Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 28, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3961 7.1 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-43453 2026-05-25 10:20 2026-05-8 Show GitHub Exploit DB Packet Storm
3962 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2026-43457 2026-05-25 10:20 2026-05-8 Show GitHub Exploit DB Packet Storm
3963 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-43458 2026-05-25 10:20 2026-05-8 Show GitHub Exploit DB Packet Storm
3964 7.3 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-43459 2026-05-25 10:20 2026-05-8 Show GitHub Exploit DB Packet Storm
3965 8.2 重要
Network
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-43466 2026-05-25 10:20 2026-05-8 Show GitHub Exploit DB Packet Storm
3966 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-43467 2026-05-25 10:20 2026-05-8 Show GitHub Exploit DB Packet Storm
3967 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおけるリソースのロックに関する脆弱性 CWE-667
不適切なロック
CVE-2026-43468 2026-05-25 10:20 2026-05-8 Show GitHub Exploit DB Packet Storm
3968 7.5 重要
Network
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-43469 2026-05-25 10:20 2026-05-8 Show GitHub Exploit DB Packet Storm
3969 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-43470 2026-05-25 10:20 2026-05-8 Show GitHub Exploit DB Packet Storm
3970 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける初期化されていないリソースの使用に関する脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2026-43472 2026-05-25 10:20 2026-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 28, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
305501 - nathan_haug webform Multiple cross-site scripting (XSS) vulnerabilities in components/select.inc in the Webform module 6.x-3.x before 6.x-3.17 and 7.x-3.x before 7.x-3.17 for Drupal, when the "Select (or other)" module … CWE-79
Cross-site Scripting
CVE-2012-1660 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
305502 - ariel_barreiro noderecommendation Cross-site scripting (XSS) vulnerability in the Node Recommendation module 6.x-1.x before 6.x-1.1 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script … CWE-79
Cross-site Scripting
CVE-2012-1659 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
305503 - fourkitchens ed_readmore Cross-site scripting (XSS) vulnerability in the Read More Link module 6.x-3.x before 6.x-3.1 for Drupal allows remote authenticated users with the access administration pages permission to inject arb… CWE-79
Cross-site Scripting
CVE-2012-1658 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
305504 - fourkitchens block_class Cross-site scripting (XSS) vulnerability in block_class.module in the Block Class module before 7.x-1.1 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web s… CWE-79
Cross-site Scripting
CVE-2012-1657 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
305505 - wesjones multisite_search SQL injection vulnerability in the Multisite Search module 6.x-2.2 for Drupal allows remote authenticated users with certain permissions to execute arbitrary SQL commands via the Site table prefix fi… CWE-89
SQL Injection
CVE-2012-1656 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
305506 - sven_decabooter uc_paydutchgroup_\/_wedeal_payment Unspecified vulnerability in the UC PayDutchGroup / WeDeal payment module 6.x-1.0 for Drupal allows remote authenticated users to obtain account credentials via unknown attack vectors. NVD-CWE-noinfo
CVE-2012-1655 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
305507 - alex_barth data Multiple cross-site scripting (XSS) vulnerabilities in the Data module 6.x-1.x before 6.x-1.0 and 7.x-1.x before 7.x-1.0-alpha3 for Drupal allow remote authenticated users with the administer data ta… CWE-79
Cross-site Scripting
CVE-2012-1654 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
305508 - microsoft visual_studio_team_foundation_server Cross-site scripting (XSS) vulnerability in Microsoft Visual Studio Team Foundation Server 2010 SP1 allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka "X… CWE-79
Cross-site Scripting
CVE-2012-1892 2024-11-21 10:37 2012-09-12 Show GitHub Exploit DB Packet Storm
305509 - danielb cool_aid Cool Aid module before 6.x-1.9 for Drupal does not enforce access restrictions, which allows remote authenticated users with the administer coolaid permission to modify arbitrary pages via unspecifie… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-1649 2024-11-21 10:37 2012-09-10 Show GitHub Exploit DB Packet Storm
305510 - danielb cool_aid Cross-site scripting (XSS) vulnerability in the Cool Aid module before 6.x-1.9 for Drupal allows remote authenticated users with the administer coolaid permission to inject arbitrary web script or HT… CWE-79
Cross-site Scripting
CVE-2012-1648 2024-11-21 10:37 2012-09-10 Show GitHub Exploit DB Packet Storm