Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
213651 6.8 警告 Electric Sheep Fencing - pfSense の WebGUI の system_firmware_restorefullbackup.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-2295 2015-04-14 12:23 2015-03-5 Show GitHub Exploit DB Packet Storm
213652 2.1 注意 FreeBSD - FreeBSD の bsdinstall インストーラにおける重要な鍵情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-1415 2015-04-14 12:22 2015-04-7 Show GitHub Exploit DB Packet Storm
213653 7.5 危険 レッドハット - JBoss RichFaces において任意の Java コードが実行される脆弱性 CWE-94
コード・インジェクション
CVE-2015-0279 2015-04-14 12:03 2015-03-24 Show GitHub Exploit DB Packet Storm
213654 1.9 注意 アップル - Apple iOS のサンドボックスプロファイルコンポーネントにおける直近の連絡先の電話番号を読まれる脆弱性 CWE-200
情報漏えい
CVE-2015-1113 2015-04-14 11:18 2015-04-8 Show GitHub Exploit DB Packet Storm
213655 5 警告 アップル - Apple Safari のプライベートブラウズの実装における閲覧履歴情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-1128 2015-04-14 11:04 2015-04-8 Show GitHub Exploit DB Packet Storm
213656 2.1 注意 アップル - Apple Safari などで使用される WebKit のプライベートブラウズの実装における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-1127 2015-04-14 11:04 2015-04-8 Show GitHub Exploit DB Packet Storm
213657 1.9 注意 アップル - Apple iOS および Apple TV のサンドボックスプロファイルコンポーネントにおけるハードウェアの識別子を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-1114 2015-04-14 10:58 2015-04-8 Show GitHub Exploit DB Packet Storm
213658 1.9 注意 アップル - Apple iOS および Apple TV の IOMobileFramebuffer における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-1097 2015-04-14 10:58 2015-04-8 Show GitHub Exploit DB Packet Storm
213659 6.9 警告 アップル - Apple iOS および Apple TV の Audio Drivers サブシステムにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2015-1086 2015-04-14 10:58 2014-04-8 Show GitHub Exploit DB Packet Storm
213660 5 警告 The PHP Group
アップル
- PHP の Fileinfo コンポーネントで使用される file の cdf.c の cdf_read_property_info 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2014-3587 2015-04-13 17:31 2014-08-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3301 5.5 MEDIUM
Local
- - An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Tahoe 26. An app may be able to cause unexpected system termination. CWE-125
Out-of-bounds Read
CVE-2025-46280 2026-05-27 23:51 2026-05-27 Show GitHub Exploit DB Packet Storm
3302 7.0 HIGH
Local
- - A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.7, macOS Tahoe 26. An app may be able to gain root privileges. CWE-362
Race Condition
CVE-2025-46284 2026-05-27 23:51 2026-05-27 Show GitHub Exploit DB Packet Storm
3303 5.5 MEDIUM
Local
- - A logic issue was addressed with improved restrictions. This issue is fixed in macOS Tahoe 26. An app may be able to access sensitive user data. CWE-284
Improper Access Control
CVE-2025-46307 2026-05-27 23:51 2026-05-27 Show GitHub Exploit DB Packet Storm
3304 7.1 HIGH
Network
- - Missing Authorization vulnerability in AA-Team Woocommerce Envato Affiliates allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Woocommerce Envato Affiliates: from n… CWE-862
 Missing Authorization
CVE-2025-14361 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3305 7.3 HIGH
Network
- - A vulnerability was determined in JeecgBoot up to 3.9.1. The affected element is the function LoginController.selectDepart of the file /sys/selectDepart. This manipulation causes improper access cont… CWE-266
CWE-284
 Incorrect Privilege Assignment
Improper Access Control
CVE-2026-9580 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3306 4.3 MEDIUM
Network
- - A security flaw has been discovered in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. This affects an unknown function. Performing a manipulation results in cross-site … CWE-352
CWE-862
 Origin Validation Error
 Missing Authorization
CVE-2026-9582 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3307 7.3 HIGH
Network
- - A security vulnerability has been detected in code-projects Project Management System 1.0. Affected is an unknown function of the file chk.php of the component Login. The manipulation leads to sql in… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-9584 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3308 6.5 MEDIUM
Network
- - A security vulnerability has been detected in SourceCodester eDoc Doctor Appointment System 1.0. This affects an unknown part of the file /admin/delete-session.php. The manipulation of the argument I… CWE-862
CWE-863
 Missing Authorization
 Incorrect Authorization
CVE-2026-9603 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3309 4.3 MEDIUM
Network
- - A vulnerability was detected in JeecgBoot up to 3.9.1. This vulnerability affects unknown code of the component AiragModelController. The manipulation of the argument list/queryById results in improp… CWE-266
CWE-284
 Incorrect Privilege Assignment
Improper Access Control
CVE-2026-9604 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
3310 7.3 HIGH
Network
- - A vulnerability has been found in itsourcecode Courier Management System 1.0. Impacted is an unknown function of the file /manage_user.php. Such manipulation of the argument ID leads to sql injection… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-9606 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm