Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
214761 5.4 警告 DTE Energy Company - Android 用 DTE Energy アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-6002 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214762 5.4 警告 gewara - Android 用 gewara アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-6001 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214763 5.4 警告 freshdirect - Android 用 FreshDirect アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-6000 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214764 5.4 警告 telenavsoftware - Android 用 autonavi アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5999 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214765 5.4 警告 skydrive assistant project - Android 用 SkyDrive Assistant アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5998 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214766 5.4 警告 autotrader.co.za - Android 用 Auto Trader アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5997 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214767 5.4 警告 gebrauchtwagenreport - Android 用 DEKRA Used Car Report アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5996 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214768 5.4 警告 ericpol - Android 用 eWUS mobile アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5995 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214769 5.4 警告 ding - Android 用 ding* ezetop. Top-up Any Phone アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5994 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
214770 5.4 警告 preplaysports - Android 用 MLB Preplay アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5993 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1961 5.3 MEDIUM
Network
- - Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a Dependency on Vulnerable Third-Party Component vulnerability that could result i… - CVE-2026-34654 2026-05-13 23:49 2026-05-13 Show GitHub Exploit DB Packet Storm
1962 4.8 MEDIUM
Network
- - Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-p… CWE-79
Cross-site Scripting
CVE-2026-34655 2026-05-13 23:49 2026-05-13 Show GitHub Exploit DB Packet Storm
1963 4.3 MEDIUM
Network
- - Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an Improper Authorization vulnerability that could result in a Security feature by… CWE-285
Improper Authorization
CVE-2026-34656 2026-05-13 23:49 2026-05-13 Show GitHub Exploit DB Packet Storm
1964 4.8 MEDIUM
Network
- - Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-p… CWE-79
Cross-site Scripting
CVE-2026-34658 2026-05-13 23:49 2026-05-13 Show GitHub Exploit DB Packet Storm
1965 3.4 LOW
Network
- - Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier [NEEDS REVIEW: impact mismatch — ticket says 'Arbitrary file system write', CIA triad derives 'Sec… CWE-20
 Improper Input Validation 
CVE-2026-34685 2026-05-13 23:49 2026-05-13 Show GitHub Exploit DB Packet Storm
1966 - - - Improper enforcement of the LFENCE serialization property may allow an attacker to bypass speculation barriers and potentially disclose sensitive information, potentially resulting in loss of confide… CWE-693
 Protection Mechanism Failure
CVE-2024-36315 2026-05-13 23:49 2026-05-13 Show GitHub Exploit DB Packet Storm
1967 - - - Missing lock bit protection for NBIO registers could allow a local admin-privileged attacker to modify MMIO routing configurations, potentially resulting in loss of SEV-SNP guest integrity. CWE-1233
 Security-Sensitive Hardware Controls with Missing Lock Bit Protection
CVE-2025-61971 2026-05-13 23:49 2026-05-13 Show GitHub Exploit DB Packet Storm
1968 - - - Missing lock bit protection for NBIO registers could allow a local admin-privileged attacker to gain arbitrary System Management Network (SMN) access, potentially resulting in arbitrary code executio… CWE-1233
 Security-Sensitive Hardware Controls with Missing Lock Bit Protection
CVE-2025-61972 2026-05-13 23:49 2026-05-13 Show GitHub Exploit DB Packet Storm
1969 - - - A heap-based buffer overflow in the ionic cloud driver for VMware ESXi could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2025-62623 2026-05-13 23:49 2026-05-13 Show GitHub Exploit DB Packet Storm
1970 - - - A heap-based buffer overflow in the ionic cloud driver for VMware ESXi could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution. CWE-122
Heap-based Buffer Overflow
CVE-2025-62624 2026-05-13 23:49 2026-05-13 Show GitHub Exploit DB Packet Storm