Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205931 4.3 警告 マイクロソフト - Microsoft Internet Explorer 9 から 11 における同一生成元ポリシーを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2016-0005 2016-02-19 17:55 2016-01-12 Show GitHub Exploit DB Packet Storm
205932 5 警告 シスコシステムズ - Cisco Small Business SG300 デバイス上で稼動する Web 管理の GUI の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-1299 2016-02-19 17:43 2016-01-27 Show GitHub Exploit DB Packet Storm
205933 5 警告 Ipswitch, Inc. - Ipswitch MOVEit DMZ におけるユーザ名を列挙される脆弱性 CWE-200
情報漏えい
CVE-2015-7680 2016-02-19 15:41 2015-10-20 Show GitHub Exploit DB Packet Storm
205934 4.3 警告 Ipswitch, Inc. - Ipswitch MOVEit Mobile におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-7679 2016-02-19 15:41 2015-10-20 Show GitHub Exploit DB Packet Storm
205935 6.8 警告 Ipswitch, Inc. - Ipswitch MOVEit Mobile におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-7678 2016-02-19 15:41 2015-09-23 Show GitHub Exploit DB Packet Storm
205936 4 警告 Ipswitch, Inc. - Ipswitch MOVEit DMZ および MOVEit Mobile の機能における認証を回避される脆弱性 CWE-200
情報漏えい
CVE-2015-7675 2016-02-19 15:41 2015-10-20 Show GitHub Exploit DB Packet Storm
205937 4.3 警告 Tollgrade Communications, Inc. - Tollgrade SmartGrid LightHouse Sensor Management System Software EMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0866 2016-02-19 15:15 2016-02-9 Show GitHub Exploit DB Packet Storm
205938 9 危険 Tollgrade Communications, Inc. - Tollgrade SmartGrid LightHouse Sensor Management System Software EMS における任意のパスワードを変更される脆弱性 CWE-255
証明書・パスワード管理
CVE-2016-0865 2016-02-19 15:15 2016-02-9 Show GitHub Exploit DB Packet Storm
205939 5 警告 Tollgrade Communications, Inc. - Tollgrade SmartGrid LightHouse Sensor Management System Software EMS における重要なレポートおよびユーザ名情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-0864 2016-02-19 15:15 2016-02-9 Show GitHub Exploit DB Packet Storm
205940 5 警告 シスコシステムズ - Cisco Jabber Guest と連携して使用される TelePresence Video Communication Server における重要な通話統計情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-1316 2016-02-19 14:01 2016-02-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311 - - - Default configurations of Apache Shiro have a session fixation vulnerability. This issue affects Apache Shiro from 1.0 to 2.1.0, and 3.0.0-alpha-1. Users are recommended to upgrade to version 2.1.1… New CWE-384
 Session Fixation
CVE-2026-43827 2026-05-26 07:16 2026-05-26 Show GitHub Exploit DB Packet Storm
312 5.3 MEDIUM
Network
- - Missing Authorization vulnerability in WP Chill RSVP and Event Management allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects RSVP and Event Management: from … New CWE-862
 Missing Authorization
CVE-2026-27398 2026-05-26 07:16 2026-05-26 Show GitHub Exploit DB Packet Storm
313 5.3 MEDIUM
Network
- - Missing Authorization vulnerability in Cornel Raiu WP Search Analytics allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP Search Analytics: from n/a befor… New CWE-862
 Missing Authorization
CVE-2026-27357 2026-05-26 07:16 2026-05-26 Show GitHub Exploit DB Packet Storm
314 4.9 MEDIUM
Network
- - Missing Authorization vulnerability in Kings Plugins B2BKing allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects B2BKing: from n/a before 5.2.10. New CWE-862
 Missing Authorization
CVE-2026-27346 2026-05-26 07:16 2026-05-26 Show GitHub Exploit DB Packet Storm
315 5.3 MEDIUM
Network
- - Missing Authorization vulnerability in Lucian Apostol Auto Affiliate Links allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Auto Affiliate Links: from n/a … New CWE-862
 Missing Authorization
CVE-2026-24592 2026-05-26 07:16 2026-05-26 Show GitHub Exploit DB Packet Storm
316 5.4 MEDIUM
Network
- - Missing Authorization vulnerability in Themeansar Newses allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Newses: from n/a through 2.0.0.77. New CWE-862
 Missing Authorization
CVE-2026-24586 2026-05-26 07:16 2026-05-26 Show GitHub Exploit DB Packet Storm
317 4.3 MEDIUM
Network
- - Missing Authorization vulnerability in WPPOOL FlexTable allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects FlexTable: from n/a through 3.24.0. New CWE-862
 Missing Authorization
CVE-2026-24582 2026-05-26 07:16 2026-05-26 Show GitHub Exploit DB Packet Storm
318 4.3 MEDIUM
Network
- - Cross-Site Request Forgery (CSRF) vulnerability in Convers Lab WPSubscription allows Cross Site Request Forgery. This issue affects WPSubscription: from n/a through 1.9.1. New CWE-352
 Origin Validation Error
CVE-2026-24554 2026-05-26 07:16 2026-05-26 Show GitHub Exploit DB Packet Storm
319 4.3 MEDIUM
Network
- - Missing Authorization vulnerability in Patterns in the cloud Autoship Cloud for WooCommerce Subscription Products allows Exploiting Incorrectly Configured Access Control Security Levels. This issue … New CWE-862
 Missing Authorization
CVE-2026-24527 2026-05-26 07:16 2026-05-26 Show GitHub Exploit DB Packet Storm
320 6.5 MEDIUM
Network
- - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PickPlugins Team Showcase allows Stored XSS. This issue affects Team Showcase: from n/a through … New CWE-79
Cross-site Scripting
CVE-2025-62745 2026-05-26 07:16 2026-05-26 Show GitHub Exploit DB Packet Storm