Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
200961 8.6 重要
Network
s9y - Serendipity における SSRF 保護を回避される脆弱性 CWE-Other
その他
CVE-2016-9752 2016-12-2 15:06 2016-11-28 Show GitHub Exploit DB Packet Storm
200962 6.1 警告
Network
Piwigo - Piwigo の検索結果のフロントエンドにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-9751 2016-12-2 15:06 2016-11-29 Show GitHub Exploit DB Packet Storm
200963 8.8 重要
Network
IBM - IBM BigFix Remote Control におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-2963 2016-12-1 18:16 2016-10-7 Show GitHub Exploit DB Packet Storm
200964 3.7
Network
IBM - IBM BigFix Remote Control における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-2952 2016-12-1 18:16 2016-10-7 Show GitHub Exploit DB Packet Storm
200965 3.7
Network
IBM - IBM BigFix Remote Control における暗号保護メカニズムを破られる脆弱性 CWE-310
暗号の問題
CVE-2016-2951 2016-12-1 18:16 2016-10-7 Show GitHub Exploit DB Packet Storm
200966 6.5 警告
Network
IBM - IBM BigFix Remote Control における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-2950 2016-12-1 18:16 2016-10-7 Show GitHub Exploit DB Packet Storm
200967 3.3
Local
IBM - IBM BigFix Remote Control における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-2949 2016-12-1 18:16 2016-10-7 Show GitHub Exploit DB Packet Storm
200968 7.8 重要
Local
IBM - IBM BigFix Remote Control におけるハードコードされた認証情報を取得される脆弱性 CWE-Other
その他
CVE-2016-2948 2016-12-1 18:16 2016-10-7 Show GitHub Exploit DB Packet Storm
200969 9.8 緊急
Network
IBM - IBM BigFix Remote Control におけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2016-2944 2016-12-1 18:16 2016-10-7 Show GitHub Exploit DB Packet Storm
200970 1.9
Local
IBM - IBM BigFix Remote Control における重要な情報を取得される脆弱性 CWE-Other
その他
CVE-2016-2943 2016-12-1 18:16 2016-10-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2131 - - - Lack of input filtering leads to an XSS vector in the HTML filter code. CWE-79
Cross-site Scripting
CVE-2026-48905 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2132 - - - An improper access check allows privelege escalation through the com_users group editing webservice endpoint. CWE-284
Improper Access Control
CVE-2026-48904 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2133 - - - Inadequate content filtering within the checkAttribute methods leads to XSS vulnerabilities in various components. CWE-79
Cross-site Scripting
CVE-2026-48903 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2134 - - - An improper access check allowed low privileged users to edit the task types of existing scheduler tasks. CWE-284
Improper Access Control
CVE-2026-48900 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2135 - - - An improper access check allows privilege escalation through the com_users batch task. CWE-284
Improper Access Control
CVE-2026-48899 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2136 - - - An improper access check allows privilege escalation through the com_users batch task. CWE-284
Improper Access Control
CVE-2026-48898 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2137 - - - Rejected reason: Further research determined the issue is not a vulnerability. - CVE-2026-48091 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2138 4.3 MEDIUM
Network
- - Bugsink is a self-hosted error tracking tool. Prior to 2.2.0, Bugsink resolved sourcemaps and debug files by debug ID without scoping that lookup to the project that owned the uploaded metadata. An a… CWE-862
 Missing Authorization
CVE-2026-47728 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2139 3.1 LOW
Network
- - Bugsink is a self-hosted error tracking tool. Prior to 2.2.0, In affected versions, the issue list view authorizes access through the project in the URL, but applies the requested bulk action to the … CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-47716 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2140 3.1 LOW
Network
- - Bugsink is a self-hosted error tracking tool. Prior to 2.2.0, Bugsink issue event pages accept a direct event identifier from the URL and, in affected versions, look up that event without also requir… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-47715 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm