Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222671 4.3 警告 IBM - IBM Rational ClearQuest の Web クライアントにおけるデータベース名を読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-5422 2013-12-24 16:04 2013-12-13 Show GitHub Exploit DB Packet Storm
222672 4.3 警告 LiveZilla - LiveZilla の mobile/php/translation/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7002 2013-12-24 15:41 2013-11-21 Show GitHub Exploit DB Packet Storm
222673 4.3 警告 Code Crafters Software Limited. - Code-Crafters Ability Mail Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6162 2013-12-24 15:31 2013-12-17 Show GitHub Exploit DB Packet Storm
222674 4.3 警告 KBKP Software - KBKP Software HostBill におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7188 2013-12-24 13:48 2013-12-14 Show GitHub Exploit DB Packet Storm
222675 5 警告 Wireshark - Wireshark の BSSGP 解析機能の epan/dissectors/packet-bssgp.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-7113 2013-12-24 13:39 2013-12-17 Show GitHub Exploit DB Packet Storm
222676 5 警告 ヒューレット・パッカード - 複数の HP LaserJet プリンタ製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-6193 2013-12-20 19:02 2013-12-12 Show GitHub Exploit DB Packet Storm
222677 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-2865 2013-12-20 18:49 2013-06-4 Show GitHub Exploit DB Packet Storm
222678 4.3 警告 GNOME Project - GNOME Office Gnumeric の plugins/excel/ms-escher.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-6836 2013-12-20 18:47 2013-11-20 Show GitHub Exploit DB Packet Storm
222679 7.5 危険 Zabbix - Zabbix における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-6824 2013-12-20 18:44 2013-12-3 Show GitHub Exploit DB Packet Storm
222680 4.3 警告 Stephane Caron - prettyPhoto の js/jquery.prettyPhoto.js 内の setTimeout 関数におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6837 2013-12-20 18:38 2013-01-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1251 - - - Cinny is a Matrix client. Prior to 4.10.3, A remote authenticated attacker who shares a room with a victim and has permissions to create room emotes (for example in a DM) can cause the victim's clien… CWE-20
 Improper Input Validation 
CVE-2026-42553 2026-05-28 03:16 2026-05-28 Show GitHub Exploit DB Packet Storm
1252 6.2 MEDIUM
Local
- - go-ipld-prime is an implementation of the InterPlanetary Linked Data (IPLD) spec interfaces, a batteries-included codec implementations of IPLD for CBOR and JSON, and tooling for basic operations on … CWE-674
 Uncontrolled Recursion
CVE-2026-42328 2026-05-28 03:16 2026-05-28 Show GitHub Exploit DB Packet Storm
1253 7.8 HIGH
Local
- - Command injection in Raynet rvia version 12.6.4392.49-amd64.deb allows adversaries to execute arbitrary Java code via a crafted path that matches the improperly terminated search criteria of rvia's J… CWE-77
Command Injection
CVE-2026-38945 2026-05-28 03:16 2026-05-28 Show GitHub Exploit DB Packet Storm
1254 4.3 MEDIUM
Network
- - PbootCMS v.3.2.11 contains a code injection vulnerability in its site configuration functionality CWE-79
Cross-site Scripting
CVE-2026-36239 2026-05-28 03:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1255 5.2 MEDIUM
Adjacent
- - SailingLab AppLock (aka com.alpha.applock) 4.3.8 for Android allows a local attacker to trigger arbitrary JavaScript execution via BrowserMainActivity, which accepts VIEW intents with javascript: URI… CWE-79
Cross-site Scripting
CVE-2025-68709 2026-05-28 03:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1256 9.8 CRITICAL
Network
ibm websphere_application_server IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to remote code executi… CWE-94
Code Injection
CVE-2026-8633 2026-05-28 03:12 2026-05-27 Show GitHub Exploit DB Packet Storm
1257 7.8 HIGH
Local
openvpn connect Privilege escalation via background service of OpenVPN Connect 3.5.1 through 3.8.1 on macOS allows attackers to execute arbitrary commands with elevated privileges via local IPC channel CWE-78
CWE-267
CWE-270
CWE-648
OS Command 
 Privilege Defined With Unsafe Actions
 Privilege Context Switching Error
 Incorrect Use of Privileged APIs
CVE-2026-9560 2026-05-28 03:08 2026-05-27 Show GitHub Exploit DB Packet Storm
1258 4.3 MEDIUM
Network
- - Missing Authorization vulnerability in Mamunur Rashid The Post Grid allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects The Post Grid: from n/a through 7.9.2. CWE-862
 Missing Authorization
CVE-2026-49054 2026-05-28 02:44 2026-05-28 Show GitHub Exploit DB Packet Storm
1259 9.1 CRITICAL
Network
- - HTTP::Daemon versions before 6.17 for Perl allow OS command injection via send_file(). send_file() opens its string argument with Perl's 2-arg open(). The 2-arg form interprets magic prefixes: '| cm… CWE-73
CWE-78
 External Control of File Name or Path
OS Command 
CVE-2026-8450 2026-05-28 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1260 4.8 MEDIUM
Adjacent
- - IBM WebSphere Application Server - Liberty 19.0.0.7 through 26.0.0.5 and IBM WebSphere Application Server 9.0, and 8.5 and WebSphere Application Server Liberty are vulnerable to a denial of service, … CWE-400
 Uncontrolled Resource Consumption
CVE-2026-4410 2026-05-28 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm