Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
213081 4.3 警告 シスコシステムズ - Cisco Prime Infrastructure の Web インターフェースにおけるクリックジャッキング攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-2147 2015-02-17 16:57 2014-02-25 Show GitHub Exploit DB Packet Storm
213082 6.8 警告 シスコシステムズ - Cisco Prime Infrastructure の INSERT ページにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-2152 2015-02-17 16:57 2014-02-25 Show GitHub Exploit DB Packet Storm
213083 4.3 警告 シスコシステムズ - Cisco Prime Infrastructure の INSERT ページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2153 2015-02-17 16:57 2014-02-25 Show GitHub Exploit DB Packet Storm
213084 4.3 警告 シスコシステムズ - Cisco Prime Security Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3365 2015-02-17 16:57 2014-05-7 Show GitHub Exploit DB Packet Storm
213085 7.8 危険 シスコシステムズ - Cisco IOS の Zone-Based Firewall の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-0592 2015-02-17 16:57 2015-02-10 Show GitHub Exploit DB Packet Storm
213086 6.5 警告 シスコシステムズ - Cisco Secure Access Control System の ACS View レポートインターフェースページにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-0580 2015-02-17 16:57 2015-02-11 Show GitHub Exploit DB Packet Storm
213087 4.9 警告 シスコシステムズ - Cisco IOS の IOS Shell におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-0606 2015-02-17 16:57 2015-02-10 Show GitHub Exploit DB Packet Storm
213088 7.1 危険 シスコシステムズ - Cisco IOS の Measurement などの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2015-0608 2015-02-17 16:57 2015-02-11 Show GitHub Exploit DB Packet Storm
213089 6.5 警告 シスコシステムズ - Cisco TelePresence IX5000 デバイス上で稼動する Cisco IX の管理用 web-management ポータルにおけるヘルプデスクと同等の権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-0611 2015-02-17 16:56 2015-02-11 Show GitHub Exploit DB Packet Storm
213090 5 警告 シスコシステムズ - Cisco Adaptive Security Appliance Software の WebVPN サブシステムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-0619 2015-02-17 16:56 2015-02-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2031 7.3 HIGH
Network
- - YetAnotherForum.NET (YAF.NET) is a C# ASP.NET forum. Prior to 4.0.5 and 3.2.12, the thread posting and reply feature accepts user-supplied content via a a post or reply that is stored server-side and… CWE-79
CWE-80
CWE-116
Cross-site Scripting
Basic XSS
 Improper Encoding or Escaping of Output
CVE-2026-43939 2026-05-14 03:24 2026-05-13 Show GitHub Exploit DB Packet Storm
2032 6.5 MEDIUM
Network
- - requests-hardened is a library that overrides the default behaviors of the requests library, and adds new security features. Prior to , the SSRF protection in requests-hardened fails to block IP addr… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-42175 2026-05-14 03:24 2026-05-13 Show GitHub Exploit DB Packet Storm
2033 - - - DevGuard provides vulnerability management for the full software supply chain. Prior to 1.2.2, the SessionMiddleware accepts a client-supplied X-Admin-Token HTTP request header and uses its raw strin… CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2026-42300 2026-05-14 03:24 2026-05-13 Show GitHub Exploit DB Packet Storm
2034 - - - Fides is an open-source privacy engineering platform. From 2.75.0 to before 2.83.2, Fides deployments that enable both subject identity verification and duplicate privacy request detection are affect… CWE-288
CWE-306
CWE-841
Authentication Bypass Using an Alternate Path or Channel
Missing Authentication for Critical Function
 Improper Enforcement of Behavioral Workflow
CVE-2026-42303 2026-05-14 03:24 2026-05-13 Show GitHub Exploit DB Packet Storm
2035 4.3 MEDIUM
Network
- - Kubewarden is a policy engine for Kubernetes. Prior to , An attacker with privileged AdmissionPolicy or AdmissionPolicyGroup create permissions (which isn't the default) can craft a policy that makes… CWE-862
 Missing Authorization
CVE-2026-42541 2026-05-14 03:24 2026-05-13 Show GitHub Exploit DB Packet Storm
2036 8.8 HIGH
Network
- - AntSword is a cross-platform website management toolkit. Prior to 2.1.16, incomplete noxss() sanitization leads to 1-click RCE via jquery.terminal format code injection. This vulnerability is fixed i… CWE-79
CWE-94
CWE-1188
Cross-site Scripting
Code Injection
 Insecure Default Initialization of Resource
CVE-2026-43892 2026-05-14 03:24 2026-05-13 Show GitHub Exploit DB Packet Storm
2037 7.5 HIGH
Network
- - phpseclib is a PHP secure communications library. Prior to 1.0.29, 2.0.54, and 3.0.52, anyone loading untrusted ASN1 files (eg. X509 certificates, RSA PKCS8 private or public keys, etc). This is a by… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-44167 2026-05-14 03:24 2026-05-13 Show GitHub Exploit DB Packet Storm
2038 8.2 HIGH
Network
- - ssrfcheck is a library that checks if a string contains a potential SSRF attack. In 1.3.0 and earlier, ssrfcheck fails to block Server-Side Request Forgery attacks when the target private IP address … CWE-184
CWE-918
 Incomplete Blacklist
Server-Side Request Forgery (SSRF) 
CVE-2026-43929 2026-05-14 03:24 2026-05-13 Show GitHub Exploit DB Packet Storm
2039 3.8 LOW
Network
hono hono Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.18, improper validation of the JWT NumericDate claims exp, nbf, and iat in hono/utils/jwt allows to… CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2026-44459 2026-05-14 03:21 2026-05-14 Show GitHub Exploit DB Packet Storm
2040 9.1 CRITICAL
Network
- - Pingvin Share X is a secure and easy self-hosted file sharing platform. From 1.14.1 to 1.16.2, a critical authentication bypass vulnerability allows an attacker who has obtained a valid username and … CWE-287
CWE-697
Improper Authentication
 Incorrect Comparison
CVE-2026-44196 2026-05-14 03:21 2026-05-13 Show GitHub Exploit DB Packet Storm