Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203951 6.1 警告
Network
サイボウズ - サイボウズ ガルーンにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-1197 2016-06-23 17:04 2016-05-30 Show GitHub Exploit DB Packet Storm
203952 5.8 警告
Network
国土地理院 - 「平成27年1月以前の旧地理院地図のソース」におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-4814 2016-06-23 15:11 2016-05-30 Show GitHub Exploit DB Packet Storm
203953 7.1 重要
Network
NetCommons プロジェクト - NetCommons における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-4813 2016-06-23 15:11 2016-05-26 Show GitHub Exploit DB Packet Storm
203954 7.8 危険 ISC, Inc.
アップル
日本電気
- ISC BIND 9 にサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-5477 2016-06-23 14:49 2015-07-29 Show GitHub Exploit DB Packet Storm
203955 7.8 危険 日本電気
(複数のベンダ)
- Internet Key Exchange (IKEv1, IKEv2) が DoS 攻撃の踏み台として使用される問題 CWE-Other
その他
- 2016-06-23 14:46 2016-02-29 Show GitHub Exploit DB Packet Storm
203956 5 警告 GoPivotal - Spring Framework におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-3578 2016-06-23 13:44 2014-06-13 Show GitHub Exploit DB Packet Storm
203957 7.8 危険 ISC, Inc.
日本電気
- ISC BIND 9 にサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-4620 2016-06-23 13:35 2015-07-8 Show GitHub Exploit DB Packet Storm
203958 7.8 危険 ISC, Inc.
アップル
日本電気
- ISC BIND の named の buffer.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-5722 2016-06-23 13:34 2015-09-2 Show GitHub Exploit DB Packet Storm
203959 7.1 危険 ISC, Inc.
アップル
日本電気
- ISC BIND の named の openpgpkey_61.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-5986 2016-06-23 13:33 2015-09-2 Show GitHub Exploit DB Packet Storm
203960 7.5 重要
Network
シスコシステムズ - Cisco IOS および NX-OS の IPv6 スタックの Neighbor Discovery プロトコルの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-1409 2016-06-23 12:28 2016-05-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1481 10.0 CRITICAL
Network
- - A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi OS devices to execute a Command Injection. CWE-20
 Improper Input Validation 
CVE-2026-34910 2026-05-22 11:16 2026-05-22 Show GitHub Exploit DB Packet Storm
1482 10.0 CRITICAL
Network
- - A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi OS devices to access files on the underlying system that could be manipulated to access an und… CWE-22
Path Traversal
CVE-2026-34909 2026-05-22 11:16 2026-05-22 Show GitHub Exploit DB Packet Storm
1483 10.0 CRITICAL
Network
- - A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi OS devices to make unauthorized changes to the system. CWE-284
Improper Access Control
CVE-2026-34908 2026-05-22 11:16 2026-05-22 Show GitHub Exploit DB Packet Storm
1484 9.1 CRITICAL
Network
- - A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerability found in UniFi OS devices to execute a Command Injection. CWE-20
 Improper Input Validation 
CVE-2026-33000 2026-05-22 11:16 2026-05-22 Show GitHub Exploit DB Packet Storm
1485 7.8 HIGH
Local
mullvad mullvad_vpn Mullvad VPN is a VPN client app for desktop and mobile. When using macOS with versions 2026.1 and below, Mullvad VPN may allow local privilege escalation during installation or upgrade. The installer… CWE-269
CWE-345
CWE-427
NVD-CWE-noinfo
 Improper Privilege Management
 Insufficient Verification of Data Authenticity
 Uncontrolled Search Path Element
CVE-2026-32323 2026-05-22 09:04 2026-05-19 Show GitHub Exploit DB Packet Storm
1486 4.3 MEDIUM
Network
glpi-project glpi GLPI is a free asset and IT management software package. In versions 11.0.0 through 11.0.6, an authenticated user with forms READ permission can export the structure of unauthorized forms. This issue… CWE-862
 Missing Authorization
CVE-2026-32312 2026-05-22 08:57 2026-05-19 Show GitHub Exploit DB Packet Storm
1487 3.5 LOW
Network
github cli `gh` is GitHub’s official command line tool. From 1.6.0 to before 2.92.0, a security vulnerability has been identified in GitHub CLI that could allow terminal escape sequence injection when users vie… CWE-150
 Improper Neutralization of Escape, Meta, or Control Sequences
CVE-2026-45803 2026-05-22 08:47 2026-05-16 Show GitHub Exploit DB Packet Storm
1488 10.0 CRITICAL
Network
microsoft azure_local
azure_resource_manager
Improper authentication in Azure Local Disconnected Operations allows an unauthorized attacker to elevate privileges over a network. CWE-287
NVD-CWE-noinfo
Improper Authentication
CVE-2026-42822 2026-05-22 08:45 2026-05-19 Show GitHub Exploit DB Packet Storm
1489 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2026-5297 2026-05-22 08:16 2026-05-22 Show GitHub Exploit DB Packet Storm
1490 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… - CVE-2026-8352 2026-05-22 06:16 2026-05-22 Show GitHub Exploit DB Packet Storm