Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207031 4.6 警告 アップル - Apple Xcode の otools における権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2015-7049 2015-12-15 14:49 2015-12-8 Show GitHub Exploit DB Packet Storm
207032 4.3 警告 アップル - Apple iOS の Safari におけるユーザインターフェースの URL を偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2015-7093 2015-12-15 13:56 2015-12-8 Show GitHub Exploit DB Packet Storm
207033 2.1 注意 アップル - Apple iOS の Siri におけるクライアントサイドの保護メカニズムを回避される脆弱性 CWE-200
情報漏えい
CVE-2015-7080 2015-12-15 13:56 2015-12-8 Show GitHub Exploit DB Packet Storm
207034 9.3 危険 アップル - Apple iOS の GPUTools Framework の Mobile Replayer における特権付きコンテキスト内で任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2015-7070 2015-12-15 13:56 2015-12-8 Show GitHub Exploit DB Packet Storm
207035 9.3 危険 アップル - Apple iOS の GPUTools Framework の Mobile Replayer における特権付きコンテキスト内で任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2015-7069 2015-12-15 13:56 2015-12-8 Show GitHub Exploit DB Packet Storm
207036 5 警告 アップル - Apple iOS の写真のモバイルバックアップにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-7037 2015-12-15 13:56 2015-12-8 Show GitHub Exploit DB Packet Storm
207037 10 危険 アップル - Apple iOS および watchOS の LaunchServices コンポーネントにおける特権付きコンテキスト内で任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2015-7113 2015-12-15 13:41 2015-12-8 Show GitHub Exploit DB Packet Storm
207038 9.3 危険 アップル - 複数の Apple 製品の dyld における特権付きコンテキスト内で任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2015-7072 2015-12-15 13:41 2015-12-8 Show GitHub Exploit DB Packet Storm
207039 9.3 危険 アップル - 複数の Apple 製品の IOHIDFamily API における特権付きコンテキスト内で任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2015-7112 2015-12-15 11:58 2015-12-8 Show GitHub Exploit DB Packet Storm
207040 9.3 危険 アップル - 複数の Apple 製品の IOHIDFamily API における特権付きコンテキスト内で任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2015-7111 2015-12-15 11:58 2015-12-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1941 6.5 MEDIUM
Network
mongodb mongodb An authenticated user can cause excess memory usage via bitwise match expression AST processing of $bitsAllSet, $bitsAnySet, $bitsAllClear, and $bitsAnyClear. This contributes to memory pressure and … CWE-1325
 Improperly Controlled Sequential Memory Allocation
CVE-2026-8199 2026-05-14 07:31 2026-05-13 Show GitHub Exploit DB Packet Storm
1942 6.1 MEDIUM
Network
mediawiki mediawiki Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Actions/ActionEntryPoint.Php, includes/Request/FauxResponse.Php. This issue affects … CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2026-34095 2026-05-14 07:30 2026-05-12 Show GitHub Exploit DB Packet Storm
1943 - - - Rejected reason: This CVE is a duplicate of another CVE. - CVE-2026-40328 2026-05-14 07:16 2026-05-14 Show GitHub Exploit DB Packet Storm
1944 - - - Rejected reason: This CVE is a duplicate of another CVE. - CVE-2026-40327 2026-05-14 07:16 2026-05-14 Show GitHub Exploit DB Packet Storm
1945 8.8 HIGH
Network
- - Insufficient input validation of the `plugin` parameter of the `create_user` plugin allows arbitrary Perl code execution on behalf of the already authenticated account's system user. CWE-94
Code Injection
CVE-2026-29202 2026-05-14 07:16 2026-05-9 Show GitHub Exploit DB Packet Storm
1946 4.3 MEDIUM
Network
- - Insufficient input validation of the feature file name in `feature::LOADFEATUREFILE` adminbin call can cause arbitrary file read when a relative file path is passed. CWE-23
 Relative Path Traversal
CVE-2026-29201 2026-05-14 07:16 2026-05-9 Show GitHub Exploit DB Packet Storm
1947 7.5 HIGH
Network
apple ipados
iphone_os
macos
tvos
visionos
watchos
A validation issue was addressed with improved logic. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 2… CWE-693
 Protection Mechanism Failure
CVE-2026-43660 2026-05-14 06:16 2026-05-12 Show GitHub Exploit DB Packet Storm
1948 7.5 HIGH
Network
apple ipados
iphone_os
macos
tvos
visionos
watchos
The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. Processing maliciously c… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-43658 2026-05-14 06:16 2026-05-12 Show GitHub Exploit DB Packet Storm
1949 4.3 MEDIUM
Network
apple ipados
iphone_os
macos
visionos
The issue was addressed with improved UI handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, visionOS 26.5. A malicious iframe may use another website’s download… CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2026-28971 2026-05-14 06:16 2026-05-12 Show GitHub Exploit DB Packet Storm
1950 7.5 HIGH
Network
apple ipados
iphone_os
macos
visionos
This issue was addressed with improved access restrictions. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, visionOS 26.5. Processing mal… CWE-200
Information Exposure
CVE-2026-28962 2026-05-14 06:16 2026-05-12 Show GitHub Exploit DB Packet Storm