Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224111 4.3 警告 Eucalyptus Systems - Eucalyptus の Walrus におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-4067 2013-09-19 18:03 2013-04-16 Show GitHub Exploit DB Packet Storm
224112 6.8 警告 Debian
Konstanty Bialkowski
- libmodplug の abc_MIDI_drum および abc_MIDI_gchord 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4234 2013-09-19 17:46 2013-08-9 Show GitHub Exploit DB Packet Storm
224113 6.8 警告 Debian
Konstanty Bialkowski
- libmodplug の load_abc.cpp の abc_set_parts 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-4233 2013-09-19 17:43 2013-08-9 Show GitHub Exploit DB Packet Storm
224114 4.3 警告 レッドハット - Red Hat Enterprise Virtualization で使用される oVirt Engine および RHEV-M におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4181 2013-09-19 17:42 2013-09-10 Show GitHub Exploit DB Packet Storm
224115 5 警告 KDE project
Novell
- KDE-Workspace におけるサービス運用妨害 (DoS) の脆弱性 CWE-310
暗号の問題
CVE-2013-4132 2013-09-19 17:41 2013-06-26 Show GitHub Exploit DB Packet Storm
224116 4.3 警告 ExactCODE - ExactImage の econvert におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1441 2013-09-19 17:34 2013-09-5 Show GitHub Exploit DB Packet Storm
224117 4.3 警告 LibRaw - LibRaw の "高速 LJPEG デコーダ" におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-1439 2013-09-19 13:50 2013-08-22 Show GitHub Exploit DB Packet Storm
224118 3.5 注意 OpenStack - 複数の OpenStack 製品における任意のフレーバーをブートされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4278 2013-09-19 12:16 2013-08-28 Show GitHub Exploit DB Packet Storm
224119 6 警告 OpenStack - OpenStack Compute および Havana における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2256 2013-09-19 11:33 2013-07-5 Show GitHub Exploit DB Packet Storm
224120 7.5 危険 The Foreman
レッドハット
- Foreman の app/controllers/api/v1/hosts_controller.rb における任意のホストにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4182 2013-09-19 10:43 2013-07-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
371 7.5 HIGH
Network
mozilla firefox
thunderbird
Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. CWE-200
Information Exposure
CVE-2026-8965 2026-05-21 02:51 2026-05-19 Show GitHub Exploit DB Packet Storm
372 7.5 HIGH
Network
mozilla firefox
thunderbird
Information disclosure in the IP Protection component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. CWE-200
Information Exposure
CVE-2026-8966 2026-05-21 02:51 2026-05-19 Show GitHub Exploit DB Packet Storm
373 8.8 HIGH
Network
mozilla firefox
thunderbird
Memory safety bugs present in Thunderbird 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-8973 2026-05-21 02:50 2026-05-19 Show GitHub Exploit DB Packet Storm
374 7.5 HIGH
Network
progress moveit_automation Uncontrolled Memory Allocation vulnerability in Progress Software MOVEit Automation allows Excessive Allocation. This issue affects MOVEit Automation: before 2025.0.11, from 2025.1.0 before 2025.1.7. CWE-789
 Memory Allocation with Excessive Size Value
CVE-2026-8485 2026-05-21 02:50 2026-05-20 Show GitHub Exploit DB Packet Storm
375 4.6 MEDIUM
Network
nozominetworks cmc
guardian
An Angular template injection vulnerability was discovered in the Reports functionality due to improper validation of an input parameter. An authenticated user with report privileges can define a mal… CWE-1336
 Improper Neutralization of Special Elements Used in a Template Engine
CVE-2025-40900 2026-05-21 02:35 2026-05-19 Show GitHub Exploit DB Packet Storm
376 8.8 HIGH
Network
mozilla firefox
thunderbird
Privilege escalation in the Security component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. CWE-269
 Improper Privilege Management
CVE-2026-8970 2026-05-21 02:34 2026-05-19 Show GitHub Exploit DB Packet Storm
377 6.5 MEDIUM
Network
kilo kilo_code_cli A flaw has been found in Kilo-Org kilocode up to 7.0.47. This issue affects the function Load of the file packages/opencode/src/config/config.ts of the component Environment Variable Handler. Executi… CWE-200
CWE-284
NVD-CWE-noinfo
Information Exposure
Improper Access Control
CVE-2026-8766 2026-05-21 02:34 2026-05-18 Show GitHub Exploit DB Packet Storm
378 4.0 MEDIUM
Physics
- - Ledger Bitcoin app versions 2.1.0 and 2.1.1 contain an address derivation vulnerability that allows attackers to cause incorrect Bitcoin addresses to be displayed by exploiting improper handling of m… CWE-682
 Incorrect Calculation
CVE-2023-7346 2026-05-21 02:33 2026-05-21 Show GitHub Exploit DB Packet Storm
379 7.2 HIGH
Network
- - The Cost of Goods by PixelYourSite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'csvdata[0][cost_of_goods_value]' parameter in versions up to, and including, 1.2.12 due t… CWE-79
Cross-site Scripting
CVE-2026-7613 2026-05-21 02:33 2026-05-21 Show GitHub Exploit DB Packet Storm
380 6.4 MEDIUM
Network
- - A flaw was found in Keycloak. The cross-session verification proof is keyed only by (local userId, idpAlias) and is not bound to the upstream identity that was actually verified, so a second upstream… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-9087 2026-05-21 02:32 2026-05-21 Show GitHub Exploit DB Packet Storm