Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209161 4 警告 IBM - 複数の IBM 製品の maximouiweb/webmodule/webclient/utility/merlin.jsp における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-4965 2015-10-7 14:42 2015-09-18 Show GitHub Exploit DB Packet Storm
209162 3.5 注意 IBM - 複数の IBM 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-4944 2015-10-7 14:42 2015-08-21 Show GitHub Exploit DB Packet Storm
209163 3.5 注意 IBM - 複数の IBM Emptoris 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-4971 2015-10-7 14:41 2015-09-29 Show GitHub Exploit DB Packet Storm
209164 6 警告 IBM - IBM UrbanCode Deploy における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-4964 2015-10-7 14:41 2015-09-15 Show GitHub Exploit DB Packet Storm
209165 4.3 警告 IBM - 複数の IBM Emptoris 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-4939 2015-10-7 14:41 2015-09-17 Show GitHub Exploit DB Packet Storm
209166 3.5 注意 IBM - IBM Business Process Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-4955 2015-10-7 11:45 2015-07-16 Show GitHub Exploit DB Packet Storm
209167 9 危険 IBM - IBM QRadar SIEM における root 権限で任意のコマンドを実行される脆弱性 CWE-Other
その他
CVE-2015-4930 2015-10-7 11:45 2015-09-8 Show GitHub Exploit DB Packet Storm
209168 3.5 注意 IBM - IBM WebSphere eXtreme Scale におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-2031 2015-10-7 11:45 2015-09-28 Show GitHub Exploit DB Packet Storm
209169 5 警告 IBM - IBM WebSphere eXtreme Scale におけるアクセス権を取得される脆弱性 CWE-Other
その他
CVE-2015-2030 2015-10-7 11:45 2015-09-4 Show GitHub Exploit DB Packet Storm
209170 4.3 警告 IBM - IBM WebSphere eXtreme Scale における Web セッションをハイジャックされる脆弱性概要 CWE-Other
その他
CVE-2015-2029 2015-10-7 11:45 2015-09-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2941 9.8 CRITICAL
Network
- - A vulnerability has been found in Totolink N300RH 6.1c.1353_B20190305. Affected is the function setPasswordCfg of the file /cgi-bin/cstecgi.cgi of the component Web Management Interface. Such manipul… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-9543 2026-05-27 01:16 2026-05-26 Show GitHub Exploit DB Packet Storm
2942 3.3 LOW
Local
- - A weakness has been identified in GNU LibreDWG up to 0.14. The impacted element is the function read_2004_compressed_section of the file src/decode.c of the component Dwgbmp Utility. Executing a mani… CWE-119
CWE-125
Incorrect Access of Indexable Resource ('Range Error') 
Out-of-bounds Read
CVE-2026-9530 2026-05-27 01:16 2026-05-26 Show GitHub Exploit DB Packet Storm
2943 3.3 LOW
Local
- - A weakness has been identified in GNU LibreDWG up to 0.14. Affected is the function bit_convert_TU of the file programs/dwggrep.c of the component Dwggrep Utility. This manipulation causes out-of-bou… CWE-119
CWE-125
Incorrect Access of Indexable Resource ('Range Error') 
Out-of-bounds Read
CVE-2026-9504 2026-05-27 01:16 2026-05-26 Show GitHub Exploit DB Packet Storm
2944 - - - IEC 60870-5-104 used in bidirectional mode in RTU500 is vulnerable for a NULL pointer dereferencing, if a specially crafted sequence of messages is sent for a certain time, causing Denial of Service … CWE-476
 NULL Pointer Dereference
CVE-2026-8479 2026-05-27 01:16 2026-05-26 Show GitHub Exploit DB Packet Storm
2945 - - - FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read vulnerability in the NetFlow v9 data flowset processor. In src/netflow_plugin/netflow_v9_collector.cpp, the Data template bra… - CVE-2026-48683 2026-05-27 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2946 7.6 HIGH
Network
- - Karakeep is a elf-hostable bookmark-everything app. A Server-Side Request Forgery (SSRF) protection bypass vulnerability was identified in versions prior to 0.32.0 affecting redirect-following proces… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-45082 2026-05-27 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2947 6.2 MEDIUM
Local
- - In Arm ArmNN through 2026-03-27, an integer overflow in TensorShape::GetNumElements() in armnn/Tensor.cpp allows a crafted TFLite model file to bypass buffer size validation and trigger a heap-based … CWE-190
 Integer Overflow or Wraparound
CVE-2026-42627 2026-05-27 01:16 2026-05-23 Show GitHub Exploit DB Packet Storm
2948 - - - An Insecure Direct Object Reference (IDOR) vulnerability was discovered in ONLYOFFICE DocSpace before 3.2.1. The flaw exists in multiple REST API endpoints. This allows authenticated users with low-l… - CVE-2026-38587 2026-05-27 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2949 7.0 HIGH
Local
samba rsync Rsync versions before 3.4.3 contain a time-of-check to time-of-use (TOCTOU) race condition in daemon file handling that allows attackers to redirect file writes outside intended directories by replac… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-29518 2026-05-27 01:16 2026-05-20 Show GitHub Exploit DB Packet Storm
2950 7.8 HIGH
Local
- - A high-severity vulnerability in the deployment of Genetec RabbitMQ that allows a privilege escalation attack. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2026-25112 2026-05-27 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm