Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209061 2.6 注意 株式会社イグレックス - MilkyStep におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-2957 2015-06-16 16:32 2015-06-9 Show GitHub Exploit DB Packet Storm
209062 6.4 警告 株式会社イグレックス - MilkyStep におけるアクセス制限不備の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-2958 2015-06-16 16:32 2015-06-9 Show GitHub Exploit DB Packet Storm
209063 7.5 危険 CGI RESCUE - BloBee における任意のファイルを作成される脆弱性 CWE-20
不適切な入力確認
CVE-2015-2962 2015-06-16 16:32 2015-06-12 Show GitHub Exploit DB Packet Storm
209064 6.9 警告 シスコシステムズ - Cisco IOS の TCL インタプリタにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-4185 2015-06-16 15:07 2015-06-12 Show GitHub Exploit DB Packet Storm
209065 5 警告 シスコシステムズ - Cisco Email Security Appliance デバイスの Anti-spam Scanner における電子メールの制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2015-4184 2015-06-16 15:07 2015-06-12 Show GitHub Exploit DB Packet Storm
209066 5.5 警告 シスコシステムズ - Cisco Identity Services Engine の管理 Web インターフェースにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-4182 2015-06-16 15:07 2015-06-11 Show GitHub Exploit DB Packet Storm
209067 5 警告 シスコシステムズ - Cisco Network Convergence System 6000 デバイス上で稼動する Cisco IOS XR の telnetd におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-0776 2015-06-16 15:07 2015-06-10 Show GitHub Exploit DB Packet Storm
209068 5 警告 シスコシステムズ - 複数の Cisco デバイス上で稼動する Cisco NX-OS のバナーの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-0775 2015-06-16 15:07 2015-06-10 Show GitHub Exploit DB Packet Storm
209069 7.1 危険 シスコシステムズ - Cisco TelePresence Video Communication Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-0772 2015-06-16 15:07 2015-06-9 Show GitHub Exploit DB Packet Storm
209070 7.8 危険 シスコシステムズ - Cisco CRS-3 Carrier Routing System 用 Cisco IOS XR におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-0769 2015-06-16 15:07 2015-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1381 - - - An issue was discovered in the PaperCut Hive Ricoh embedded application. When the "Deep Logging" (diagnostic) mode is enabled, the application inadvertently records administrative credentials in plai… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2026-7824 2026-05-8 00:10 2026-05-5 Show GitHub Exploit DB Packet Storm
1382 - - - A type confusion vulnerability in Qt SVG allows an attacker to cause an application crash via a crafted SVG image. When processing SVG marker references, the renderer retrieves a node by its id at… CWE-122
CWE-843
Heap-based Buffer Overflow
Type Confusion
CVE-2026-6210 2026-05-8 00:10 2026-05-6 Show GitHub Exploit DB Packet Storm
1383 7.5 HIGH
Network
- - NocoBase is an AI-powered no-code/low-code platform for building business applications and enterprise solutions. Prior to version 2.0.39, the queryParentSQL() function in the core database package co… CWE-89
SQL Injection
CVE-2026-41640 2026-05-8 00:08 2026-05-7 Show GitHub Exploit DB Packet Storm
1384 - - - In Jupyter Notebook versions 7.0.0 through 7.5.5, JupyterLab versions 4.5.6 and earlier, and the corresponding @jupyter-notebook/help-extension and @jupyterlab/help-extension packages before 7.5.6 an… CWE-79
Cross-site Scripting
CVE-2026-40171 2026-05-8 00:07 2026-05-7 Show GitHub Exploit DB Packet Storm
1385 - - - OpenMRS Core is an open source electronic medical record system platform. In versions 2.7.8 and earlier and versions 2.8.0 through 2.8.5, the `/openmrs/moduleResources/{moduleid}` endpoint is vulnera… CWE-22
Path Traversal
CVE-2026-40075 2026-05-8 00:06 2026-05-6 Show GitHub Exploit DB Packet Storm
1386 7.5 HIGH
Network
- - GoBGP is an open source Border Gateway Protocol (BGP) implementation in the Go Programming Language. In version 4.3.0, a remote Denial of Service (DoS) vulnerability exists in GoBGP due to a nil poin… CWE-476
 NULL Pointer Dereference
CVE-2026-41642 2026-05-8 00:06 2026-05-7 Show GitHub Exploit DB Packet Storm
1387 9.6 CRITICAL
Network
- - OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. Prior to version 7.0.0-rc3, the Script Runner widget allows users to execute Py… CWE-250
 Execution with Unnecessary Privileges
CVE-2026-42088 2026-05-8 00:05 2026-05-5 Show GitHub Exploit DB Packet Storm
1388 5.3 MEDIUM
Network
flowiseai flowise A security flaw has been discovered in FlowiseAI Flowise up to 3.0.12. Affected is the function Login of the file packages/server/src/enterprise/services/account.service.ts of the component API Respo… CWE-200
CWE-284
CWE-312
Information Exposure
Improper Access Control
 Cleartext Storage of Sensitive Information
CVE-2026-8026 2026-05-8 00:04 2026-05-6 Show GitHub Exploit DB Packet Storm
1389 5.9 MEDIUM
Network
- - OpenTelemetry.Resources.Azure is the .NET resource detector for Azure environments. In versions 1.15.0-beta.1 and earlier, the AzureVmMetaDataRequestor class makes HTTP requests to the Azure VM insta… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-41483 2026-05-8 00:04 2026-05-7 Show GitHub Exploit DB Packet Storm
1390 5.3 MEDIUM
Adjacent
- - OpenTelemetry.Exporter.OneCollector is a .NET exporter that sends telemetry to a OneCollector back-end over HTTP. In versions 1.15.0 and earlier, when a request to the configured back-end or collecto… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-41484 2026-05-8 00:04 2026-05-7 Show GitHub Exploit DB Packet Storm