Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
206591 4.3 警告 MySQL AB
オラクル
- Oracle MySQL の MySQL Server における C API SSL CERTIFICATE HANDLING に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-6559 2015-12-2 15:15 2014-10-14 Show GitHub Exploit DB Packet Storm
206592 8.8 危険 Google
Mozilla Foundation
オラクル
- Mozilla Network Security Services (NSS) に RSA 署名検証不備の脆弱性 CWE-310
CWE-Other
CVE-2014-1568 2015-12-2 15:15 2014-09-24 Show GitHub Exploit DB Packet Storm
206593 10 危険 日立
IBM
オラクル
- 複数の Oracle Java 製品における 2D に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0429 2015-12-2 15:15 2014-04-15 Show GitHub Exploit DB Packet Storm
206594 4 警告 日立
IBM
オラクル
- 複数の Oracle Java 製品における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0453 2015-12-2 15:15 2014-04-15 Show GitHub Exploit DB Packet Storm
206595 10 危険 日立
オラクル
- Oracle Java SE および Java SE Embedded における Hotspot に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0456 2015-12-2 15:15 2014-04-15 Show GitHub Exploit DB Packet Storm
206596 5.8 警告 日立
IBM
オラクル
- 複数の Oracle Java 製品における JNDI に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0460 2015-12-2 15:15 2014-04-15 Show GitHub Exploit DB Packet Storm
206597 5 警告 アップル
IBM
Apache Software Foundation
オラクル
- Apache HTTP Server の mod_log_config モジュールの mod_log_config.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-0098 2015-12-2 15:15 2014-03-7 Show GitHub Exploit DB Packet Storm
206598 2.6 注意 MySQL AB
オラクル
- Oracle MySQL の MySQL Server における Error Handling に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5908 2015-12-2 15:15 2014-01-14 Show GitHub Exploit DB Packet Storm
206599 5 警告 アップル
Apache Software Foundation
オラクル
- Apache HTTP Server の mod_dav モジュールの main/util.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-6438 2015-12-2 15:15 2013-10-3 Show GitHub Exploit DB Packet Storm
206600 7.5 危険 Apache Software Foundation - Apache HTTP Server の mod_session_dbd モジュール内の mod_session_dbd.c における脆弱性 CWE-noinfo
情報不足
CVE-2013-2249 2015-12-2 15:15 2013-05-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
501 9.8 CRITICAL
Network
- - PySyft (Syft Datasite/Server) versions 0.9.5 and earlier are vulnerable to remote code execution due to insufficient validation and sandboxing of user-submitted code. The system allows low-privileged… CWE-94
Code Injection
CVE-2026-31220 2026-05-16 04:16 2026-05-13 Show GitHub Exploit DB Packet Storm
502 7.5 HIGH
Network
signalk signal_k_server Signal K Server is a server application that runs on a central hub in a boat. Prior to version 2.25.0, the HTTP login endpoints (POST /login and POST /signalk/v1/auth/login) are protected by express-… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2026-41893 2026-05-16 04:14 2026-05-10 Show GitHub Exploit DB Packet Storm
503 5.3 MEDIUM
Network
apache commons_configuration Uncontrolled Recursion vulnerability in Apache Commons. When processing an untrusted configuration file, Commons Configuration will throw a StackOverflowError for YAML input with cycles. This issue … CWE-674
 Uncontrolled Recursion
CVE-2026-45205 2026-05-16 03:40 2026-05-14 Show GitHub Exploit DB Packet Storm
504 7.4 HIGH
Network
microsoft authenticator Exposure of sensitive information to an unauthorized actor in Microsoft Authenticator allows an unauthorized attacker to disclose information over a network. CWE-200
Information Exposure
CVE-2026-41615 2026-05-16 03:39 2026-05-15 Show GitHub Exploit DB Packet Storm
505 8.8 HIGH
Network
microsoft windows_admin_center Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network. CWE-284
Improper Access Control
CVE-2026-41086 2026-05-16 03:38 2026-05-13 Show GitHub Exploit DB Packet Storm
506 9.1 CRITICAL
Network
microsoft azure_sdk_for_java Improper authentication in Azure SDK allows an unauthorized attacker to bypass a security feature over a network. CWE-287
CWE-347
Improper Authentication
 Improper Verification of Cryptographic Signature
CVE-2026-33117 2026-05-16 03:38 2026-05-13 Show GitHub Exploit DB Packet Storm
507 9.9 CRITICAL
Network
microsoft dynamics_365_customer_insights Improper privilege management in Microsoft Dynamics 365 Customer Insights allows an authorized attacker to elevate privileges over a network. CWE-269
 Improper Privilege Management
CVE-2026-33821 2026-05-16 03:26 2026-05-13 Show GitHub Exploit DB Packet Storm
508 6.5 MEDIUM
Network
distribution distribution Distribution is a toolkit to pack, ship, store, and deliver container content. Prior to 3.1.1, tag deletion via the DELETE /v2/<name>/manifests/<tag> endpoint bypasses the storage.delete.enabled: fal… CWE-863
 Incorrect Authorization
CVE-2026-41888 2026-05-16 03:25 2026-05-15 Show GitHub Exploit DB Packet Storm
509 7.5 HIGH
Network
mongoosejs mongoose Mongoose is a MongoDB object modeling tool designed to work in an asynchronous environment. Prior to 6.13.9, 7.8.9, 8.22.1, and 9.1.6, a vulnerability allows bypassing Mongoose’s sanitizeFilter query… CWE-74
Injection
CVE-2026-42334 2026-05-16 03:25 2026-05-15 Show GitHub Exploit DB Packet Storm
510 4.3 MEDIUM
Network
etcd etcd etcd is a distributed key-value store for the data of a distributed system. Prior to 3.4.44, 3.5.30, and 3.6.11, a vulnerability in etcd allows read access via PrevKv, or lease attachment in Put requ… CWE-863
 Incorrect Authorization
CVE-2026-44283 2026-05-16 03:24 2026-05-15 Show GitHub Exploit DB Packet Storm