Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222391 6.8 警告 CRU Acquisition Group - CRU Ditto Forensic FieldStation のファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-6883 2013-12-19 15:54 2013-10-15 Show GitHub Exploit DB Packet Storm
222392 4.3 警告 CRU Acquisition Group - CRU Ditto Forensic FieldStation のファームウェアにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6882 2013-12-19 15:52 2013-12-12 Show GitHub Exploit DB Packet Storm
222393 2.1 注意 valve software - Valve SteamOS の valve-bugreporter パッケージの Valve Bug Reporter における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-7128 2013-12-19 15:51 2013-12-14 Show GitHub Exploit DB Packet Storm
222394 4.3 警告 ThemeBeans - WordPress 用 ThemeBeans Blooog Theme におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7129 2013-12-19 14:47 2013-12-2 Show GitHub Exploit DB Packet Storm
222395 2.1 注意 アップル - Apple Mac OS X 上で稼働する Safari における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-7127 2013-12-19 14:41 2013-12-13 Show GitHub Exploit DB Packet Storm
222396 8.8 危険 Google - Android におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6271 2013-12-19 12:13 2013-11-27 Show GitHub Exploit DB Packet Storm
222397 4.7 警告 Eaton - 複数の Cooper Power Systems 製品 の DNP3 コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-2816 2013-12-19 11:58 2013-12-12 Show GitHub Exploit DB Packet Storm
222398 7.1 危険 Eaton - Cooper Power Systems Cybectec DNP3 Master OPC Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-2814 2013-12-19 11:56 2013-12-12 Show GitHub Exploit DB Packet Storm
222399 7.1 危険 Eaton - 複数の Cooper Power Systems 製品 の DNP3 コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-2813 2013-12-19 11:55 2013-12-12 Show GitHub Exploit DB Packet Storm
222400 8 危険 シーメンス - Siemens RuggedCom ROS の統合された HTTPS サーバにおける管理者アクションの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6926 2013-12-18 16:56 2013-12-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1431 7.8 HIGH
Local
trendmicro apex_one An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the abili… CWE-346
 Origin Validation Error
CVE-2025-71213 2026-05-23 00:05 2026-05-21 Show GitHub Exploit DB Packet Storm
1432 7.5 HIGH
Network
honeywell control_network_module_firmware Honeywell Control Network Module (CNM) contains insertion of sensitive information into an unintended directory. An attacker could exploit this vulnerability through probing system files, potentially… CWE-538
 File and Directory Information Exposure
CVE-2026-5434 2026-05-22 23:38 2026-05-21 Show GitHub Exploit DB Packet Storm
1433 9.1 CRITICAL
Network
honeywell control_network_module_firmware Honeywell Control Network Module (CNM) contains command injection vulnerability in the web interface. An attacker could exploit this vulnerability via command delimiters, potentially resulting in Rem… CWE-77
Command Injection
CVE-2026-5433 2026-05-22 23:38 2026-05-21 Show GitHub Exploit DB Packet Storm
1434 8.1 HIGH
Network
nvidia dgx_os NVIDIA DGX OS contains a vulnerability in the factory provisioning process, where the cloning of a base image causes identical SSH host keys to be deployed across multiple systems. The sharing of cr… CWE-321
 Use of Hard-coded Cryptographic Key
CVE-2026-24218 2026-05-22 23:35 2026-05-21 Show GitHub Exploit DB Packet Storm
1435 7.8 HIGH
Local
trendmicro apex_one An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-34927 but exists in a different… CWE-346
 Origin Validation Error
CVE-2026-34930 2026-05-22 22:39 2026-05-21 Show GitHub Exploit DB Packet Storm
1436 7.8 HIGH
Local
trendmicro apex_one An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-34927 but exists in a different… CWE-346
 Origin Validation Error
CVE-2026-34929 2026-05-22 22:38 2026-05-21 Show GitHub Exploit DB Packet Storm
1437 7.8 HIGH
Local
trendmicro apex_one An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-34927 but exists in a different… CWE-346
 Origin Validation Error
CVE-2026-34928 2026-05-22 22:37 2026-05-21 Show GitHub Exploit DB Packet Storm
1438 7.8 HIGH
Local
trendmicro apex_one An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to … CWE-346
 Origin Validation Error
CVE-2026-34927 2026-05-22 22:31 2026-05-21 Show GitHub Exploit DB Packet Storm
1439 6.7 MEDIUM
Local
trendmicro apex_one A directory traversal vulnerability in the Apex One (on-premise) server could allow a pre-authenticated local attacker to modify a key table on the server to inject malicious code to deploy to agents… CWE-23
 Relative Path Traversal
CVE-2026-34926 2026-05-22 21:47 2026-05-21 Show GitHub Exploit DB Packet Storm
1440 9.8 CRITICAL
Network
apache fory Deserialization of untrusted data in Apache Fory PyFory. PyFory's ReduceSerializer could bypass documented DeserializationPolicy validation hooks during reduce-state restoration and global-name resol… CWE-502
 Deserialization of Untrusted Data
CVE-2026-48207 2026-05-22 21:40 2026-05-22 Show GitHub Exploit DB Packet Storm