Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241481 6.8 警告 Node Limit Number - Drupal 用 Node Limit Number モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2080 2012-08-17 15:49 2012-03-28 Show GitHub Exploit DB Packet Storm
241482 5.1 警告 Rob Loach - Drupal 用 ShareThis モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2077 2012-08-17 15:46 2012-03-28 Show GitHub Exploit DB Packet Storm
241483 2.1 注意 Rob Loach - Drupal 用 ShareThis モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2076 2012-08-17 15:42 2012-03-28 Show GitHub Exploit DB Packet Storm
241484 2.1 注意 Joel Stein - Drupal 用 Contact Save モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2075 2012-08-17 15:36 2012-03-28 Show GitHub Exploit DB Packet Storm
241485 5 警告 Mads Peter Henderson - Drupal 用 Ubercart Views モジュールにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-2074 2012-08-17 15:32 2012-03-28 Show GitHub Exploit DB Packet Storm
241486 6 警告 Kristof De Jaeger - Drupal 用の Bundle copy モジュールにおける任意の PHP コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2073 2012-08-17 15:30 2012-03-28 Show GitHub Exploit DB Packet Storm
241487 2.1 注意 Patrick Przybilla - Drupal 用 Share Buttons モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2072 2012-08-17 15:27 2012-03-28 Show GitHub Exploit DB Packet Storm
241488 2.1 注意 Geoff Davies - Drupal 用 Contact Forms モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2071 2012-08-17 15:12 2012-03-28 Show GitHub Exploit DB Packet Storm
241489 3.5 注意 Andrew Levine - Drupal 用 MultiBlock モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2070 2012-08-17 15:10 2012-03-28 Show GitHub Exploit DB Packet Storm
241490 4.3 警告 Emil Stjerneman - Drupal 用 Linkit モジュールにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2304 2012-08-17 15:08 2012-04-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1501 6.7 MEDIUM
Local
fortinet fortiap
fortiap-u
fortiap-w2
An improper neutralization of special elements used in an OS command ("OS Command Injection") vulnerability [CWE-78] vulnerability in Fortinet FortiAP 7.6.0 through 7.6.2, FortiAP 7.4.0 through 7.4.5… CWE-78
OS Command 
CVE-2025-53680 2026-05-15 23:04 2026-05-13 Show GitHub Exploit DB Packet Storm
1502 7.2 HIGH
Network
fortinet fortimail An improper neutralization of special elements used in an SQL Command ("SQL Injection&") vulnerability [CWE-89] vulnerability in Fortinet FortiMail 7.6.0 through 7.6.3, FortiMail 7.4.0 through 7.4.5,… CWE-89
SQL Injection
CVE-2025-53681 2026-05-15 23:04 2026-05-13 Show GitHub Exploit DB Packet Storm
1503 8.8 HIGH
Network
fortinet fortios A out-of-bounds write vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.11 allows attacker to execute unauthorized code or commands via spe… CWE-787
 Out-of-bounds Write
CVE-2025-53844 2026-05-15 23:04 2026-05-13 Show GitHub Exploit DB Packet Storm
1504 5.3 MEDIUM
Network
fortinet fortianalyzer
fortimanager
A use of potentially dangerous function vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, FortiAnalyzer 7.4.0 through 7.4.8, FortiAnalyzer 7.2 all versions, FortiAnalyzer 7.0 all versions,… CWE-676
 Use of Potentially Dangerous Function
CVE-2025-67604 2026-05-15 23:03 2026-05-13 Show GitHub Exploit DB Packet Storm
1505 7.2 HIGH
Network
ivanti virtual_traffic_manager OS command injection in Ivanti Virtual Traffic Manager before version 22.9r4 allows a remote authenticated attacker with admin privileges to achieve remote code execution. CWE-78
OS Command 
CVE-2026-8051 2026-05-15 22:58 2026-05-13 Show GitHub Exploit DB Packet Storm
1506 6.5 MEDIUM
Network
pyload-ng_project pyload-ng pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, package folder names are sanitized using insufficient string replacement. The pattern ....// becomes .._ … CWE-22
Path Traversal
CVE-2026-42314 2026-05-15 22:43 2026-05-12 Show GitHub Exploit DB Packet Storm
1507 9.8 CRITICAL
Network
fortinet fortisandbox
fortisandbox_cloud
fortisandbox_paas
A missing authorization vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.1, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox Cloud 5.0.2 through 5.0.5, FortiSandbox PaaS 23.4 all versions, Fort… CWE-862
 Missing Authorization
CVE-2026-26083 2026-05-15 22:42 2026-05-13 Show GitHub Exploit DB Packet Storm
1508 9.8 CRITICAL
Network
fortinet fortiauthenticator A improper access control vulnerability in Fortinet FortiAuthenticator 8.0.2, FortiAuthenticator 8.0.0, FortiAuthenticator 6.6.0 through 6.6.8, FortiAuthenticator 6.5.0 through 6.5.6 may allow attack… CWE-284
Improper Access Control
CVE-2026-44277 2026-05-15 22:41 2026-05-13 Show GitHub Exploit DB Packet Storm
1509 10.0 CRITICAL
Network
cisco catalyst_sd-wan_manager
sd-wan_vsmart_controller
May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered and fixed after the was disclosed in February 2026. This new advisory is for a new v… CWE-287
Improper Authentication
CVE-2026-20182 2026-05-15 21:45 2026-05-15 Show GitHub Exploit DB Packet Storm
1510 7.5 HIGH
Network
arubanetworks arubaos
sd-wan
A heap-based buffer overflow vulnerability exists in a Network management service of AOS-8 and AOS-10 that could allow an unauthenticated remote attacker to achieve remote code execution. Successful … CWE-122
Heap-based Buffer Overflow
CVE-2026-23827 2026-05-15 21:45 2026-05-13 Show GitHub Exploit DB Packet Storm