Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
214211 5.4 警告 game-insight - Android 用 My Railway アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5837 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214212 5.4 警告 gittigidiyor - Android 用 GittiGidiyor アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5836 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214213 5.4 警告 clubpersonal - Android 用 Club Personal アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5835 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214214 5.4 警告 mobiledeluxe - Android 用 Solitaire Deluxe アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5834 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214215 5.4 警告 onelouder - Android 用 FriendCaster Chat アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5833 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214216 5.4 警告 hanabank - Android 用 hananbank アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5832 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214217 5.4 警告 happylabs - Android 用 Hotel Story: Resort Simulation アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5831 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214218 5.4 警告 farm frenzy gold project - Android 用 Farm Frenzy Gold アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5830 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214219 5.4 警告 hobbylobby - Android 用 Hobby Lobby Stores アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5829 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214220 5.4 警告 drei - Android 用 3Kundenzone アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5828 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1981 6.4 MEDIUM
Network
- - CMDBuild 3.3.2 contains multiple stored cross-site scripting vulnerabilities that allow authenticated attackers to inject arbitrary web script or HTML via crafted input in card creation and file uplo… CWE-79
Cross-site Scripting
CVE-2021-47925 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
1982 6.4 MEDIUM
Network
- - Contact Form to Email 1.3.24 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by creating forms with script tags in the form name f… CWE-79
Cross-site Scripting
CVE-2021-47926 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
1983 6.4 MEDIUM
Network
- - WordPress Plugin WP Symposium Pro 2021.10 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by exploiting insufficient sanitization … CWE-79
Cross-site Scripting
CVE-2021-47927 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
1984 8.2 HIGH
Network
- - Opencart TMD Vendor System 3.x contains a blind SQL injection vulnerability that allows unauthenticated attackers to extract database information by injecting SQL code through the product_id paramete… CWE-89
SQL Injection
CVE-2021-47928 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
1985 9.8 CRITICAL
Network
- - WordPress TheCartPress 1.5.3.6 contains an unauthenticated privilege escalation vulnerability that allows attackers to create administrator accounts by submitting crafted requests to the AJAX handler… CWE-862
 Missing Authorization
CVE-2021-47932 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
1986 9.8 CRITICAL
Network
- - WordPress MStore API 2.0.6 contains an arbitrary file upload vulnerability that allows unauthenticated attackers to upload malicious files by sending POST requests to the REST API endpoint. Attackers… CWE-306
Missing Authentication for Critical Function
CVE-2021-47933 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
1987 9.8 CRITICAL
Network
- - OpenCATS 0.9.4 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary commands by uploading malicious PHP files disguised as resume attachments. Att… CWE-306
Missing Authentication for Critical Function
CVE-2021-47936 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
1988 8.8 HIGH
Network
- - e107 CMS 2.3.0 contains a remote code execution vulnerability that allows authenticated users with theme installation permissions to execute arbitrary commands by uploading malicious theme files. Att… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2021-47937 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
1989 8.8 HIGH
Network
- - ImpressCMS 1.4.2 contains a remote code execution vulnerability in the autotasks administrative interface that allows authenticated attackers to execute arbitrary PHP code by injecting malicious code… CWE-94
Code Injection
CVE-2021-47938 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm
1990 8.8 HIGH
Network
- - Evolution CMS 3.1.6 contains a remote code execution vulnerability that allows authenticated users with module creation permissions to execute arbitrary system commands by injecting PHP code into mod… CWE-94
Code Injection
CVE-2021-47939 2026-05-12 23:24 2026-05-10 Show GitHub Exploit DB Packet Storm