Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222101 4.3 警告 The phpMyAdmin Project - phpMyAdmin の tbl_gis_visualization.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1937 2013-12-5 13:56 2013-04-16 Show GitHub Exploit DB Packet Storm
222102 3.3 注意 Xen プロジェクト - Xen で使用される QEMU の qemu-nbd における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1922 2013-12-5 13:45 2013-04-15 Show GitHub Exploit DB Packet Storm
222103 4.7 警告 Xen プロジェクト - Xen における IRQ へのアクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1919 2013-12-5 13:41 2013-04-18 Show GitHub Exploit DB Packet Storm
222104 4.7 警告 Xen プロジェクト - Xen の特定のページテーブル操作処理におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-1918 2013-12-5 13:39 2013-05-2 Show GitHub Exploit DB Packet Storm
222105 1.9 注意 Xen プロジェクト - Xen におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1917 2013-12-5 12:30 2013-04-18 Show GitHub Exploit DB Packet Storm
222106 6 警告 MongoDB Inc.
レッドハット
- MongoDB におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1892 2013-12-5 12:27 2013-03-26 Show GitHub Exploit DB Packet Storm
222107 6.9 警告 Python Software Foundation - pip における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2013-1888 2013-12-5 12:24 2013-01-25 Show GitHub Exploit DB Packet Storm
222108 6.8 警告 OpenStack
Canonical
- OpenStack Keystone Folsom におけるアクセス制限を回避される脆弱性 CWE-287
不適切な認証
CVE-2013-1865 2013-12-5 12:22 2013-03-21 Show GitHub Exploit DB Packet Storm
222109 7.2 危険 Linux - Linux Kernel の net/core/sock_diag.c における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-1763 2013-12-5 12:19 2013-02-27 Show GitHub Exploit DB Packet Storm
222110 5 警告 Alexander Barton - ngIRCd の channel.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-1747 2013-12-5 12:16 2013-02-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
861 5.5 MEDIUM
Local
m2team nanazip NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, a denial-of-service vulnerability exists in the littlefs filesystem image parser in NanaZip. The handler's Open method re… Update CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-42444 2026-05-18 23:17 2026-05-13 Show GitHub Exploit DB Packet Storm
862 8.8 HIGH
Network
postgresql postgresql SQL injection in PostgreSQL logical replication ALTER SUBSCRIPTION ... REFRESH PUBLICATION allows a subscriber table creator to execute arbitrary SQL with the subscription's publication-side credenti… Update CWE-89
SQL Injection
CVE-2026-6638 2026-05-18 23:14 2026-05-14 Show GitHub Exploit DB Packet Storm
863 7.5 HIGH
Network
openbao openbao OpenBao is an open source identity-based secrets management system. Prior to 2.5.3, when OpenBao's initial namespace deletion fails, subsequent retries fail to properly remove all data before marking… Update CWE-212
 Improper Removal of Sensitive Information Before Storage or Transfer
CVE-2026-42186 2026-05-18 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
864 6.5 MEDIUM
Network
fleetdm fleet Fleet is open source device management software. Prior to version 4.81.0, Fleet contained a denial-of-service (DoS) issue in the gRPC Launcher `PublishLogs` endpoint. In affected versions, certain un… Update CWE-20
NVD-CWE-noinfo
 Improper Input Validation 
CVE-2026-26062 2026-05-18 23:09 2026-05-15 Show GitHub Exploit DB Packet Storm
865 7.5 HIGH
Network
netty netty Netty is an asynchronous, event-driven network application framework. From 4.2.0.Final to 4.2.13.Final , Netty's epoll transport fails to detect and close TCP connections that receive a RST after bei… Update CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2026-42577 2026-05-18 23:05 2026-05-14 Show GitHub Exploit DB Packet Storm
866 9.8 CRITICAL
Network
fleetdm fleet Fleet is open source device management software. Prior to version 4.81.0, a vulnerability in Fleet's software installer pipeline could allow a crafted software package to execute arbitrary commands a… Update CWE-78
OS Command 
CVE-2026-26191 2026-05-18 23:05 2026-05-15 Show GitHub Exploit DB Packet Storm
867 6.5 MEDIUM
Network
netty netty Netty is an asynchronous, event-driven network application framework. Prior to 4.2.13.Final and 4.1.133.Final, Netty's chunk size parser silently overflows int, enabling request smuggling attacks. Th… Update CWE-190
CWE-444
 Integer Overflow or Wraparound
HTTP Request Smuggling
CVE-2026-42580 2026-05-18 23:03 2026-05-14 Show GitHub Exploit DB Packet Storm
868 5.3 MEDIUM
Network
mediawiki mediawiki Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Specials/SpecialUserRights.P… Update CWE-200
Information Exposure
CVE-2026-34093 2026-05-18 22:53 2026-05-12 Show GitHub Exploit DB Packet Storm
869 5.5 MEDIUM
Local
m2team nanazip NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, an uncontrolled recursion vulnerability exists in the Electron Archive (ASAR) parser in NanaZip. When opening a crafted .… Update CWE-674
 Uncontrolled Recursion
CVE-2026-42355 2026-05-18 22:52 2026-05-13 Show GitHub Exploit DB Packet Storm
870 5.5 MEDIUM
Local
m2team nanazip NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, a null-pointer dereference exists in the UFS/UFS2 filesystem image parser in NanaZip. The vulnerability is triggered when… Update CWE-476
 NULL Pointer Dereference
CVE-2026-42442 2026-05-18 22:51 2026-05-13 Show GitHub Exploit DB Packet Storm