Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224241 7.5 危険 Heiko Sudar - TYPO3 用 Slideshare エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5569 2013-08-26 15:31 2013-02-19 Show GitHub Exploit DB Packet Storm
224242 2.1 注意 Paul Maddern - Drupal 用 Imagemenu モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6583 2013-08-26 15:25 2012-09-19 Show GitHub Exploit DB Packet Storm
224243 2.1 注意 Simon Tatham - PuTTY におけるログインパスワードを読まれる脆弱性 CWE-200
情報漏えい
CVE-2011-4607 2013-08-26 14:02 2011-12-8 Show GitHub Exploit DB Packet Storm
224244 7.8 危険 シスコシステムズ - Cisco Unified Communications Manager および Cisco Unified Presence におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-3453 2013-08-26 13:53 2013-08-21 Show GitHub Exploit DB Packet Storm
224245 4 警告 IBM - IBM Optim Performance Manager および IBM InfoSphere Optim Performance Manager におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-2979 2013-08-26 13:34 2013-08-20 Show GitHub Exploit DB Packet Storm
224246 2.6 注意 ヤフー株式会社 - ヤフオク! における SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2013-4699 2013-08-23 18:43 2013-08-19 Show GitHub Exploit DB Packet Storm
224247 2.6 注意 ヤフー株式会社 - Android 版 Yahoo!ショッピングにおける SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2013-4700 2013-08-23 18:41 2013-08-19 Show GitHub Exploit DB Packet Storm
224248 6.4 警告 JanRain - PHP OpenID Library における XML 外部実体参照に関する脆弱性 CWE-Other
その他
CVE-2013-4701 2013-08-23 18:37 2013-08-21 Show GitHub Exploit DB Packet Storm
224249 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルの NT Virtual DOS Machine サブシステムにおける権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2013-3198 2013-08-23 17:56 2013-08-13 Show GitHub Exploit DB Packet Storm
224250 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルの NT Virtual DOS Machine サブシステムにおける権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2013-3197 2013-08-23 17:55 2013-08-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
341 8.8 HIGH
Network
struktur libheif libheif is a HEIF and AVIF file format decoder and encoder. Versions 1.21.2 and prior contain a heap-buffer-overflow (write) vulnerability in the grid tile compositing, allowing an attacker to write … New CWE-787
 Out-of-bounds Write
CVE-2026-32740 2026-05-21 23:16 2026-05-20 Show GitHub Exploit DB Packet Storm
342 9.1 CRITICAL
Network
eclipse glassfish An authenticated Remote Code Execution (RCE) vulnerability was identified in GlassFish's Administration Console. A user with access to the panel can send crafted requests that allow the execution of … Update CWE-94
CWE-917
Code Injection
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2026-2586 2026-05-21 22:18 2026-05-20 Show GitHub Exploit DB Packet Storm
343 9.6 CRITICAL
Network
eclipse glassfish A critical Remote Code Execution (RCE) vulnerability was identified in the server-side template rendering mechanism used by the Glassfish gadget handler. The application processes .xml files and eval… Update CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2026-2587 2026-05-21 22:18 2026-05-20 Show GitHub Exploit DB Packet Storm
344 - - - In the Linux kernel, the following vulnerability has been resolved: net/rds: handle zerocopy send cleanup before the message is queued A zerocopy send can fail after user pages have been pinned but… New - CVE-2026-43502 2026-05-21 22:16 2026-05-21 Show GitHub Exploit DB Packet Storm
345 - - - In the Linux kernel, the following vulnerability has been resolved: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows ipv6_rpl_srh_rcv() decompresses an RFC 6554 Source Routing Header… New - CVE-2026-43501 2026-05-21 22:16 2026-05-21 Show GitHub Exploit DB Packet Storm
346 - - - In the Linux kernel, the following vulnerability has been resolved: rtmutex: Use waiter::task instead of current in remove_waiter() remove_waiter() is used by the slowlock paths, but it is also use… New - CVE-2026-43499 2026-05-21 22:16 2026-05-21 Show GitHub Exploit DB Packet Storm
347 - - - In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Disallow re-exporting imported GEM objects Prevent re-exporting of imported GEM buffers by adding a custom prime_hand… New - CVE-2026-43498 2026-05-21 22:16 2026-05-21 Show GitHub Exploit DB Packet Storm
348 - - - In the Linux kernel, the following vulnerability has been resolved: fbdev: udlfb: add vm_ops to dlfb_ops_mmap to prevent use-after-free dlfb_ops_mmap() uses remap_pfn_range() to map vmalloc framebu… New - CVE-2026-43497 2026-05-21 22:16 2026-05-21 Show GitHub Exploit DB Packet Storm
349 - - - In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_red: Replace direct dequeue call with peek and qdisc_dequeue_peeked When red qdisc has children (eg qfq qdisc) who… New - CVE-2026-43496 2026-05-21 22:16 2026-05-21 Show GitHub Exploit DB Packet Storm
350 - - - In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: validate port_count against message length in t7xx_port_enum_msg_handler t7xx_port_enum_msg_handler() uses the m… New - CVE-2026-43495 2026-05-21 22:16 2026-05-21 Show GitHub Exploit DB Packet Storm