Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204041 9.3 危険 アップル
VMware
xmlsoft.org
オラクル
- libxml および libxml2 の xpath.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-1944 2016-06-30 15:05 2011-09-2 Show GitHub Exploit DB Packet Storm
204042 5 警告 サイボウズ
Google
VMware
- Google Chrome などで使用される libxml2 におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-3905 2016-06-30 15:05 2011-12-13 Show GitHub Exploit DB Packet Storm
204043 7.5 危険 アップル
Google
サイボウズ
- libxml2 におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2821 2016-06-30 15:05 2011-08-22 Show GitHub Exploit DB Packet Storm
204044 6.8 警告 アップル
Google
サイボウズ
VMware
- libxml2 におけるメモリ二重開放の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2834 2016-06-30 14:56 2011-09-16 Show GitHub Exploit DB Packet Storm
204045 9.3 危険 アップル
VMware
サイボウズ
- Apple Safari などの製品で利用される libxml における一つずれエラーの脆弱性 CWE-189
数値処理の問題
CVE-2011-0216 2016-06-30 14:53 2011-07-21 Show GitHub Exploit DB Packet Storm
204046 3.5 注意 David King - Vino の vino-server の rfbSendFramebufferUpdate 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-0905 2016-06-30 14:45 2011-05-10 Show GitHub Exploit DB Packet Storm
204047 4.3 警告 xmlsoft.org
アップル
ヒューレット・パッカード
VMware
Google
OpenOffice.org Project
- libxml2 の XPath 表現におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2010-4008 2016-06-30 14:45 2010-11-17 Show GitHub Exploit DB Packet Storm
204048 3.5 注意 David King - Vino の vino-server の rfbSendFramebufferUpdate 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-0904 2016-06-30 14:44 2011-05-10 Show GitHub Exploit DB Packet Storm
204049 7.5 危険 Google - Google Chrome における同一生成元ポリシーを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-0778 2016-06-30 14:39 2011-02-3 Show GitHub Exploit DB Packet Storm
204050 10 危険 アップル
Google
OpenOffice.org Project
xmlsoft.org
- libxml2 におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-4494 2016-06-30 14:39 2010-12-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1471 6.3 MEDIUM
Network
- - A flaw has been found in Totolink CA750-PoE 6.2c.510. This affects the function setWiFiWpsConfig of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. Executing a manipulation of the arg… New CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-9534 2026-05-27 03:59 2026-05-26 Show GitHub Exploit DB Packet Storm
1472 8.8 HIGH
Network
concretecms concrete_cms Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concrete/controllers/dialog/express/association/reorder. The Concrete CMS security team gave this vulnerability a CVS… Update CWE-352
CWE-1275
 Origin Validation Error
 Sensitive Cookie with Improper SameSite Attribute
CVE-2026-8415 2026-05-27 03:58 2026-05-22 Show GitHub Exploit DB Packet Storm
1473 6.3 MEDIUM
Network
- - A security flaw has been discovered in SourceCodester Hospitals Patient Records Management System 1.0. Impacted is an unknown function of the file /admin/patients/view_history.php. The manipulation o… New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-9342 2026-05-27 03:56 2026-05-24 Show GitHub Exploit DB Packet Storm
1474 7.3 HIGH
Network
- - A flaw has been found in SourceCodester Hospitals Patient Records Management System 1.0. The impacted element is an unknown function of the file /classes/Master.php?f=save_patient_history. This manip… New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-9355 2026-05-27 03:56 2026-05-24 Show GitHub Exploit DB Packet Storm
1475 7.3 HIGH
Network
- - A vulnerability has been found in SourceCodester Hospitals Patient Records Management System 1.0. This affects an unknown function of the file /admin/patients/manage_history.php. Such manipulation of… New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-9356 2026-05-27 03:56 2026-05-24 Show GitHub Exploit DB Packet Storm
1476 8.8 HIGH
Network
- - The WishList Member plugin for WordPress is vulnerable to Missing Authorization leading to Sensitive Information Disclosure and Privilege Escalation in versions up to and including 3.30.1. This is du… New CWE-269
 Improper Privilege Management
CVE-2026-6895 2026-05-27 03:55 2026-05-23 Show GitHub Exploit DB Packet Storm
1477 8.8 HIGH
Network
- - The WishList Member plugin for WordPress is vulnerable to Privilege Escalation via Missing Authorization in versions up to and including 3.30.1. This is due to the missing capability and nonce check … New CWE-269
 Improper Privilege Management
CVE-2026-6419 2026-05-27 03:55 2026-05-23 Show GitHub Exploit DB Packet Storm
1478 8.8 HIGH
Network
- - The Wishlist Member plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'WishListMember\Features\Team_Accounts::save_settings' function in… New CWE-269
 Improper Privilege Management
CVE-2026-6897 2026-05-27 03:55 2026-05-23 Show GitHub Exploit DB Packet Storm
1479 8.8 HIGH
Network
- - The Wishlist Member plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'WishListMember3_Hooks::generate_api_key' function in all versions… New CWE-269
 Improper Privilege Management
CVE-2026-6898 2026-05-27 03:55 2026-05-23 Show GitHub Exploit DB Packet Storm
1480 8.2 HIGH
Network
- - The WooCommerce PayPal Payments plugin for WordPress is vulnerable to unauthorized order manipulation and information disclosure due to missing authorization checks on the `ppc-create-order` and `ppc… New CWE-862
 Missing Authorization
CVE-2026-9284 2026-05-27 03:55 2026-05-23 Show GitHub Exploit DB Packet Storm