769 6.8 警告 アップル
日本電気
OpenSSL Project
オラクル
- OpenSSL の ssl/s3_clnt.c の ssl3_get_new_session_ticket 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2015-1791 2017-03-9 15:31 2015-06-11 Show GitHub Exploit DB Packet Storm
196770 5 警告 アップル
日本電気
OpenSSL Project
ヒューレット・パッカード・エンタープライズ
オラクル
- OpenSSL の crypto/pkcs7/pk7_doit.c の PKCS7_dataDecode 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-1790 2017-03-9 15:31 2015-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
991 4.4 MEDIUM
Network
- - The FastBots plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1.0.12 due to insufficient input sanitization and output escapi… New CWE-79
Cross-site Scripting
CVE-2026-6800 2026-05-12 23:03 2026-05-12 Show GitHub Exploit DB Packet Storm
992 4.4 MEDIUM
Network
- - The Continually plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 4.3.1 due to insufficient input sanitization and output esca… New CWE-79
Cross-site Scripting
CVE-2026-6813 2026-05-12 23:03 2026-05-12 Show GitHub Exploit DB Packet Storm
993 8.5 HIGH
Network
- - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aman Ninja Forms Views – Display & Edit Ninja Forms Submissions on your site frontend v… New CWE-89
SQL Injection
CVE-2026-42741 2026-05-12 23:03 2026-05-12 Show GitHub Exploit DB Packet Storm
994 8.5 HIGH
Network
- - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aman Views for WPForms views-for-wpforms-lite allows Blind SQL Injection.This issue affects Views… New CWE-89
SQL Injection
CVE-2026-42742 2026-05-12 23:03 2026-05-12 Show GitHub Exploit DB Packet Storm
995 5.4 MEDIUM
Network
- - Missing Authorization vulnerability in Broadstreet Broadstreet Ads broadstreet allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Broadstreet Ads: from n/a thr… New CWE-862
 Missing Authorization
CVE-2026-45210 2026-05-12 23:03 2026-05-12 Show GitHub Exploit DB Packet Storm
996 8.5 HIGH
Network
- - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saad Iqbal APIExperts Square for WooCommerce woosquare allows Blind SQL Injection.This issue affe… New CWE-89
SQL Injection
CVE-2026-45211 2026-05-12 23:03 2026-05-12 Show GitHub Exploit DB Packet Storm
997 5.3 MEDIUM
Network
- - Missing Authorization vulnerability in Gabe Livan Asset CleanUp: Page Speed Booster wp-asset-clean-up allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Asset … New CWE-862
 Missing Authorization
CVE-2026-45212 2026-05-12 23:03 2026-05-12 Show GitHub Exploit DB Packet Storm
998 7.6 HIGH
Network
- - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 BEAR woo-bulk-editor allows Blind SQL Injection.This issue affects BEAR: from n/a thro… New CWE-89
SQL Injection
CVE-2026-45213 2026-05-12 23:03 2026-05-12 Show GitHub Exploit DB Packet Storm
999 8.5 HIGH
Network
- - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Xpro Xpro Elementor Addons xpro-elementor-addons allows Blind SQL Injection.This issue affects Xp… New CWE-89
SQL Injection
CVE-2026-45214 2026-05-12 23:03 2026-05-12 Show GitHub Exploit DB Packet Storm
1000 5.3 MEDIUM
Network
- - Insertion of Sensitive Information Into Sent Data vulnerability in Saad Iqbal WP EasyPay wp-easy-pay allows Retrieve Embedded Sensitive Data.This issue affects WP EasyPay: from n/a through <= 4.3.0. New CWE-201
 Insertion of Sensitive Information Into Sent Data
CVE-2026-45215 2026-05-12 23:03 2026-05-12 Show GitHub Exploit DB Packet Storm