Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2071 7.5 重要
Network
Haxx cURL HaxxのcURLにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-5773 2026-05-15 10:56 2026-05-13 Show GitHub Exploit DB Packet Storm
2072 6.5 警告
Network
IBM IBM Verify Identity Access
IBM Verify Identity Access Container
IBM Security Verify Access Container
IBMのSecurity Verify Access等の複数製品における暗号アルゴリズムの使用に関する脆弱性 CWE-327
不完全、または危険な暗号アルゴリズムの使用
CVE-2026-5926 2026-05-15 10:56 2026-04-23 Show GitHub Exploit DB Packet Storm
2073 6.5 警告
Adjacent
ZyXEL WRE6505 ファームウェア ZyXELのWRE6505 ファームウェアにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2026-7255 2026-05-15 10:56 2026-05-12 Show GitHub Exploit DB Packet Storm
2074 7.5 重要
Network
Open5GS Open5GS Open5GSにおける複数の脆弱性 CWE-119
CWE-125
CVE-2026-8186 2026-05-15 10:56 2026-05-9 Show GitHub Exploit DB Packet Storm
2075 7.5 重要
Network
Open5GS Open5GS Open5GSにおける複数の脆弱性 CWE-400
CWE-404
CVE-2026-8187 2026-05-15 10:56 2026-05-9 Show GitHub Exploit DB Packet Storm
2076 8.8 重要
Network
WAVLINK WL-NU516U1 ファームウェア WAVLINKのWL-NU516U1 ファームウェアにおける複数の脆弱性 CWE-77
CWE-78
CVE-2026-8188 2026-05-15 10:56 2026-05-9 Show GitHub Exploit DB Packet Storm
2077 8.8 重要
Network
WAVLINK WL-NU516U1 ファームウェア WAVLINKのWL-NU516U1 ファームウェアにおける複数の脆弱性 CWE-77
CWE-78
CVE-2026-8189 2026-05-15 10:56 2026-05-9 Show GitHub Exploit DB Packet Storm
2078 8.8 重要
Network
WAVLINK WL-NU516U1 ファームウェア WAVLINKのWL-NU516U1 ファームウェアにおける複数の脆弱性 CWE-77
CWE-78
CVE-2026-8190 2026-05-15 10:56 2026-05-9 Show GitHub Exploit DB Packet Storm
2079 8.8 重要
Network
WAVLINK WL-NU516U1 ファームウェア WAVLINKのWL-NU516U1 ファームウェアにおける複数の脆弱性 CWE-77
CWE-78
CVE-2026-8191 2026-05-15 10:56 2026-05-9 Show GitHub Exploit DB Packet Storm
2080 8.8 重要
Network
WAVLINK WL-NU516U1 ファームウェア WAVLINKのWL-NU516U1 ファームウェアにおける複数の脆弱性 CWE-77
CWE-78
CVE-2026-8192 2026-05-15 10:55 2026-05-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311671 4.3 MEDIUM
Network
- - The Countdown Timer block – Display the event's date into a timer. plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.2.4 via the [ctb] shortcode … CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-10669 2024-11-12 22:56 2024-11-9 Show GitHub Exploit DB Packet Storm
311672 - - - The Content Slider Block plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 3.1.5 via the [csb] shortcode due to insufficient restrictions on which posts… - CVE-2024-10667 2024-11-12 22:56 2024-11-9 Show GitHub Exploit DB Packet Storm
311673 6.1 MEDIUM
Network
- - The Landing Page Cat – Coming Soon Page, Maintenance Page & Squeeze Pages plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate esca… CWE-79
Cross-site Scripting
CVE-2024-9226 2024-11-12 22:56 2024-11-9 Show GitHub Exploit DB Packet Storm
311674 8.8 HIGH
Network
- - The Th Shop Mania theme for WordPress is vulnerable to unauthorized arbitrary plugin installation due to a missing capability check on the th_shop_mania_install_and_activate_callback() function in al… CWE-862
 Missing Authorization
CVE-2024-10674 2024-11-12 22:56 2024-11-9 Show GitHub Exploit DB Packet Storm
311675 8.8 HIGH
Network
- - The Top Store theme for WordPress is vulnerable to unauthorized arbitrary plugin installation due to a missing capability check on the top_store_install_and_activate_callback() function in all versio… CWE-862
 Missing Authorization
CVE-2024-10673 2024-11-12 22:56 2024-11-9 Show GitHub Exploit DB Packet Storm
311676 9.8 CRITICAL
Network
- - The WooCommerce Support Ticket System plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the ajax_manage_file_chunk_upload() function in all versions … CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-10627 2024-11-12 22:56 2024-11-9 Show GitHub Exploit DB Packet Storm
311677 8.8 HIGH
Network
- - The WooCommerce Support Ticket System plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the delete_uploaded_file() function in all versions up … CWE-22
Path Traversal
CVE-2024-10626 2024-11-12 22:56 2024-11-9 Show GitHub Exploit DB Packet Storm
311678 9.8 CRITICAL
Network
- - The WooCommerce Support Ticket System plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the delete_tmp_uploaded_file() function in all versions… CWE-22
Path Traversal
CVE-2024-10625 2024-11-12 22:56 2024-11-9 Show GitHub Exploit DB Packet Storm
311679 5.5 MEDIUM
Network
- - The Anih - Creative Agency WordPress Theme theme for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 2024 due to an incomplete blacklis… CWE-79
Cross-site Scripting
CVE-2024-9775 2024-11-12 22:56 2024-11-9 Show GitHub Exploit DB Packet Storm
311680 6.4 MEDIUM
Network
- - The Cowidgets – Elementor Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.2.0 due to insufficient input sanitizat… CWE-79
Cross-site Scripting
CVE-2024-8960 2024-11-12 22:56 2024-11-9 Show GitHub Exploit DB Packet Storm