Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208901 9.3 危険 Mozilla Foundation - Mozilla Firefox の libstagefright における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2015-4496 2015-10-6 18:04 2015-08-12 Show GitHub Exploit DB Packet Storm
208902 2.6 注意 Dotclear - Dotclear におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-5651 2015-10-6 18:01 2015-10-2 Show GitHub Exploit DB Packet Storm
208903 7.5 危険 Canary Labs - Canary Labs 製 Trend Web Server におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-5653 2015-10-6 18:00 2015-10-1 Show GitHub Exploit DB Packet Storm
208904 4.3 警告 アップル - Apple Safari におけるユーザを追跡される脆弱性 CWE-310
暗号の問題
CVE-2015-1129 2015-10-6 10:48 2015-04-8 Show GitHub Exploit DB Packet Storm
208905 5 警告 アップル - Apple iOS のカーネルの XNU におけるシーケンス番号保護メカニズムを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2015-5879 2015-10-6 10:38 2015-09-16 Show GitHub Exploit DB Packet Storm
208906 7.5 危険 アップル - Apple iOS および iTunes の CoreText における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2015-5874 2015-10-6 10:38 2015-09-16 Show GitHub Exploit DB Packet Storm
208907 7.2 危険 アップル - Apple iOS のカーネルにおける権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2015-5896 2015-10-6 10:38 2015-09-16 Show GitHub Exploit DB Packet Storm
208908 5 警告 アップル - Apple iOS の CFNetwork Cookies コンポーネントにおけるユーザを追跡される脆弱性 CWE-200
情報漏えい
CVE-2015-5885 2015-10-6 10:38 2015-09-16 Show GitHub Exploit DB Packet Storm
208909 7.2 危険 アップル - Apple iOS の processor_set_tasks API の実装におけるエンタイトルメント保護メカニズムを回避される脆弱性 CWE-Other
その他
CVE-2015-5882 2015-10-6 10:38 2015-09-16 Show GitHub Exploit DB Packet Storm
208910 9.3 危険 アップル - Apple iOS の Dev Tools の dyld における特権付きコンテキスト内で任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2015-5876 2015-10-6 10:38 2015-09-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2771 8.8 HIGH
Network
- - Schlix CMS 2.2.6-6 contains a remote code execution vulnerability that allows authenticated attackers to execute arbitrary PHP code by uploading malicious extension packages through the block manager… CWE-94
Code Injection
CVE-2021-47964 2026-05-19 02:26 2026-05-16 Show GitHub Exploit DB Packet Storm
2772 7.5 HIGH
Network
- - Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to 1.0.8.2, Vvveb CMS does not validate the sign of the quantity parameter on the cart-ad… CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2026-44826 2026-05-19 02:26 2026-05-16 Show GitHub Exploit DB Packet Storm
2773 - - - Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to 1.0.8.3, This vulnerability is fixed in 1.0.8.3. CWE-79
Cross-site Scripting
CVE-2026-45616 2026-05-19 02:26 2026-05-16 Show GitHub Exploit DB Packet Storm
2774 8.1 HIGH
Network
- - Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to 1.0.8.3, the backend admin/auth-token endpoint allows an authenticated administrator t… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-46407 2026-05-19 02:26 2026-05-16 Show GitHub Exploit DB Packet Storm
2775 7.6 HIGH
Network
- - Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to 1.0.8.3, the checkout endpoint accepts a user-controlled cart_id and uses it to enter … CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-46408 2026-05-19 02:26 2026-05-16 Show GitHub Exploit DB Packet Storm
2776 6.4 MEDIUM
Network
- - Composr CMS 10.0.34 contains a persistent cross-site scripting vulnerability that allows authenticated administrators to inject malicious scripts through the banner management interface. Attackers wi… CWE-79
Cross-site Scripting
CVE-2020-37237 2026-05-19 02:26 2026-05-17 Show GitHub Exploit DB Packet Storm
2777 6.4 MEDIUM
Network
- - CMS Made Simple 2.2.15 contains a stored cross-site scripting vulnerability that allows authenticated users with Content Manager access to inject malicious scripts through SVG file uploads. Attackers… CWE-79
Cross-site Scripting
CVE-2020-37238 2026-05-19 02:26 2026-05-17 Show GitHub Exploit DB Packet Storm
2778 5.3 MEDIUM
Network
- - bloofoxCMS 0.5.2.1 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions by tricking logged-in users into visiting malicious pages. Attackers can… CWE-352
 Origin Validation Error
CVE-2020-37241 2026-05-19 02:26 2026-05-17 Show GitHub Exploit DB Packet Storm
2779 5.4 MEDIUM
Network
- - CouchCMS 2.2.1 contains a cross-site scripting vulnerability that allows authenticated attackers to execute arbitrary JavaScript by uploading malicious SVG files through the file upload functionality… CWE-79
Cross-site Scripting
CVE-2021-47955 2026-05-19 02:26 2026-05-17 Show GitHub Exploit DB Packet Storm
2780 8.8 HIGH
Network
- - TextPattern CMS 4.9.0-dev contains a remote code execution vulnerability that allows authenticated attackers to upload arbitrary PHP files by exploiting the plugin upload functionality. Attackers can… CWE-352
 Origin Validation Error
CVE-2021-47976 2026-05-19 02:26 2026-05-17 Show GitHub Exploit DB Packet Storm