Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220831 7.8 危険 Gummy Bear Studios - Gummy Bear Studios FTP Drive + HTTP Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-3922 2013-11-28 12:02 2013-11-21 Show GitHub Exploit DB Packet Storm
220832 3.5 注意 CloudBees - CloudBees Jenkins 用 Build Failure Analyzer プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6374 2013-11-28 11:37 2013-11-20 Show GitHub Exploit DB Packet Storm
220833 5.5 警告 CloudBees - CloudBees Jenkins 用 Exclusion プラグインにおけるリソースを一覧表示される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6373 2013-11-28 11:37 2013-11-20 Show GitHub Exploit DB Packet Storm
220834 4.3 警告 PaloSanto Solutions - Elastix の xmlservices/E_book.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6608 2013-11-28 11:30 2012-11-19 Show GitHub Exploit DB Packet Storm
220835 3.5 注意 Moodle - Moodle の mod/quiz/report/responses/responses_table.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4525 2013-11-28 11:18 2013-11-25 Show GitHub Exploit DB Packet Storm
220836 6.8 警告 Moodle - Moodle の repository/filesystem/lib.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-4524 2013-11-28 11:17 2013-11-25 Show GitHub Exploit DB Packet Storm
220837 3.5 注意 Moodle - Moodle の message/lib.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4523 2013-11-28 11:17 2013-11-25 Show GitHub Exploit DB Packet Storm
220838 5 警告 Moodle - Moodle の lib/filelib.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-4522 2013-11-28 11:17 2013-11-25 Show GitHub Exploit DB Packet Storm
220839 4.3 警告 Splunk - Splunk の Splunk Web におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6870 2013-11-28 11:03 2013-11-15 Show GitHub Exploit DB Packet Storm
220840 6.8 警告 HTTP-Body Project - Perl 用 HTTP-Body の HTTP::Body::Multipart における攻撃を行われる脆弱性 CWE-noinfo
情報不足
CVE-2013-4407 2013-11-27 18:17 2013-11-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1431 7.1 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy PDH cert to userspace if PSP command failed When retrieving the PDH cert, don't attempt to cop… CWE-787
 Out-of-bounds Write
CVE-2026-31698 2026-05-7 04:06 2026-05-1 Show GitHub Exploit DB Packet Storm
1432 8.1 HIGH
Network
- - A web page that contains unusual WebGPU content loaded into the GPU GLES render process and can trigger a write UAF crash in the GPU GLES user-space shared library. On certain platforms, when the pro… CWE-416
 Use After Free
CVE-2026-22165 2026-05-7 04:05 2026-05-2 Show GitHub Exploit DB Packet Storm
1433 8.1 HIGH
Network
- - A web page that contains unusual WebGPU content loaded into the GPU GLES render process and can trigger write UAF crash in the GPU GLES user-space shared library. On certain platforms, when the proce… CWE-416
 Use After Free
CVE-2026-22166 2026-05-7 04:05 2026-05-2 Show GitHub Exploit DB Packet Storm
1434 7.8 HIGH
Local
- - Software installed and run as a non-privileged user may conduct improper GPU system calls to force GPU to write to arbitrary physical memory pages. Under certain circumstances this exploit could b… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-22167 2026-05-7 04:05 2026-05-2 Show GitHub Exploit DB Packet Storm
1435 - - - A critical IDOR vulnerability has been discovered in Comet Backup affecting all versions from 20.11.0 to 26.1.1 and 26.2.1. The vulnerability allows a tenant administrator to impersonate any end-user… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-29200 2026-05-7 04:05 2026-05-4 Show GitHub Exploit DB Packet Storm
1436 7.1 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy CSR to userspace if PSP command failed When retrieving the PEK CSR, don't attempt to copy the … CWE-787
 Out-of-bounds Write
CVE-2026-31699 2026-05-7 04:04 2026-05-1 Show GitHub Exploit DB Packet Storm
1437 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net/packet: fix TOCTOU race on mmap'd vnet_hdr in tpacket_snd() In tpacket_snd(), when PACKET_VNET_HDR is enabled, vnet_hdr point… CWE-362
Race Condition
CVE-2026-31700 2026-05-7 04:01 2026-05-1 Show GitHub Exploit DB Packet Storm
1438 8.8 HIGH
Network
- - A vulnerability in the web-based management interface of Cisco Unity Connection could allow an authenticated, remote attacker to execute arbitrary code on an affected device. This vulnerability is… CWE-35
 Path Traversal: '.../...//'
CVE-2026-20034 2026-05-7 03:59 2026-05-7 Show GitHub Exploit DB Packet Storm
1439 7.2 HIGH
Network
- - A vulnerability in the web UI of Cisco Unity Connection Web Inbox could allow an unauthenticated, remote attacker to conduct SSRF attacks through an affected device. This vulnerability is due to i… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-20035 2026-05-7 03:59 2026-05-7 Show GitHub Exploit DB Packet Storm
1440 7.7 HIGH
Network
- - A vulnerability in the web-based management interface of Cisco IoT Field Network Director could allow an authenticated, remote attacker with low privileges to cause a DoS condition on a remotely mana… CWE-284
Improper Access Control
CVE-2026-20167 2026-05-7 03:59 2026-05-7 Show GitHub Exploit DB Packet Storm