Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3281 6.4 警告
Local
レッドハット process automation manager レッドハットのprocess automation managerにおける不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2025-58713 2026-05-7 11:29 2026-04-8 Show GitHub Exploit DB Packet Storm
3282 4.8 警告
Network
GNU Project GNU Wget2 GNU ProjectのGNU Wget2における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-1858 2026-05-7 11:28 2026-04-29 Show GitHub Exploit DB Packet Storm
3283 6.5 警告
Adjacent
シスコシステムズ Cisco Firepower Threat Defense ソフトウェア
Adaptive Security Appliance (ASA) Software
シスコシステムズのAdaptive Security Appliance (ASA) Software等の複数製品における範囲外のポインタオフセットの使用に関する脆弱性 CWE-823
範囲外のポインタオフセットの使用
CVE-2026-20022 2026-05-7 11:28 2026-03-4 Show GitHub Exploit DB Packet Storm
3284 6.5 警告
Adjacent
シスコシステムズ Cisco Firepower Threat Defense ソフトウェア
Adaptive Security Appliance (ASA) Software
シスコシステムズのAdaptive Security Appliance (ASA) Software等の複数製品における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-20023 2026-05-7 11:28 2026-03-4 Show GitHub Exploit DB Packet Storm
3285 5.7 警告
Adjacent
シスコシステムズ Cisco Firepower Threat Defense ソフトウェア
Adaptive Security Appliance (ASA) Software
シスコシステムズのAdaptive Security Appliance (ASA) Software等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-20024 2026-05-7 11:28 2026-03-4 Show GitHub Exploit DB Packet Storm
3286 8.6 重要
Network
シスコシステムズ Adaptive Security Appliance (ASA) Software シスコシステムズのAdaptive Security Appliance (ASA) Softwareにおける有効なライフタイム後のリソースの解放の欠如に関する脆弱性 CWE-772
有効なライフタイム後のリソースの解放の欠如
CVE-2026-20082 2026-05-7 11:28 2026-03-4 Show GitHub Exploit DB Packet Storm
3287 5 警告
Network
Cloud Foundry, Inc. routing release
cf-deployment
Cloud Foundry, Inc.のCf-deployment等の複数製品における意図するエンドポイントとの通信チャネルの制限に関する脆弱性 CWE-923
意図するエンドポイントとの通信チャネルの不適切な制限
CVE-2026-22726 2026-05-7 11:28 2026-05-1 Show GitHub Exploit DB Packet Storm
3288 6.5 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-22740 2026-05-7 11:28 2026-04-29 Show GitHub Exploit DB Packet Storm
3289 3.1
Network
VMware Spring Framework VMwareのSpring Frameworkにおける重要な情報を含むキャッシュの使用に関する脆弱性 CWE-524
重要な情報を含むキャッシュの使用
CVE-2026-22741 2026-05-7 11:28 2026-04-29 Show GitHub Exploit DB Packet Storm
3290 5.3 警告
Network
VMware Spring Framework VMwareのSpring Frameworkにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-22745 2026-05-7 11:28 2026-04-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2201 5.3 MEDIUM
Network
- - IBM Cloud Pak for Data System - Cyclops 11.3.0.2 through Interim Fix 002 IBM Cloud Pak for Data System uses default passwords default passwords from the manufacturing process for use during the inst… CWE-1392
 Use of Default Credentials
CVE-2025-36221 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2202 4.3 MEDIUM
Network
- - IBM Cloud Pak for Data System - Cyclops 11.3.0.2 through Interim Fix 002 IBM Cloud Pak for Data System is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, … CWE-89
SQL Injection
CVE-2025-36220 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2203 5.4 MEDIUM
Network
- - IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4.0 through 3.2.4.15 IBM Financial Transaction Manager SWIFT is vulnerable to cross-site scripting. This vulnerability allo… CWE-79
Cross-site Scripting
CVE-2025-36148 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2204 5.4 MEDIUM
Network
- - IBM watsonx.data 2.2 through 2.3.1 IBM Lakehouse does not properly restrict inbound and outbound connections which could allow an attacker to transfer or modify files without restrictions. CWE-923
 Improper Restriction of Communication Channel to Intended Endpoints
CVE-2025-36145 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2205 6.4 MEDIUM
Network
- - IBM Cognos Analytics 11.2.0, 12.0, and 12.1.0 and IBM Cognos Transformer 12.0, 11.2.4, and 12.1.0 is vulnerable to stored cross-site scripting (XSS) in Cognos Adminstration. This vulnerability allows… CWE-79
Cross-site Scripting
CVE-2025-36126 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2206 5.4 MEDIUM
Network
- - IBM webMethods Integration (on prem) -Integration Server 10.15 through IS_10.15_Core_Fix2611.1 to IS_11.1_Core_Fix10 IBM webMethods Integration is vulnerable to server-side request forgery (SSRF). Th… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2025-14290 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2207 5.3 MEDIUM
Network
concretecms concrete_cms Concrete CMS 9.5.0 and below is vulnerable to IDOR in surveys. To be vulnerable, a site would have to be configured in such a way that both public and private surveys are present on the site. An unau… CWE-565
CWE-639
 Reliance on Cookies without Validation and Integrity Checking
 Authorization Bypass Through User-Controlled Key
CVE-2026-8337 2026-05-27 02:13 2026-05-22 Show GitHub Exploit DB Packet Storm
2208 9.8 CRITICAL
Network
- - A vulnerability has been found in Totolink N300RH 6.1c.1353_B20190305. Affected is the function setPasswordCfg of the file /cgi-bin/cstecgi.cgi of the component Web Management Interface. Such manipul… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-9543 2026-05-27 01:16 2026-05-26 Show GitHub Exploit DB Packet Storm
2209 3.3 LOW
Local
- - A weakness has been identified in GNU LibreDWG up to 0.14. The impacted element is the function read_2004_compressed_section of the file src/decode.c of the component Dwgbmp Utility. Executing a mani… CWE-119
CWE-125
Incorrect Access of Indexable Resource ('Range Error') 
Out-of-bounds Read
CVE-2026-9530 2026-05-27 01:16 2026-05-26 Show GitHub Exploit DB Packet Storm
2210 3.3 LOW
Local
- - A weakness has been identified in GNU LibreDWG up to 0.14. Affected is the function bit_convert_TU of the file programs/dwggrep.c of the component Dwggrep Utility. This manipulation causes out-of-bou… CWE-119
CWE-125
Incorrect Access of Indexable Resource ('Range Error') 
Out-of-bounds Read
CVE-2026-9504 2026-05-27 01:16 2026-05-26 Show GitHub Exploit DB Packet Storm