Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218331 7.1 危険 IBM - IBM GCM16 および GCM32 Global Console Manager スイッチのファームウェアの systest.php における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2014-3085 2014-08-26 17:42 2014-07-14 Show GitHub Exploit DB Packet Storm
218332 6.3 警告 IBM - IBM GCM16 および GCM32 Global Console Manager スイッチのファームウェアの prodtest.php における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2014-3081 2014-08-26 17:42 2014-07-14 Show GitHub Exploit DB Packet Storm
218333 6.8 警告 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR におけるクロスサイトリクエストフォージェリ攻撃を実行される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-5333 2014-08-26 17:40 2014-08-12 Show GitHub Exploit DB Packet Storm
218334 6.8 警告 GNU Project
IBM
- GnuTLS の lib/gnutls_handshake.c の read_server_hello 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-3466 2014-08-26 17:40 2014-05-29 Show GitHub Exploit DB Packet Storm
218335 7.5 危険 Schrack - Schrack Technik microControl のファームウェアの Web インターフェースにおけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-5396 2014-08-26 17:32 2014-07-10 Show GitHub Exploit DB Packet Storm
218336 5 警告 WP Content Source Control project - WordPress 用 WP Content Source Control プラグインの downloadfiles/download.php の file_get_contents 関数におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-5368 2014-08-26 16:13 2014-08-19 Show GitHub Exploit DB Packet Storm
218337 7.2 危険 Little Kernel project - MSM デバイス用 Qualcomm Innovation Center Android コントリビューションなどで配布される Little Kernel ブートローダにおけるデバイスロックおよびカーネルの署名の制限を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-4325 2014-08-26 15:45 2014-08-5 Show GitHub Exploit DB Packet Storm
218338 1.9 注意 Little Kernel project - MSM デバイス用 Qualcomm Innovation Center Android コントリビューションなどで配布される Little Kernel ブートローダにおける制御可能なメモリ領域にデータを書き込まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0974 2014-08-26 15:39 2014-07-23 Show GitHub Exploit DB Packet Storm
218339 7.2 危険 Little Kernel project - MSM デバイス用 Qualcomm Innovation Center Android コントリビューションなどで配布される Little Kernel ブートローダにおけるブートイメージの認証要件を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-0973 2014-08-26 15:37 2014-06-13 Show GitHub Exploit DB Packet Storm
218340 4.6 警告 SaltStack - Salt における脆弱性 CWE-59
リンク解釈の問題
CVE-2014-3563 2014-08-26 15:16 2014-08-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1181 - - - SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engines, and text-to-speech voice models. Prior to 1.18.0,… CWE-79
Cross-site Scripting
CVE-2026-44651 2026-05-30 05:17 2026-05-30 Show GitHub Exploit DB Packet Storm
1182 - - - SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engines, and text-to-speech voice models. Prior to 1.18.0,… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-44652 2026-05-30 05:17 2026-05-30 Show GitHub Exploit DB Packet Storm
1183 8.5 HIGH
Network
- - SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engines, and text-to-speech voice models. Prior to 1.18.0,… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-46372 2026-05-30 05:17 2026-05-30 Show GitHub Exploit DB Packet Storm
1184 5.9 MEDIUM
Network
- - Shopper is a Headless e-commerce Admin Panel. Prior to 2.8.0, CreateOrderFromCartAction::execute previously created the Order row before checking and incrementing the discount's total_use counter. Un… CWE-362
Race Condition
CVE-2026-47741 2026-05-30 05:17 2026-05-30 Show GitHub Exploit DB Packet Storm
1185 8.1 HIGH
Network
- - Shopper is a Headless e-commerce Admin Panel. Prior to 2.8.0, Multiple Filament actions on the admin Order detail and Order shipments table were callable by an authenticated low-privilege user withou… CWE-285
CWE-862
Improper Authorization
 Missing Authorization
CVE-2026-47740 2026-05-30 05:17 2026-05-30 Show GitHub Exploit DB Packet Storm
1186 6.5 MEDIUM
Network
- - Shopper is a Headless e-commerce Admin Panel. Prior to 2.8.0, Sub-form Livewire components used in the product editor (Edit, Inventory, Seo, Shipping, Files) had no authorization on their store() met… CWE-862
 Missing Authorization
CVE-2026-47742 2026-05-30 05:17 2026-05-30 Show GitHub Exploit DB Packet Storm
1187 9.9 CRITICAL
Network
- - Shopper is a Headless e-commerce Admin Panel. Prior to 2.8.0, two distinct authorization defects in the team settings allowed any authenticated panel user to take over the RBAC system. Settings/Team/… CWE-269
CWE-285
 Improper Privilege Management
Improper Authorization
CVE-2026-47744 2026-05-30 05:17 2026-05-30 Show GitHub Exploit DB Packet Storm
1188 6.5 MEDIUM
Network
- - Shopper is a Headless e-commerce Admin Panel. Prior to 2.8.0, the admin tables for PaymentMethods, Currencies and Carriers exposed inline toggles and per-record actions (enable, disable, edit, delete… CWE-862
 Missing Authorization
CVE-2026-47745 2026-05-30 05:17 2026-05-30 Show GitHub Exploit DB Packet Storm
1189 5.3 MEDIUM
Network
- - Casdoor versions 2.362.0 and earlier contain a logic flaw in the social‑login binding flow that allows users to bypass configured MFA requirements. The binding‑rule code path in controllers/auth.go c… - CVE-2026-9091 2026-05-30 05:16 2026-05-29 Show GitHub Exploit DB Packet Storm
1190 9.1 CRITICAL
Network
- - Casdoor versions 2.362.0 and earlier contain a vulnerability that allows an attacker to bypass authentication by supplying an arbitrary signing certificate. The buildSpCertificateStore function extra… - CVE-2026-9090 2026-05-30 05:16 2026-05-29 Show GitHub Exploit DB Packet Storm