Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208461 4.9 警告 Linux - Linux Kernel の drivers/isdn/mISDN/socket.c の mISDN_sock_recvmsg 関数における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-7266 2015-08-11 16:52 2013-12-8 Show GitHub Exploit DB Packet Storm
208462 4.3 警告 GNOME Project - GNOME libsvg における任意のファイルを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2013-1881 2015-08-11 16:52 2013-05-13 Show GitHub Exploit DB Packet Storm
208463 6.9 警告 Linux - Linux Kernel の drivers/usb/class/cdc-wdm.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-1860 2015-08-11 16:52 2013-03-20 Show GitHub Exploit DB Packet Storm
208464 7.5 危険 アップル
Florian Frank
- JSON gem におけるサービス運用妨害 (リソース消費) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-0269 2015-08-11 16:52 2013-02-11 Show GitHub Exploit DB Packet Storm
208465 6.8 警告 オラクル - Oracle Java SE および JavaFX における JavaFX に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5870 2015-08-11 16:50 2014-01-14 Show GitHub Exploit DB Packet Storm
208466 5 警告 レッドハット
日立
IBM
オラクル
- Oracle Java SE および Java SE Embedded における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5910 2015-08-11 16:48 2014-01-14 Show GitHub Exploit DB Packet Storm
208467 9.3 危険 オラクル - Oracle Java SE および Java SE Embedded における Libraries に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5893 2015-08-11 16:43 2014-01-14 Show GitHub Exploit DB Packet Storm
208468 10 危険 レッドハット
日立
IBM
オラクル
- 複数の Oracle Java 製品における 2D に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5907 2015-08-11 16:39 2014-01-14 Show GitHub Exploit DB Packet Storm
208469 5 警告 レッドハット
日立
オラクル
- Oracle Java SE および Java SE Embedded における CORBA に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5896 2015-08-11 16:36 2014-01-14 Show GitHub Exploit DB Packet Storm
208470 7.5 危険 レッドハット
日立
オラクル
- Oracle Java SE および Java SE Embedded における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5878 2015-08-11 16:34 2014-01-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1961 7.2 HIGH
Network
- - Path traversal vulnerability exists in GROWI v7.5.0 and earlier, which may allow an attacker to execute arbitrary EJS templates on the server when an email server is running in GROWI. CWE-22
Path Traversal
CVE-2026-41951 2026-05-13 00:10 2026-05-11 Show GitHub Exploit DB Packet Storm
1962 3.3 LOW
Local
- - The automatic folder creation feature of Lhaz and Lhaz+ provided by Chitora soft contains a path traversal vulnerability. When the affected product is configured with the automatic folder creation fe… CWE-22
Path Traversal
CVE-2026-41530 2026-05-13 00:10 2026-05-12 Show GitHub Exploit DB Packet Storm
1963 7.4 HIGH
Network
- - "Kura Sushi Official App" provided by EPG, Inc. is vulnerable to improper certificate validation. A man-in-the-middle attack may allow eavesdropping on, or altering, the communication on push notific… CWE-295
Improper Certificate Validation 
CVE-2026-41872 2026-05-13 00:10 2026-05-12 Show GitHub Exploit DB Packet Storm
1964 - - - Prior to 2025-11-03, well-intended users of Terraform or REST API for Google Cloud AlloyDB for PostgreSQL could have created clusters with an insecure default password which could have been exploited… CWE-1392
 Use of Default Credentials
CVE-2026-7428 2026-05-13 00:09 2026-05-12 Show GitHub Exploit DB Packet Storm
1965 5.3 MEDIUM
Network
- - webpack-dev-server versions up to and including 5.2.3 are vulnerable to cross-origin source code exposure when serving over a non-potentially trustworthy origin such as plain HTTP. The previous fix r… CWE-749
 Exposed Dangerous Method or Function
CVE-2026-6402 2026-05-13 00:08 2026-05-12 Show GitHub Exploit DB Packet Storm
1966 7.4 HIGH
Network
- - When safe filter is used with variable expansion, all following pipelines on the same string are incorrectly interpreted as safe too, enabling unsafe data to be unescaped. This can enable SQL / LDAP … CWE-235
 Improper Handling of Extra Parameters
CVE-2026-27851 2026-05-13 00:08 2026-05-12 Show GitHub Exploit DB Packet Storm
1967 6.8 MEDIUM
Adjacent
- - Attacker can use a specially crafted base64 exchange between Dovecot and Client to fake SCRAM TLS channel binding. This requires that the attacker is able to position itself between Dovecot and the c… CWE-99
Resource Injection
CVE-2026-33603 2026-05-13 00:08 2026-05-12 Show GitHub Exploit DB Packet Storm
1968 5.3 MEDIUM
Network
- - Attacker can upload a malicious Sieve script over ManageSieve service (or locally) to bypass configured CPU time limits for Sieve up to 130 times of the configured limit. Attacker can use this to deg… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-40016 2026-05-13 00:08 2026-05-12 Show GitHub Exploit DB Packet Storm
1969 3.1 LOW
Network
- - Attacker can use the IMAP SETACL command to inject the anyone permission to user's dovecot-acl file even if imap_acl_allow_anyone=no. This causes folders to be spammed to all users. The impact is lim… CWE-284
Improper Access Control
CVE-2026-40020 2026-05-13 00:08 2026-05-12 Show GitHub Exploit DB Packet Storm
1970 4.3 MEDIUM
Network
- - An attacker can cause uncontrolled memory usage with excessive bracing over IMAP. The fix in CVE-2026-27857 was incomplete, only blocking one way of doing this, so there was still another way left op… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-42006 2026-05-13 00:08 2026-05-12 Show GitHub Exploit DB Packet Storm