Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
197071 4.8 警告
Network
サイボウズ - サイボウズ Office のカスタムアプリ機能に関するクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-4865 2017-04-24 15:12 2016-10-3 Show GitHub Exploit DB Packet Storm
197072 7.5 重要
Network
マイクロソフト - Microsoft Internet Explorer 9 および 10 におけるリモートでコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-0201 2017-04-24 14:49 2017-04-11 Show GitHub Exploit DB Packet Storm
197073 7 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品のカーネルの Graphics コンポーネントにおける特権の昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-0155 2017-04-24 14:49 2017-04-11 Show GitHub Exploit DB Packet Storm
197074 7.5 重要
Network
マイクロソフト - Microsoft Edge におけるリモートでコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-0093 2017-04-24 14:49 2017-04-11 Show GitHub Exploit DB Packet Storm
197075 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品における特権の昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-0165 2017-04-24 14:26 2017-04-11 Show GitHub Exploit DB Packet Storm
197076 4.4 警告
Network
マイクロソフト - Microsoft Windows 10 および Windows Server 2016 の Active Directory におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2017-0164 2017-04-24 14:15 2017-04-11 Show GitHub Exploit DB Packet Storm
197077 7.6 重要
Adjacent
マイクロソフト - 複数の Microsoft Windows 製品におけるリモートでコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2017-0163 2017-04-24 14:01 2017-04-11 Show GitHub Exploit DB Packet Storm
197078 7.6 重要
Adjacent
マイクロソフト - 複数の Microsoft Windows 製品におけるリモートでコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2017-0162 2017-04-24 14:01 2017-04-11 Show GitHub Exploit DB Packet Storm
197079 5.8 警告
Network
マイクロソフト - 複数の Microsoft Windows 製品上で稼動する Hyper-V ネットワークスイッチにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2017-0186 2017-04-24 12:13 2017-04-11 Show GitHub Exploit DB Packet Storm
197080 5.8 警告
Network
マイクロソフト - 複数の Microsoft Windows 製品上で稼動する Hyper-V ネットワークスイッチにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2017-0185 2017-04-24 12:13 2017-04-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1981 6.5 MEDIUM
Network
- - Missing Authorization vulnerability in SePay team SePay Gateway allows Retrieve Embedded Sensitive Data. This issue affects SePay Gateway: from n/a through 1.1.20. CWE-862
 Missing Authorization
CVE-2026-42763 2026-05-27 04:31 2026-05-26 Show GitHub Exploit DB Packet Storm
1982 9.3 CRITICAL
Network
- - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in eMagicOne eMagicOne Store Manager allows Blind SQL Injection. This issue affects eMagicOne Store… CWE-89
SQL Injection
CVE-2026-42773 2026-05-27 04:31 2026-05-26 Show GitHub Exploit DB Packet Storm
1983 9.3 CRITICAL
Network
- - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Crocoblock JetEngine allows SQL Injection. This issue affects JetEngine: from n/a through 3.8.8.… CWE-89
SQL Injection
CVE-2026-42774 2026-05-27 04:31 2026-05-26 Show GitHub Exploit DB Packet Storm
1984 6.3 MEDIUM
Network
- - Missing Authorization vulnerability in WP Sunshine Sunshine Photo Cart allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Sunshine Photo Cart: from n/a throu… CWE-862
 Missing Authorization
CVE-2026-42776 2026-05-27 04:31 2026-05-26 Show GitHub Exploit DB Packet Storm
1985 7.5 HIGH
Network
- - Missing Authorization vulnerability in edward_plainview MyCryptoCheckout allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects MyCryptoCheckout: from n/a throug… CWE-862
 Missing Authorization
CVE-2026-45209 2026-05-27 04:31 2026-05-26 Show GitHub Exploit DB Packet Storm
1986 8.8 HIGH
Network
- - Incorrect Privilege Assignment vulnerability in StoreApps Smart Manager allows Privilege Escalation. This issue affects Smart Manager: from n/a through 8.85.0. CWE-266
 Incorrect Privilege Assignment
CVE-2026-45216 2026-05-27 04:31 2026-05-26 Show GitHub Exploit DB Packet Storm
1987 6.5 MEDIUM
Network
- - Authentication Bypass Using an Alternate Path or Channel vulnerability in ThemeHigh Stripe Payment Gateway for WooCommerce allows Password Recovery Exploitation. This issue affects Stripe Payment Ga… CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2026-45217 2026-05-27 04:31 2026-05-26 Show GitHub Exploit DB Packet Storm
1988 6.5 MEDIUM
Network
- - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Melapress WP Activity Log allows DOM-Based XSS. This issue affects WP Activity Log: from n/a thr… CWE-79
Cross-site Scripting
CVE-2026-45435 2026-05-27 04:31 2026-05-26 Show GitHub Exploit DB Packet Storm
1989 7.5 HIGH
Network
- - Missing Authorization vulnerability in WebToffee Smart Coupons for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Smart Coupons for WooCommer… CWE-862
 Missing Authorization
CVE-2026-45438 2026-05-27 04:31 2026-05-26 Show GitHub Exploit DB Packet Storm
1990 8.5 HIGH
Network
- - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Unlimited Elements For Elementor allows Blind SQL Injection. This issue affects Unlimited Elemen… CWE-89
SQL Injection
CVE-2026-48837 2026-05-27 04:31 2026-05-26 Show GitHub Exploit DB Packet Storm