Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
212901 5.1 警告 LINE株式会社 - LINE における意図しないアプリ内関数が呼び出される脆弱性 CWE-DesignError
CVE-2015-0897 2015-03-20 15:31 2015-03-20 Show GitHub Exploit DB Packet Storm
212902 4.9 警告 Xen プロジェクト - Xen におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-2150 2015-03-20 14:54 2015-03-10 Show GitHub Exploit DB Packet Storm
212903 1.9 注意 オラクル - Oracle Java SE における Serviceability に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-0413 2015-03-20 14:42 2015-01-20 Show GitHub Exploit DB Packet Storm
212904 6.9 警告 オラクル - Oracle Java SE における Install に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-0421 2015-03-20 14:33 2015-01-20 Show GitHub Exploit DB Packet Storm
212905 9.3 危険 オラクル - Oracle Java SE における Hotspot に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-0437 2015-03-20 14:29 2015-01-20 Show GitHub Exploit DB Packet Storm
212906 7.2 危険 Linux - Linux Kernel の XFS の実装 におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-0274 2015-03-20 11:58 2015-02-23 Show GitHub Exploit DB Packet Storm
212907 4.3 警告 eXtplorer - eXtplorer におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-0896 2015-03-20 11:42 2015-03-17 Show GitHub Exploit DB Packet Storm
212908 5 警告 シスコシステムズ - Cisco Content Services Switch 11500 デバイスの管理インターフェースにおけるローカルネットワークデバイスへの制限を回避される脆弱性 CWE-Other
その他
CVE-2015-0667 2015-03-20 11:35 2015-03-18 Show GitHub Exploit DB Packet Storm
212909 4.3 警告 シスコシステムズ - Cisco AnyConnect Secure Mobility Client の IPC チャネルにおける任意のユーザ空間メモリ領域に書き込まれる脆弱性 CWE-20
不適切な入力確認
CVE-2015-0664 2015-03-20 11:20 2015-03-14 Show GitHub Exploit DB Packet Storm
212910 4.3 警告 Mozilla Foundation - Mozilla Firefox および Thunderbird のフォーム自動補完機能における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2015-0822 2015-03-19 17:42 2015-02-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2351 6.5 MEDIUM
Network
- - Directory Traversal vulnerability in Easy Chat Server 3.1 allows a remote attacker to obtain sensitive information and execute arbitrary code via the UserName parameter CWE-22
Path Traversal
CVE-2026-36227 2026-05-23 03:27 2026-05-23 Show GitHub Exploit DB Packet Storm
2352 7.3 HIGH
Network
- - Buffer Overflow vulnerability in Easy Chat Server 3.1 allows a remote attacker to obtain sensitive information and execute arbitrary code via the chat message functionality CWE-120
Classic Buffer Overflow
CVE-2026-36228 2026-05-23 03:27 2026-05-23 Show GitHub Exploit DB Packet Storm
2353 7.3 HIGH
Network
- - An issue in ClipBucket v5 v.5.5.2 allows an attacker to execute arbitrary code via the Authentication interface, login page endpoint and HTTP response security headers components CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2026-37470 2026-05-23 03:27 2026-05-23 Show GitHub Exploit DB Packet Storm
2354 6.1 MEDIUM
Network
- - Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged to execute XSS attacks in applications that attempt to sanitize input HTML befo… - CVE-2026-42506 2026-05-23 03:16 2026-05-23 Show GitHub Exploit DB Packet Storm
2355 6.1 MEDIUM
Network
- - Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged to execute XSS attacks in applications that attempt to sanitize input HTML befo… - CVE-2026-42502 2026-05-23 03:16 2026-05-23 Show GitHub Exploit DB Packet Storm
2356 8.8 HIGH
Network
ivanti secure_access_client An improper certificate validation vulnerability in Ivanti Secure Access Client before 22.8R6 allows a remote unauthenticated attacker to execute arbitrary code. CWE-295
Improper Certificate Validation 
CVE-2026-8992 2026-05-23 02:50 2026-05-23 Show GitHub Exploit DB Packet Storm
2357 7.1 HIGH
Network
mattermost mattermost_server Mattermost versions 11.6.x <= 11.6.0, 11.5.x <= 11.5.3, 11.4.x <= 11.4.4, 10.11.x <= 10.11.14 fail to validate file ownership and access control, which allows an authenticated user to access and down… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-3473 2026-05-23 02:21 2026-05-22 Show GitHub Exploit DB Packet Storm
2358 4.3 MEDIUM
Network
mattermost mattermost_server Mattermost versions 11.6.x <= 11.6.0, 11.5.x <= 11.5.3, 11.4.x <= 11.4.4, 10.11.x <= 10.11.14 fail to sanitize team member data when returned via API to users without elevated permissions which allow… CWE-200
Information Exposure
CVE-2026-3636 2026-05-23 02:21 2026-05-22 Show GitHub Exploit DB Packet Storm
2359 5.3 MEDIUM
Network
mattermost mattermost_server Mattermost versions 11.6.x <= 11.6.0, 11.5.x <= 11.5.3, 11.4.x <= 11.4.4, 10.11.x <= 10.11.14 fail to archive the channel before removing persistent notifications which allows authenticated user to c… CWE-362
Race Condition
CVE-2026-4635 2026-05-23 02:20 2026-05-22 Show GitHub Exploit DB Packet Storm
2360 4.3 MEDIUM
Network
mattermost mattermost_server Mattermost versions 11.6.x <= 11.6.0, 11.5.x <= 11.5.3, 11.4.x <= 11.4.4, 10.11.x <= 10.11.14 fail to validate user-supplied input in API request handlers which allows an authenticated attacker to cr… CWE-1287
 Improper Validation of Specified Type of Input
CVE-2026-4646 2026-05-23 02:20 2026-05-22 Show GitHub Exploit DB Packet Storm