Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 12:06 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207371 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2015-1301 2015-09-7 14:08 2015-09-1 Show GitHub Exploit DB Packet Storm
207372 5 警告 Google - Google Chrome で使用される Blink の core/loader/FrameFetchContext.cpp における重要な情報を取得される脆弱性 CWE-Other
その他
CVE-2015-1300 2015-09-7 14:08 2015-09-1 Show GitHub Exploit DB Packet Storm
207373 7.5 危険 Google - Google Chrome で使用される Blink の Shared Timer の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-1299 2015-09-7 14:08 2015-09-1 Show GitHub Exploit DB Packet Storm
207374 4.3 警告 Google - Google Chrome の extensions/browser/api/runtime/runtime_api.cc における任意の URL へのアクセスを誘発される脆弱性 CWE-Other
その他
CVE-2015-1298 2015-09-7 14:08 2015-09-1 Show GitHub Exploit DB Packet Storm
207375 7.5 危険 Google - Google Chrome の extensions/browser/api/web_request/web_request_api.cc の WebRequest API の実装におけるアクセス制限を回避される脆弱性 CWE-Other
その他
CVE-2015-1297 2015-09-7 14:08 2015-09-1 Show GitHub Exploit DB Packet Storm
207376 5 警告 Google - Google Chrome の net/base/escape.cc の UnescapeURLWithAdjustmentsImpl の実装における SSL ロックアイコンを偽装される脆弱性 CWE-Other
その他
CVE-2015-1296 2015-09-7 14:08 2015-09-1 Show GitHub Exploit DB Packet Storm
207377 7.5 危険 Google - Google Chrome の components/printing/renderer/print_web_view_helper.cc の PrintWebViewHelper クラスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-1295 2015-09-7 14:08 2015-09-1 Show GitHub Exploit DB Packet Storm
207378 7.5 危険 Google - Google Chrome で使用される Skia の core/SkMatrix.cpp 内の SkMatrix::invertNonIdentity 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-1294 2015-09-7 14:08 2015-09-1 Show GitHub Exploit DB Packet Storm
207379 5 警告 Google - Google Chrome で使用される Blink の modules/serviceworkers/NavigatorServiceWorker.cpp における同一生成元ポリシーを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-1292 2015-09-7 14:08 2015-09-1 Show GitHub Exploit DB Packet Storm
207380 6.4 警告 Google - Google Chrome で使用される Blink の core/dom/ContainerNode.cpp における同一生成元ポリシーを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-1291 2015-09-7 14:08 2015-09-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
551 8.8 HIGH
Network
- - Crabbox before 0.9.0 contains an authentication bypass vulnerability in the coordinator user-token verification path where the verifyUserToken() function fails to reject payloads containing an admin … New CWE-290
 Authentication Bypass by Spoofing
CVE-2026-45223 2026-05-12 23:47 2026-05-12 Show GitHub Exploit DB Packet Storm
552 7.1 HIGH
Local
- - Crabbox before 0.9.0 contains a path traversal vulnerability in the Islo provider's workspace path resolution that allows attackers to supply absolute or relative paths that resolve outside the inten… New CWE-22
Path Traversal
CVE-2026-45224 2026-05-12 23:47 2026-05-12 Show GitHub Exploit DB Packet Storm
553 8.1 HIGH
Network
linuxfoundation dapr Dapr is a portable, event-driven, runtime for building distributed applications across cloud and edge. From versions 1.3.0 to before 1.15.14, 1.16.0-rc.1 to before 1.16.14, and 1.17.0-rc.1 to before … Update CWE-22
CWE-284
NVD-CWE-noinfo
Path Traversal
Improper Access Control
CVE-2026-41491 2026-05-12 23:47 2026-05-8 Show GitHub Exploit DB Packet Storm
554 8.2 HIGH
Network
- - Balbooa Joomla Forms Builder 2.0.6 contains an unauthenticated SQL injection vulnerability in the form submission handler that allows remote attackers to execute arbitrary SQL queries. Attackers can … New CWE-89
SQL Injection
CVE-2021-47930 2026-05-12 23:47 2026-05-10 Show GitHub Exploit DB Packet Storm
555 6.4 MEDIUM
Network
- - Projectsend r1295 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by submitting crafted input in the 'name' parameter of files-edi… New CWE-79
Cross-site Scripting
CVE-2021-47947 2026-05-12 23:47 2026-05-10 Show GitHub Exploit DB Packet Storm
556 7.3 HIGH
Network
- - The Custom css-js-php WordPress plugin through 2.0.7 does not properly sanitize user input before using it in a SQL query, and the result is passed to eval(), allowing unauthenticated users to execut… New - CVE-2026-6433 2026-05-12 23:47 2026-05-11 Show GitHub Exploit DB Packet Storm
557 - - - Vulnerability in Wikimedia Foundation AbuseFilter. This issue affects AbuseFilter: from * before 1.43.7, 1.44.4, 1.45.2. New CWE-20
 Improper Input Validation 
CVE-2026-34086 2026-05-12 23:45 2026-05-12 Show GitHub Exploit DB Packet Storm
558 - - - Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation OATHAuth. This issue affects OATHAuth: from * before 1.43.7, 1.44.4, 1.45.2. New CWE-200
Information Exposure
CVE-2026-34087 2026-05-12 23:45 2026-05-12 Show GitHub Exploit DB Packet Storm
559 - - - Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki. This issue affects MediaWiki: from * before 1.43.7, 1.44.4, 1.45.2. New CWE-200
Information Exposure
CVE-2026-34088 2026-05-12 23:45 2026-05-12 Show GitHub Exploit DB Packet Storm
560 - - - Vulnerability in Wikimedia Foundation Scribunto. This issue affects Scribunto: from 1.45.0 before 1.45.2. New CWE-79
Cross-site Scripting
CVE-2026-34089 2026-05-12 23:45 2026-05-12 Show GitHub Exploit DB Packet Storm