Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207141 10 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2015-6680 2015-09-10 15:57 2015-09-8 Show GitHub Exploit DB Packet Storm
207142 9.3 危険 マイクロソフト - 複数の Microsoft Windows 製品の Windows Journal における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2015-2530 2015-09-10 15:51 2015-09-8 Show GitHub Exploit DB Packet Storm
207143 9.3 危険 マイクロソフト - 複数の Microsoft Windows 製品の Windows Journal における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2015-2519 2015-09-10 15:51 2015-09-8 Show GitHub Exploit DB Packet Storm
207144 4.3 警告 マイクロソフト - 複数の Microsoft Windows 製品の Windows Journal におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-2516 2015-09-10 15:51 2015-09-8 Show GitHub Exploit DB Packet Storm
207145 9.3 危険 マイクロソフト - 複数の Microsoft Windows 製品の Windows Journal における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2015-2514 2015-09-10 15:51 2015-09-8 Show GitHub Exploit DB Packet Storm
207146 9.3 危険 マイクロソフト - 複数の Microsoft Windows 製品の Windows Journal における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2015-2513 2015-09-10 15:51 2015-09-8 Show GitHub Exploit DB Packet Storm
207147 1.9 注意 マイクロソフト - 複数の Microsoft Windows 製品の Hyper-V におけるネットワークトラフィックの制限を回避される脆弱性 CWE-Other
その他
CVE-2015-2534 2015-09-10 15:22 2015-09-8 Show GitHub Exploit DB Packet Storm
207148 4 警告 マイクロソフト - 複数の Microsoft Windows Server 製品の Active Directory におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-2535 2015-09-10 15:22 2015-09-8 Show GitHub Exploit DB Packet Storm
207149 5 警告 マイクロソフト - Microsoft .NET Framework における ASP.NET Web サイトのサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-2526 2015-09-10 15:20 2015-09-8 Show GitHub Exploit DB Packet Storm
207150 9.3 危険 マイクロソフト - Microsoft .NET Framework における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2015-2504 2015-09-10 15:20 2015-09-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
581 9.8 CRITICAL
Network
- - WordPress MStore API 2.0.6 contains an arbitrary file upload vulnerability that allows unauthenticated attackers to upload malicious files by sending POST requests to the REST API endpoint. Attackers… New CWE-306
Missing Authentication for Critical Function
CVE-2021-47933 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
582 9.8 CRITICAL
Network
- - OpenCATS 0.9.4 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary commands by uploading malicious PHP files disguised as resume attachments. Att… New CWE-306
Missing Authentication for Critical Function
CVE-2021-47936 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
583 8.8 HIGH
Network
- - e107 CMS 2.3.0 contains a remote code execution vulnerability that allows authenticated users with theme installation permissions to execute arbitrary commands by uploading malicious theme files. Att… New CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2021-47937 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
584 8.8 HIGH
Network
- - ImpressCMS 1.4.2 contains a remote code execution vulnerability in the autotasks administrative interface that allows authenticated attackers to execute arbitrary PHP code by injecting malicious code… New CWE-94
Code Injection
CVE-2021-47938 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
585 8.8 HIGH
Network
- - Evolution CMS 3.1.6 contains a remote code execution vulnerability that allows authenticated users with module creation permissions to execute arbitrary system commands by injecting PHP code into mod… New CWE-94
Code Injection
CVE-2021-47939 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
586 9.8 CRITICAL
Network
- - WordPress Plugin Download From Files version 1.48 and earlier contains an arbitrary file upload vulnerability that allows unauthenticated attackers to upload malicious files by exploiting the AJAX fi… New CWE-306
Missing Authentication for Critical Function
CVE-2021-47940 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
587 8.2 HIGH
Network
- - WordPress Plugin Survey & Poll 1.5.7.3 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the wp_sap co… New CWE-89
SQL Injection
CVE-2021-47941 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
588 8.8 HIGH
Network
- - TextPattern CMS 4.8.7 contains a remote code execution vulnerability that allows authenticated attackers to execute arbitrary commands by uploading malicious PHP files through the file upload functio… New CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2021-47943 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
589 5.3 MEDIUM
Network
- - OpenCart 3.0.3.6 contains a cross-site request forgery vulnerability in the /account/edit endpoint that allows unauthenticated attackers to modify victim account details by tricking users into visiti… New CWE-352
 Origin Validation Error
CVE-2021-47946 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
590 5.4 MEDIUM
Network
- - WordPress GetPaid Plugin 2.4.6 contains an HTML injection vulnerability that allows authenticated attackers to inject arbitrary HTML code by exploiting the Help Text field in payment forms. Attackers… New CWE-80
Basic XSS
CVE-2021-47948 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm