Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2061 7.5 重要
Network
Open JS Foundation fast-uri Open JS Foundationのfast-uriにおける解釈の競合に関する脆弱性 CWE-436
解釈の競合
CVE-2026-6322 2026-05-14 10:12 2026-05-5 Show GitHub Exploit DB Packet Storm
2062 4.8 警告
Network
KDDI Androidアプリ「あんしんフィルター for au」 Androidアプリ「あんしんフィルター for au」における重要情報の平文送信の脆弱性 CWE-Other
その他
CVE-2026-41281 2026-05-13 12:14 2026-05-13 Show GitHub Exploit DB Packet Storm
2063 7.8 重要
Local
Bytello Ltd. Bytello Share(Windows版) Bytello Share(Windows版)のEXE形式インストーラにおけるDLL読み込みに関する脆弱性 CWE-Other
その他
CVE-2026-44612 2026-05-13 12:05 2026-05-13 Show GitHub Exploit DB Packet Storm
2064 6.5 警告
Network
whatsapp whatsapp whatsappにおけるNULL バイトまたは NULL キャラクタの無害化に関する脆弱性 CWE-158
NULL バイトまたは NULL キャラクタの不適切な無害化
CVE-2026-23863 2026-05-13 10:27 2026-05-1 Show GitHub Exploit DB Packet Storm
2065 4.3 警告
Network
whatsapp whatsapp whatsappにおける通信チャネルの送信元の不適切な検証に関する脆弱性 CWE-940
通信チャネルの送信元の不適切な検証
CVE-2026-23866 2026-05-13 10:27 2026-05-1 Show GitHub Exploit DB Packet Storm
2066 7.5 重要
Network
Postfix Project postfix Postfix Projectのpostfixにおける境界条件の判定に関する脆弱性 CWE-193
境界条件の判定
CVE-2026-43964 2026-05-13 10:27 2026-05-4 Show GitHub Exploit DB Packet Storm
2067 8 重要
Network
PHOENIX CONTACT fl mguard core tx ファームウェア
FL MGUARD 4305 Firmware
fl mguard delta tx/tx ファームウェア
fl mguard gt/gt vpn ファームウェア
FL&n…
PHOENIX CONTACTのfl mguard 2102 ファームウェア等の複数製品における保存または転送前の重要な情報の削除に関する脆弱性 CWE-212
保存または転送前の重要な情報の不適切な削除
CVE-2024-43384 2026-05-13 10:27 2026-05-7 Show GitHub Exploit DB Packet Storm
2068 6.5 警告
Network
Fudo Security Fudo Enterprise Fudo SecurityのFudo Enterpriseにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2025-13480 2026-05-13 10:27 2026-04-20 Show GitHub Exploit DB Packet Storm
2069 9.8 緊急
Network
Delta Electronics, INC. AS320T Firmware Delta Electronics, INC.のAS320T Firmwareにおけるバッファサイズの計算の誤りに関する脆弱性 CWE-131
正しくないバッファサイズ計算
CVE-2026-1949 2026-05-13 10:27 2026-04-24 Show GitHub Exploit DB Packet Storm
2070 9.8 緊急
Network
Delta Electronics, INC. AS320T Firmware Delta Electronics, INC.のAS320T Firmwareにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-1950 2026-05-13 10:27 2026-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2151 8.1 HIGH
Network
- - e107 is a content management system (CMS). Prior to 2.3.4, a Host Header Injection vulnerability in the password reset page allows attackers to manipulate the Host header to generate password reset l… CWE-20
CWE-807
 Improper Input Validation 
 Reliance on Untrusted Inputs in a Security Decision
CVE-2026-43935 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2152 - - - Files or Directories Accessible to External Parties, Server-Side Request Forgery (SSRF) vulnerability in Apache Flink Kubernetes Operator. The FlinkSessionJob jarURI is currently not validated so th… CWE-552
CWE-918
 Files or Directories Accessible to External Parties
Server-Side Request Forgery (SSRF) 
CVE-2026-40564 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2153 - - - A vulnerability in the Google Cloud Apigee SetIntegrationRequest policy allowed remote attackers to perform Server-Side Request Forgery (SSRF) and exfiltrate service account access tokens. For succe… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-2264 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2154 7.8 HIGH
Local
- - NVIDIA Transformers4Rec for Linux contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A successful exploit of this vulnerability might lead to code exec… CWE-502
 Deserialization of Untrusted Data
CVE-2026-24162 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2155 5.3 MEDIUM
Network
- - IBM Cloud Pak for Data System - Cyclops 11.3.0.2 through Interim Fix 002 IBM Cloud Pak for Data System uses default passwords default passwords from the manufacturing process for use during the inst… CWE-1392
 Use of Default Credentials
CVE-2025-36221 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2156 4.3 MEDIUM
Network
- - IBM Cloud Pak for Data System - Cyclops 11.3.0.2 through Interim Fix 002 IBM Cloud Pak for Data System is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, … CWE-89
SQL Injection
CVE-2025-36220 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2157 5.4 MEDIUM
Network
- - IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4.0 through 3.2.4.15 IBM Financial Transaction Manager SWIFT is vulnerable to cross-site scripting. This vulnerability allo… CWE-79
Cross-site Scripting
CVE-2025-36148 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2158 5.4 MEDIUM
Network
- - IBM watsonx.data 2.2 through 2.3.1 IBM Lakehouse does not properly restrict inbound and outbound connections which could allow an attacker to transfer or modify files without restrictions. CWE-923
 Improper Restriction of Communication Channel to Intended Endpoints
CVE-2025-36145 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2159 6.4 MEDIUM
Network
- - IBM Cognos Analytics 11.2.0, 12.0, and 12.1.0 and IBM Cognos Transformer 12.0, 11.2.4, and 12.1.0 is vulnerable to stored cross-site scripting (XSS) in Cognos Adminstration. This vulnerability allows… CWE-79
Cross-site Scripting
CVE-2025-36126 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2160 5.4 MEDIUM
Network
- - IBM webMethods Integration (on prem) -Integration Server 10.15 through IS_10.15_Core_Fix2611.1 to IS_11.1_Core_Fix10 IBM webMethods Integration is vulnerable to server-side request forgery (SSRF). Th… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2025-14290 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm