Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208101 6.8 警告 アップル - 複数の Apple 製品における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2015-7033 2015-10-26 14:33 2015-10-15 Show GitHub Exploit DB Packet Storm
208102 4.3 警告 アップル - 複数の Apple 製品における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-7032 2015-10-26 14:33 2015-10-15 Show GitHub Exploit DB Packet Storm
208103 5 警告 アップル - Apple iOS および OS X の Office Viewer における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2015-3784 2015-10-26 14:33 2015-08-13 Show GitHub Exploit DB Packet Storm
208104 7.5 危険 Drupal 7 driver for SQL Server and SQL Azure project - Drupal 7 driver for SQL Server and SQL Azure の sqlsrv/database.inc の escapeLike 関数における任意の SQL コマンドを実行される脆弱性 CWE-89
SQLインジェクション
CVE-2015-7876 2015-10-26 11:31 2015-09-15 Show GitHub Exploit DB Packet Storm
208105 5.8 警告 Kentico - Kentico CMS の CMSPages/GetDocLink.ashx におけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2015-7823 2015-10-26 11:01 2015-10-15 Show GitHub Exploit DB Packet Storm
208106 5 警告 Kentico - Kentico CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-7822 2015-10-26 11:01 2015-10-15 Show GitHub Exploit DB Packet Storm
208107 9 危険 ownCloud - icewind1991 SMB における任意の SMB コマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2015-7698 2015-10-23 17:30 2015-09-30 Show GitHub Exploit DB Packet Storm
208108 4 警告 ownCloud - ownCloud Server の仮想ファイルシステムにおけるアクセス制限を回避される脆弱性 CWE-Other
その他
CVE-2015-5954 2015-10-23 17:30 2015-08-3 Show GitHub Exploit DB Packet Storm
208109 3.5 注意 ownCloud - ownCloud Server の activity アプリケーションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-5953 2015-10-23 17:30 2015-08-3 Show GitHub Exploit DB Packet Storm
208110 9 危険 ownCloud - ownCloud Server の外部の SMB ストレージドライバにおける任意の SMB コマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2015-4718 2015-10-23 17:30 2015-06-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2591 6.8 MEDIUM
Physics
zte zx297520v3_firmware ZTE ZX297520V3 BootROM contains a vulnerability that allows arbitrary memory writes via USB. Attackers can exploit the lack of target address validation in the USB download mode to write data to any … CWE-787
 Out-of-bounds Write
CVE-2026-40003 2026-05-14 04:19 2026-05-7 Show GitHub Exploit DB Packet Storm
2592 7.8 HIGH
Local
zte zxcloud_irai There exists an openssl.cnf privilege escalation vulnerability in ZTE Cloud PC client uSmartview. An attacker can execute arbitrary code locally and escalate privileges. CWE-427
 Uncontrolled Search Path Element
CVE-2026-40004 2026-05-14 04:17 2026-05-7 Show GitHub Exploit DB Packet Storm
2593 - - - GitHub Copilot CLI brings AI-powered coding assistance directly to your command line. Prior to 1.0.43, a security vulnerability has been identified in GitHub Copilot CLI where a malicious bare git r… CWE-696
 Incorrect Behavior Order
CVE-2026-45033 2026-05-14 04:17 2026-05-14 Show GitHub Exploit DB Packet Storm
2594 - - - Rejected reason: REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-40520. Reason: This candidate is a duplicate of CVE-2026-40520. Notes: All CVE users should reference CVE-2026-40520 … - CVE-2026-41410 2026-05-14 04:17 2026-05-14 Show GitHub Exploit DB Packet Storm
2595 6.5 MEDIUM
Network
- - qihang-wms commit 75c15a was discovered to contain a SQL injection vulnerability via the datascope parameter in the SysUserMapper.xml file. This vulnerability allows attackers to access sensitive dat… CWE-89
SQL Injection
CVE-2026-37429 2026-05-14 04:17 2026-05-13 Show GitHub Exploit DB Packet Storm
2596 6.5 MEDIUM
Network
- - qihang-wms commit 75c15a was discovered to contain a SQL injection vulnerability via the datascope parameter in the SysDeptMapper.xml file. This vulnerability allows attackers to access sensitive dat… CWE-89
SQL Injection
CVE-2026-37428 2026-05-14 04:17 2026-05-13 Show GitHub Exploit DB Packet Storm
2597 9.8 CRITICAL
Network
hitachi virtual_storage_one_block
vsp_g130_firmware
vsp_g150_firmware
vsp_g350_firmware
vsp_g370_firmware
vsp_g700_firmware
vsp_g900_firmware
vsp_f350_firmware
vsp_f370_firmware
vs…
Remote Code Execution Vulnerability in Hitachi Storage Navigator and the maintenance console in Hitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900, F350, F370, F700, F900, Hitachi Vi… CWE-94
Code Injection
CVE-2025-1978 2026-05-14 04:15 2026-05-7 Show GitHub Exploit DB Packet Storm
2598 5.3 MEDIUM
Network
hitachi virtual_storage_one_block
vsp_g130_firmware
vsp_g150_firmware
vsp_g350_firmware
vsp_g370_firmware
vsp_g700_firmware
vsp_g900_firmware
vsp_f350_firmware
vsp_f370_firmware
vs…
Improper restriction of excessive authentication attempts vulnerability in Hitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900, F350, F370, F700, F900, Hitachi Virtual Storage Platfor… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2025-2514 2026-05-14 04:14 2026-05-7 Show GitHub Exploit DB Packet Storm
2599 7.5 HIGH
Network
haxx curl libcurl might in some circumstances reuse the wrong connection for SMB(S) transfers. libcurl features a pool of recent connections so that subsequent requests can reuse an existing connection to avo… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-5773 2026-05-14 04:13 2026-05-13 Show GitHub Exploit DB Packet Storm
2600 6.5 MEDIUM
Network
zulip zulip_server Zulip is an open-source team collaboration tool. Prior to 12.0, With message_edit_history_visibility_policy set to "moves", /api/v1/messages/{id}/history still returns historical content values, allo… CWE-284
NVD-CWE-noinfo
Improper Access Control
CVE-2026-40300 2026-05-14 03:58 2026-05-13 Show GitHub Exploit DB Packet Storm