Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 12:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
233811 6.8 警告 MoinMoin - MoinMoin における脆弱性 CWE-noinfo
情報不足
CVE-2010-0668 2012-09-25 17:38 2010-02-26 Show GitHub Exploit DB Packet Storm
233812 5 警告 MoinMoin - MoinMoin における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-0667 2012-09-25 17:38 2010-01-18 Show GitHub Exploit DB Packet Storm
233813 4.3 警告 マイクロソフト - Microsoft Internet Explorer における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-0652 2012-09-25 17:38 2010-02-18 Show GitHub Exploit DB Packet Storm
233814 4.3 警告 Mozilla Foundation - Mozilla Firefox におけるセッションのリダイレクト先の URL を発見される脆弱性 CWE-200
情報漏えい
CVE-2010-0648 2012-09-25 17:38 2010-02-18 Show GitHub Exploit DB Packet Storm
233815 6.8 警告 k5n.us - WebCalendar におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-0638 2012-09-25 17:38 2010-02-15 Show GitHub Exploit DB Packet Storm
233816 6.8 警告 k5n.us - WebCalendar におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-0637 2012-09-25 17:38 2010-02-12 Show GitHub Exploit DB Packet Storm
233817 4.3 警告 k5n.us - WebCalendar におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0636 2012-09-25 17:38 2010-02-12 Show GitHub Exploit DB Packet Storm
233818 7.5 危険 jevents - Joomla! 用の JEvents Search プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0635 2012-09-25 17:38 2010-01-18 Show GitHub Exploit DB Packet Storm
233819 7.5 危険 parkviewconsultants - Joomla! 用の Parkview Consultants SimpleFAQ における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0632 2012-09-25 17:38 2010-02-12 Show GitHub Exploit DB Packet Storm
233820 5 警告 Novell - Novell eDirectory の eMBox におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2010-0666 2012-09-25 17:38 2009-10-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1011 5.3 MEDIUM
Network
eclipse vert.x A TCP client can perform a TLS handshake and present the server name extension with a server name that is accepted by a server wildcard name, e.g. if the server is configured with a certificate accep… Update CWE-770
CWE-295
 Allocation of Resources Without Limits or Throttling
Improper Certificate Validation 
CVE-2026-6860 2026-05-12 22:42 2026-05-6 Show GitHub Exploit DB Packet Storm
1012 6.5 MEDIUM
Network
apache cloudstack The CloudStack Backup plugin has an improper access logic in versions 4.21.0.0 and 4.22.0.0. Anyone with authenticated user-account access in CloudStack 4.21.0.0+ environments, where this plugin is e… Update CWE-359
 Exposure of Private Personal Information to an Unauthorized Actor
CVE-2025-66171 2026-05-12 22:31 2026-05-8 Show GitHub Exploit DB Packet Storm
1013 8.1 HIGH
Network
apache cloudstack The CloudStack Backup plugin has an improper access logic in versions 4.21.0.0 and 4.22.0.0. Anyone with authenticated user-account access in CloudStack 4.21.0.0+ environments, where this plugin is e… Update CWE-359
 Exposure of Private Personal Information to an Unauthorized Actor
CVE-2025-66172 2026-05-12 22:30 2026-05-8 Show GitHub Exploit DB Packet Storm
1014 - - - Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in ninenines cowlib allows SSE event splitting and injection via unvalidated field values. cow_sse:event/1 in cowlib guards… New CWE-93
CRLF Injection
CVE-2026-43968 2026-05-12 22:17 2026-05-12 Show GitHub Exploit DB Packet Storm
1015 2.9 LOW
Local
- - The application does not impose strict enough restrictions on directory access permissions, posing a risk that other malicious applications could obtain sensitive information. New - CVE-2026-32684 2026-05-12 20:16 2026-05-12 Show GitHub Exploit DB Packet Storm
1016 - - - Insecure generation of credentials in the local SAT (Technical Support) access functionality of the Ingecon Sun EMS Board. The vulnerability arose because the secret access credentials were not based… New CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2026-8072 2026-05-12 19:16 2026-05-12 Show GitHub Exploit DB Packet Storm
1017 6.1 MEDIUM
Local
- - Issuing an ICMP ping via the `net ping` shell command to a device's own IPv4 address causes the network stack to recursively re-enter the input path on the same system work-queue stack. Because the d… New CWE-674
 Uncontrolled Recursion
CVE-2026-1681 2026-05-12 16:16 2026-05-12 Show GitHub Exploit DB Packet Storm
1018 7.1 HIGH
Network
- - The Salesforce module before 1.x-1.0.1 for Backdrop CMS does not properly use a random state parameter to protect the authorization flow against CSRF attacks. New CWE-352
 Origin Validation Error
CVE-2026-45430 2026-05-12 13:16 2026-05-12 Show GitHub Exploit DB Packet Storm
1019 7.1 HIGH
Network
- - New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to version 0.12.10, a vulnerability exists in the Stripe webhook handler that allows an … Update CWE-345
CWE-863
CWE-1188
 Insufficient Verification of Data Authenticity
 Incorrect Authorization
 Insecure Default Initialization of Resource
CVE-2026-41432 2026-05-12 12:16 2026-05-9 Show GitHub Exploit DB Packet Storm
1020 4.3 MEDIUM
Network
google chrome Inappropriate implementation in Media in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium) Update NVD-CWE-noinfo
CWE-346
 Origin Validation Error
CVE-2026-7979 2026-05-12 10:16 2026-05-7 Show GitHub Exploit DB Packet Storm