Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207181 7.5 危険 コニカミノルタビジネスソリューションズ株式会社 - Konica Minolta FTP Utility におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-7767 2015-10-13 18:04 2015-08-21 Show GitHub Exploit DB Packet Storm
207182 9 危険 Zoho Corporation - ZOHO ManageEngine OpManager の PGSQL:SubmitQuery.do における SQL クエリの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-7766 2015-10-13 17:33 2015-07-24 Show GitHub Exploit DB Packet Storm
207183 9 危険 Zoho Corporation - ZOHO ManageEngine OpManager における管理者のアクセス権を取得される脆弱性 CWE-Other
その他
CVE-2015-7765 2015-10-13 17:33 2015-07-24 Show GitHub Exploit DB Packet Storm
207184 5 警告 アップル - Apple OS X のメールにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-7761 2015-10-13 16:58 2015-09-30 Show GitHub Exploit DB Packet Storm
207185 5 警告 アップル - Apple OS X の launchd の libxpc におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-7760 2015-10-13 16:58 2015-09-30 Show GitHub Exploit DB Packet Storm
207186 2.1 注意 アップル - Apple iOS におけるユーザの連絡先データを読まれる脆弱性 CWE-200
情報漏えい
CVE-2015-5923 2015-10-13 16:58 2015-09-30 Show GitHub Exploit DB Packet Storm
207187 7.2 危険 アップル - Apple watchOS の GasGaugeにおける権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2015-5919 2015-10-13 16:58 2015-09-21 Show GitHub Exploit DB Packet Storm
207188 7.2 危険 アップル - Apple watchOS の GasGauge における権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2015-5918 2015-10-13 16:58 2015-09-21 Show GitHub Exploit DB Packet Storm
207189 5 警告 アップル - Apple OS X における脆弱性 CWE-Other
その他
CVE-2015-5915 2015-10-13 16:58 2015-09-30 Show GitHub Exploit DB Packet Storm
207190 4.7 警告 アップル - Apple OS X の EFI コンポーネントにおける EFI のアップデート処理中にファームウェアを変更される脆弱性 CWE-Other
その他
CVE-2015-5914 2015-10-13 16:58 2015-09-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
821 6.3 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.4.22 contains a time-of-check/time-of-use race condition in the OpenShell filesystem bridge that allows attackers to read files outside the intended mount root. Attackers can exp… Update CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-44113 2026-05-14 01:16 2026-05-7 Show GitHub Exploit DB Packet Storm
822 - - - Craft CMS is a content management system (CMS). From 4.0.0 to before 4.17.12 and 5.9.18, Craft CMS which contains an input-handling flaw in a Yii object creation path that let any authenticated user … New CWE-479
CVE-2026-44011 2026-05-14 01:16 2026-05-13 Show GitHub Exploit DB Packet Storm
823 - - - Craft CMS is a content management system (CMS). From 4.0.0 to before 4.17.12 and 5.9.18, the GraphQL Address element resolver (src/gql/resolvers/elements/Address.php) performs no schema scope filteri… New CWE-862
 Missing Authorization
CVE-2026-44010 2026-05-14 01:16 2026-05-13 Show GitHub Exploit DB Packet Storm
824 9.9 CRITICAL
Network
- - wger is a free, open-source workout and fitness manager. Prior to 2.6, the reset_user_password and gym_permissions_user_edit views in wger perform a gym-scope authorization check using Python object … New CWE-863
 Incorrect Authorization
CVE-2026-43948 2026-05-14 01:16 2026-05-13 Show GitHub Exploit DB Packet Storm
825 6.8 MEDIUM
Network
bx33661 wireshark_mcp Wireshark MCP is an MCP Server that turns tshark into a structured analysis interface, then layers in optional Wireshark suite utilities. In 1.1.5 and earlier, wireshark-mcp exposes a wireshark_expor… New CWE-22
Path Traversal
CVE-2026-43901 2026-05-14 01:16 2026-05-12 Show GitHub Exploit DB Packet Storm
826 7.7 HIGH
Network
- - Outline is a service that allows for collaborative documentation. From 0.84.0 to 1.7.0, the subscriptions.create API endpoint in server/routes/api/subscriptions/subscriptions.ts exhibits a broken aut… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-43890 2026-05-14 01:16 2026-05-12 Show GitHub Exploit DB Packet Storm
827 4.3 MEDIUM
Network
- - WWBN AVideo is an open source video platform. In versions up to and including 29.0, the unauthenticated plugin/Scheduler/downloadICS.php endpoint passes attacker-controlled title, description, and jo… New CWE-93
CRLF Injection
CVE-2026-43882 2026-05-14 01:16 2026-05-12 Show GitHub Exploit DB Packet Storm
828 6.4 MEDIUM
Network
- - WWBN AVideo is an open source video platform. In versions up to and including 29.0, objects/notifySubscribers.json.php takes the raw message POST parameter and passes it into sendSiteEmail(), which s… New CWE-79
Cross-site Scripting
CVE-2026-43876 2026-05-14 01:16 2026-05-12 Show GitHub Exploit DB Packet Storm
829 - - - In the Linux kernel, the following vulnerability has been resolved: liveupdate: luo_file: remember retrieve() status LUO keeps track of successful retrieve attempts on a LUO file. It does so to av… New - CVE-2026-43489 2026-05-14 01:16 2026-05-14 Show GitHub Exploit DB Packet Storm
830 - - - In the Linux kernel, the following vulnerability has been resolved: usb: xhci: Prevent interrupt storm on host controller error (HCE) The xHCI controller reports a Host Controller Error (HCE) in UA… New - CVE-2026-43488 2026-05-14 01:16 2026-05-14 Show GitHub Exploit DB Packet Storm