Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219571 6.2 警告 シスコシステムズ - Cisco Unified Communications Manager の CSR 管理機能の Certificate Authority Proxy Function における任意のファイルを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2014-0742 2014-02-28 18:41 2014-02-25 Show GitHub Exploit DB Packet Storm
219572 6.2 警告 シスコシステムズ - Cisco Unified Communications Manager の Certificate Authority Proxy Function における任意のファイルを読まれる脆弱性 CWE-310
暗号の問題
CVE-2014-0741 2014-02-28 18:40 2014-02-26 Show GitHub Exploit DB Packet Storm
219573 7.2 危険 アップル
NVIDIA
富士通
- NVIDIA グラフィックスドライバにおける GPU へのアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-5987 2014-02-28 18:28 2013-10-28 Show GitHub Exploit DB Packet Storm
219574 10 危険 アップル
NVIDIA
- NVIDIA グラフィックスドライバにおける脆弱性 CWE-noinfo
情報不足
CVE-2013-5986 2014-02-28 18:28 2013-10-28 Show GitHub Exploit DB Packet Storm
219575 5 警告 アップル - Apple Mac OS X の LaunchServices におけるファイルの拡張子を偽装される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5178 2014-02-28 17:56 2013-10-22 Show GitHub Exploit DB Packet Storm
219576 9.3 危険 アップル - Apple iOS の IOSerialFamily ドライバにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-5139 2014-02-28 17:55 2013-09-18 Show GitHub Exploit DB Packet Storm
219577 4.3 警告 アップル - Apple Mac OS X の QuickTime における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-1032 2014-02-28 17:55 2013-09-12 Show GitHub Exploit DB Packet Storm
219578 4.6 警告 アップル - Apple Mac OS X の日付と時刻のサブシステムのシステム設定プログラムにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1265 2014-02-28 15:59 2014-02-25 Show GitHub Exploit DB Packet Storm
219579 7.5 危険 アップル - Apple Mac OS X の Apple Type Services における App Sandbox の保護メカニズムを回避される脆弱性 CWE-119
バッファエラー
CVE-2014-1262 2014-02-28 15:58 2014-02-25 Show GitHub Exploit DB Packet Storm
219580 7.5 危険 アップル - Apple Mac OS X の CoreText における整数符号エラーの脆弱性 CWE-189
数値処理の問題
CVE-2014-1261 2014-02-28 15:58 2014-02-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1131 8.1 HIGH
Network
- - SPIP versions prior to 4.4.14 contain a remote code execution vulnerability in the public space that is limited to certain nginx configurations, allowing attackers to execute arbitrary code in the co… New CWE-94
Code Injection
CVE-2026-8430 2026-05-14 00:26 2026-05-13 Show GitHub Exploit DB Packet Storm
1132 7.6 HIGH
Network
- - Heym before 0.0.21 contains a path traversal vulnerability in the file upload endpoint that allows authenticated users to write attacker-controlled files to arbitrary locations by supplying a crafted… New CWE-22
Path Traversal
CVE-2026-45225 2026-05-14 00:26 2026-05-13 Show GitHub Exploit DB Packet Storm
1133 7.1 HIGH
Network
- - Heym before 0.0.21 contains an authorization bypass vulnerability in workflow execution that allows authenticated users to execute arbitrary workflows by referencing victim workflow UUIDs without pro… New CWE-863
 Incorrect Authorization
CVE-2026-45226 2026-05-14 00:26 2026-05-13 Show GitHub Exploit DB Packet Storm
1134 6.5 MEDIUM
Network
- - The The Advanced Custom Fields: Extended plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 0.9.2.3. This is due to the software allowing users … New CWE-94
Code Injection
CVE-2025-15463 2026-05-14 00:26 2026-05-13 Show GitHub Exploit DB Packet Storm
1135 5.3 MEDIUM
Network
- - Zephyr sockets created with `IPPROTO_TLS_1_3` can still negotiate a TLS 1.2 connection when both TLS versions are enabled in Kconfig, because the socket-level protocol selection is not propagated to … New CWE-757
Algorithm Downgrade
CVE-2026-1677 2026-05-14 00:25 2026-05-11 Show GitHub Exploit DB Packet Storm
1136 5.3 MEDIUM
Network
- - The check user account lock states feature within the email OTP flow fails to validate user input, allowing an attacker to infer the existence of registered user accounts. The discovery of valid use… New CWE-204
 Response Discrepancy Information Exposure
CVE-2024-0391 2026-05-14 00:25 2026-05-11 Show GitHub Exploit DB Packet Storm
1137 7.3 HIGH
Network
- - Due to a lack of user account state validation during authentication, locked user accounts can be successfully authenticated using Magic Link or Pass Key methods. This bypasses the intended security … New CWE-863
 Incorrect Authorization
CVE-2025-10908 2026-05-14 00:25 2026-05-11 Show GitHub Exploit DB Packet Storm
1138 5.3 MEDIUM
Network
- - In Webhook API invocations, the component accepts user-supplied input for HTTP request headers without sufficient validation or sanitization, allowing these headers to be injected into HTTP responses… New CWE-74
Injection
CVE-2025-8154 2026-05-14 00:25 2026-05-11 Show GitHub Exploit DB Packet Storm
1139 6.3 MEDIUM
Network
- - The software fails to enforce role-based access controls for certain Gateway API invocations. Users with the 'Internal/Everyone' role can invoke these APIs, bypassing intended permission checks. This… New CWE-281
 Improper Preservation of Permissions
CVE-2025-8325 2026-05-14 00:25 2026-05-11 Show GitHub Exploit DB Packet Storm
1140 8.6 HIGH
Network
- - The Magic Link authentication flow accepts multiple invalid authentication requests without adequate rate limiting or resource control, leading to uncontrolled memory usage growth. This vulnerabilit… New CWE-400
 Uncontrolled Resource Consumption
CVE-2025-10470 2026-05-14 00:25 2026-05-11 Show GitHub Exploit DB Packet Storm