Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
196831 7.5 重要
Network
YOOtheme - Pagekit CMS における登録ユーザのパスワードをリセットされる脆弱性 CWE-640
パスワードを忘れた場合の脆弱なパスワードリカバリの仕組み
CVE-2017-5594 2017-02-9 14:15 2017-01-20 Show GitHub Exploit DB Packet Storm
196832 7.5 重要
Network
Quagga - Quagga の telnet 'vty' CLI における境界のないメモリを割り当てられる脆弱性 CWE-119
バッファエラー
CVE-2017-5495 2017-02-9 14:14 2017-01-23 Show GitHub Exploit DB Packet Storm
196833 8.1 重要
Network
TYPO3 Association - TYPO3 の Extbase における重要な情報を取得される脆弱性 CWE-254
セキュリティ機能
CVE-2016-5091 2017-02-9 14:12 2016-05-24 Show GitHub Exploit DB Packet Storm
196834 5.3 警告
Network
シスコシステムズ - Cisco WebEx Meetings Server における WebEx 管理サーバの完全修飾ドメイン名を表示される脆弱性 CWE-200
情報漏えい
CVE-2017-3797 2017-02-9 11:55 2017-01-18 Show GitHub Exploit DB Packet Storm
196835 7.2 重要
Network
シスコシステムズ - Cisco WebEx Meetings Server における他のホスト上の所定のシェルコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2017-3796 2017-02-9 11:55 2017-01-18 Show GitHub Exploit DB Packet Storm
196836 5.4 警告
Network
シスコシステムズ - Cisco WebEx Meetings Server における任意の非管理ユーザのパスワードを変更される脆弱性 CWE-255
証明書・パスワード管理
CVE-2017-3795 2017-02-9 11:55 2017-01-18 Show GitHub Exploit DB Packet Storm
196837 8.8 重要
Network
シスコシステムズ - Cisco WebEx Meetings Server におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-3794 2017-02-9 11:55 2017-01-18 Show GitHub Exploit DB Packet Storm
196838 6.1 警告
Network
シスコシステムズ - Cisco NetFlow Generation アプライアンスの Web ベースの管理インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-9222 2017-02-9 11:55 2016-11-16 Show GitHub Exploit DB Packet Storm
196839 7.5 重要
Network
Wireshark - Wireshark の DHCPv6 ディセクタにおける過度に大きなループを引き起こされる脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2017-5597 2017-02-9 11:14 2017-01-23 Show GitHub Exploit DB Packet Storm
196840 7.5 重要
Network
Wireshark - Wireshark の ASTERIX ディセクタにおける無限ループを引き起こされる脆弱性 CWE-835
無限ループ
CVE-2017-5596 2017-02-9 11:14 2017-01-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
51 8.2 HIGH
Network
- - Balbooa Joomla Forms Builder 2.0.6 contains an unauthenticated SQL injection vulnerability in the form submission handler that allows remote attackers to execute arbitrary SQL queries. Attackers can … New CWE-89
SQL Injection
CVE-2021-47930 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
52 6.4 MEDIUM
Network
- - Filterable Portfolio Gallery 1.0 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious JavaScript by entering payloads in the title field. Attac… New CWE-79
Cross-site Scripting
CVE-2021-47929 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
53 8.2 HIGH
Network
- - Opencart TMD Vendor System 3.x contains a blind SQL injection vulnerability that allows unauthenticated attackers to extract database information by injecting SQL code through the product_id paramete… New CWE-89
SQL Injection
CVE-2021-47928 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
54 6.4 MEDIUM
Network
- - WordPress Plugin WP Symposium Pro 2021.10 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by exploiting insufficient sanitization … New CWE-79
Cross-site Scripting
CVE-2021-47927 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
55 6.4 MEDIUM
Network
- - Contact Form to Email 1.3.24 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by creating forms with script tags in the form name f… New CWE-79
Cross-site Scripting
CVE-2021-47926 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
56 6.4 MEDIUM
Network
- - CMDBuild 3.3.2 contains multiple stored cross-site scripting vulnerabilities that allow authenticated attackers to inject arbitrary web script or HTML via crafted input in card creation and file uplo… New CWE-79
Cross-site Scripting
CVE-2021-47925 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
57 6.4 MEDIUM
Network
- - Ultimate Product Catalog 5.8.2 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts through the price parameter. Attackers can submit P… New CWE-79
Cross-site Scripting
CVE-2021-47924 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
58 9.8 CRITICAL
Network
- - OpenCart 3.0.3.8 contains a session fixation vulnerability that allows attackers to hijack user sessions by injecting arbitrary values into the OCSESSID cookie. Attackers can set malicious OCSESSID c… New CWE-290
 Authentication Bypass by Spoofing
CVE-2021-47923 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
59 6.4 MEDIUM
Network
- - Slider by Soliloquy 2.6.2 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts through the title parameter. Attackers can add JavaScrip… New CWE-79
Cross-site Scripting
CVE-2021-47922 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm
60 6.4 MEDIUM
Network
- - AccessPress Social Icons 1.8.2 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by entering JavaScript payloads into the 'icon titl… New CWE-79
Cross-site Scripting
CVE-2021-47910 2026-05-10 22:16 2026-05-10 Show GitHub Exploit DB Packet Storm