Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
213181 5 警告 PNMsoft Ltd. - PNMsoft Sequence Kinetics の Monitoring Administration ページにおける任意のファイルを読まれる脆弱性 CWE-Other
その他
CVE-2014-6302 2015-02-23 13:49 2014-09-11 Show GitHub Exploit DB Packet Storm
213182 4.3 警告 PNMsoft Ltd. - PNMsoft Sequence Kinetics の tables-management モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-6301 2015-02-23 13:48 2014-09-11 Show GitHub Exploit DB Packet Storm
213183 6.4 警告 TIBCO Software - 複数の TIBCO 製品の ActiveMatrix Policy Manager Authentication モジュールにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-5286 2015-02-23 13:47 2014-08-6 Show GitHub Exploit DB Packet Storm
213184 7.8 危険 シスコシステムズ - Cisco TelePresence MCU デバイスのソフトウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-0621 2015-02-23 11:14 2015-02-17 Show GitHub Exploit DB Packet Storm
213185 4 警告 シスコシステムズ - Cisco TelePresence Management Suite の XML パーサにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-0620 2015-02-23 10:59 2015-02-16 Show GitHub Exploit DB Packet Storm
213186 5 警告 シスコシステムズ - Cisco ASR 5500 System Architecture Evolution Gateway デバイスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-0617 2015-02-23 10:53 2015-02-17 Show GitHub Exploit DB Packet Storm
213187 3.5 注意 webform prepopulate block project - Drupal 用 Webform prepopulate block モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-1621 2015-02-23 10:32 2015-02-10 Show GitHub Exploit DB Packet Storm
213188 3.5 注意 マカフィー - McAfee Email Gateway の Secure Web Mail Client ユーザインターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-1619 2015-02-23 10:21 2015-01-6 Show GitHub Exploit DB Packet Storm
213189 4 警告 マカフィー - McAfee Data Loss Prevention Endpoint の ePO エクステンションにおける重要なパスワード情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-1618 2015-02-23 10:15 2015-01-20 Show GitHub Exploit DB Packet Storm
213190 3.5 注意 マカフィー - McAfee Data Loss Prevention Endpoint の ePO エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-1617 2015-02-23 10:11 2015-01-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2501 6.5 MEDIUM
Network
fleetdm fleet Fleet is open source device management software. Prior to version 4.81.0, Fleet contained a denial-of-service (DoS) issue in the gRPC Launcher `PublishLogs` endpoint. In affected versions, certain un… CWE-20
NVD-CWE-noinfo
 Improper Input Validation 
CVE-2026-26062 2026-05-18 23:09 2026-05-15 Show GitHub Exploit DB Packet Storm
2502 7.5 HIGH
Network
netty netty Netty is an asynchronous, event-driven network application framework. From 4.2.0.Final to 4.2.13.Final , Netty's epoll transport fails to detect and close TCP connections that receive a RST after bei… CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2026-42577 2026-05-18 23:05 2026-05-14 Show GitHub Exploit DB Packet Storm
2503 9.8 CRITICAL
Network
fleetdm fleet Fleet is open source device management software. Prior to version 4.81.0, a vulnerability in Fleet's software installer pipeline could allow a crafted software package to execute arbitrary commands a… CWE-78
OS Command 
CVE-2026-26191 2026-05-18 23:05 2026-05-15 Show GitHub Exploit DB Packet Storm
2504 6.5 MEDIUM
Network
netty netty Netty is an asynchronous, event-driven network application framework. Prior to 4.2.13.Final and 4.1.133.Final, Netty's chunk size parser silently overflows int, enabling request smuggling attacks. Th… CWE-190
CWE-444
 Integer Overflow or Wraparound
HTTP Request Smuggling
CVE-2026-42580 2026-05-18 23:03 2026-05-14 Show GitHub Exploit DB Packet Storm
2505 5.3 MEDIUM
Network
mediawiki mediawiki Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Specials/SpecialUserRights.P… CWE-200
Information Exposure
CVE-2026-34093 2026-05-18 22:53 2026-05-12 Show GitHub Exploit DB Packet Storm
2506 5.5 MEDIUM
Local
m2team nanazip NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, an uncontrolled recursion vulnerability exists in the Electron Archive (ASAR) parser in NanaZip. When opening a crafted .… CWE-674
 Uncontrolled Recursion
CVE-2026-42355 2026-05-18 22:52 2026-05-13 Show GitHub Exploit DB Packet Storm
2507 5.5 MEDIUM
Local
m2team nanazip NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, a null-pointer dereference exists in the UFS/UFS2 filesystem image parser in NanaZip. The vulnerability is triggered when… CWE-476
 NULL Pointer Dereference
CVE-2026-42442 2026-05-18 22:51 2026-05-13 Show GitHub Exploit DB Packet Storm
2508 3.8 LOW
Network
mediawiki mediawiki Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Page/Article.Php. This issue affects MediaWiki: from * before 1.43.7, 1.44.4, 1.45.2. CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2026-34094 2026-05-18 22:50 2026-05-12 Show GitHub Exploit DB Packet Storm
2509 5.5 MEDIUM
Local
m2team nanazip NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, an integer divide-by-zero exists in the UFS/UFS2 filesystem image parser in NanaZip. The vulnerability is triggered when … CWE-369
 Divide By Zero
CVE-2026-42443 2026-05-18 22:46 2026-05-13 Show GitHub Exploit DB Packet Storm
2510 7.5 HIGH
Network
bytecodealliance wasmtime Wasmtime is a runtime for WebAssembly. From 30.0.0 to 36.0.8, 43.0.2, and 44.0.1, Wasmtime's allocation logic for a WebAssembly table contained checked arithmetic which panicked on overflow. This ove… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-44216 2026-05-18 22:36 2026-05-15 Show GitHub Exploit DB Packet Storm