Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207041 6.5 警告 s9y - Serendipity の include/functions_images.inc.php 内の serendipity_isActiveFile 関数における任意の PHP コードを実行される脆弱性 CWE-Other
その他
CVE-2015-6968 2015-09-17 14:40 2015-07-24 Show GitHub Exploit DB Packet Storm
207042 6 警告 s9y - Serendipity の include/functions_comments.inc.php 内の serendipity_checkCommentToken 関数における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-6943 2015-09-17 14:40 2015-07-24 Show GitHub Exploit DB Packet Storm
207043 5 警告 FreeType Project
Canonical
- FreeType の type1/t1load.c 内の parse_encoding 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-9745 2015-09-17 14:38 2014-02-19 Show GitHub Exploit DB Packet Storm
207044 4.3 警告 Manuel Fernandez Paradela Ledon - JSP/MySQL Administrador Web におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-6945 2015-09-17 14:36 2015-09-4 Show GitHub Exploit DB Packet Storm
207045 6.8 警告 Manuel Fernandez Paradela Ledon - JSP/MySQL Administrador Web におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-6944 2015-09-17 14:36 2015-09-4 Show GitHub Exploit DB Packet Storm
207046 9 危険 IBM - IBM WebSphere Application Server などの製品で使用される IBM HTTP Server の管理サーバにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-4947 2015-09-17 14:35 2015-09-2 Show GitHub Exploit DB Packet Storm
207047 10 危険 Impero Inc - Impero Education Pro における任意のプログラムを実行される脆弱性 CWE-287
CWE-Other
CVE-2015-5998 2015-09-17 14:23 2015-09-9 Show GitHub Exploit DB Packet Storm
207048 7.8 危険 Impero Inc - Impero Education Pro における平文データを取得される脆弱性 CWE-Other
CWE-Other
CVE-2015-5997 2015-09-17 14:23 2015-09-9 Show GitHub Exploit DB Packet Storm
207049 4 警告 IBM - IBM WebSphere Commerce における重要な個人情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-4980 2015-09-16 10:33 2015-08-28 Show GitHub Exploit DB Packet Storm
207050 7.8 危険 IBM - IBM WebSphere Portal におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-1943 2015-09-16 10:28 2015-07-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
171 5.5 MEDIUM
Adjacent
- - A vulnerability was detected in 8421bit MiniClaw 0.8.0/0.9.0. This issue affects the function resolveSkillScriptPath of the file src/kernel.ts of the component System Command Handler. The manipulatio… New CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-8235 2026-05-12 01:17 2026-05-10 Show GitHub Exploit DB Packet Storm
172 3.5 LOW
Adjacent
- - A vulnerability was found in Dotouch XproUPF 2.0.0-release-088aa7c4. This impacts the function vlib_worker_loop in the library /usr/xpro/upf/tools/libs/libvlib.so of the component UPF Process. The ma… New CWE-404
 Improper Resource Shutdown or Release
CVE-2026-8232 2026-05-12 01:17 2026-05-10 Show GitHub Exploit DB Packet Storm
173 5.3 MEDIUM
Network
- - A vulnerability was found in Open5GS up to 2.7.7. Affected by this vulnerability is the function pcf_sess_sbi_discover_and_send of the component sm-policies Endpoint. Performing a manipulation result… New CWE-404
 Improper Resource Shutdown or Release
CVE-2026-8223 2026-05-12 01:17 2026-05-10 Show GitHub Exploit DB Packet Storm
174 6.3 MEDIUM
Network
- - A security flaw has been discovered in Industrial Application Software IAS Canias ERP 8.03. Impacted is the function Runtime.getRuntime.exec of the component RMI Interface. Performing a manipulation … New CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-8217 2026-05-12 01:17 2026-05-10 Show GitHub Exploit DB Packet Storm
175 5.3 MEDIUM
Network
- - A flaw has been found in Open5GS up to 2.7.7. This impacts the function _gtpv1_u_recv_cb of the file src/upf/gtp-path.c of the component UPF. Executing a manipulation can lead to resource consumption… New CWE-400
CWE-404
 Uncontrolled Resource Consumption
 Improper Resource Shutdown or Release
CVE-2026-8187 2026-05-12 01:17 2026-05-9 Show GitHub Exploit DB Packet Storm
176 5.3 MEDIUM
Network
- - A vulnerability was detected in Open5GS up to 2.7.7. This affects the function ogs_sbi_client_send_via_scp_or_sepp in the library lib/sbi/client.c of the component NF. Performing a manipulation resul… New CWE-119
CWE-125
Incorrect Access of Indexable Resource ('Range Error') 
Out-of-bounds Read
CVE-2026-8186 2026-05-12 01:17 2026-05-9 Show GitHub Exploit DB Packet Storm
177 - - - Corteza contains a SQL injection vulnerability in its Microsoft SQL Server (MSSQL) backend when filtering Compose records by the meta field.This issue affects corteza: 2024.9.8. New CWE-89
SQL Injection
CVE-2026-6093 2026-05-12 01:17 2026-05-12 Show GitHub Exploit DB Packet Storm
178 2.2 LOW
Local
- - GrapheneOS before 2026050400 allows attackers to discover the real IP address of a VPN user as a consequence of a registerQuicConnectionClosePayload optimization, because an application can let syste… New CWE-441
Confused Deputy
CVE-2026-45182 2026-05-12 01:17 2026-05-10 Show GitHub Exploit DB Packet Storm
179 - - - Angular Expressions provides expressions for the Angular.JS web framework as a standalone module. Prior to 1.5.2, an attacker can write a malicious expression using filters that escapes the sandbox t… New CWE-95
Eval Injection
CVE-2026-44643 2026-05-12 01:17 2026-05-12 Show GitHub Exploit DB Packet Storm
180 - - - FastGPT is an AI Agent building platform. Prior to version 4.14.17, an unauthenticated Server-Side Request Forgery (SSRF) vulnerability allows attackers (or authenticated users with App editing privi… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-44286 2026-05-12 01:17 2026-05-9 Show GitHub Exploit DB Packet Storm