Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224291 4.3 警告 Open-Xchange - Open-Xchange App Suite および Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3106 2013-09-6 15:03 2013-06-3 Show GitHub Exploit DB Packet Storm
224292 4.3 警告 Open-Xchange - Open-Xchange App Suite および Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2583 2013-09-6 14:54 2013-04-17 Show GitHub Exploit DB Packet Storm
224293 5 警告 Open-Xchange - Open-Xchange App Suite および Server のリダイレクトサーブレットにおける CRLF インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2013-2582 2013-09-6 14:47 2013-04-17 Show GitHub Exploit DB Packet Storm
224294 5.8 警告 DELL EMC (旧 EMC Corporation) - EMC RSA Archer GRC におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2013-3277 2013-09-6 12:06 2013-09-3 Show GitHub Exploit DB Packet Storm
224295 6.8 警告 シスコシステムズ - Cisco Global Site Selector の Web フレームワークにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-5471 2013-09-6 11:49 2013-09-4 Show GitHub Exploit DB Packet Storm
224296 6.8 警告 ShareThis - WordPress 用 ShareThis プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-3479 2013-09-6 11:44 2013-08-27 Show GitHub Exploit DB Packet Storm
224297 4.3 警告 シスコシステムズ - Cisco Prime NCS および Cisco WCS にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5990 2013-09-5 19:40 2013-09-3 Show GitHub Exploit DB Packet Storm
224298 5 警告 シスコシステムズ - Cisco Secure Access Control System におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-5470 2013-09-5 12:09 2013-09-4 Show GitHub Exploit DB Packet Storm
224299 5 警告 シスコシステムズ - Cisco モビリティ サービス エンジンにおける認証されていないセッションを取得される脆弱性 CWE-200
情報漏えい
CVE-2013-3469 2013-09-5 12:01 2013-09-3 Show GitHub Exploit DB Packet Storm
224300 4.3 警告 VMware - VMware ESXi および ESX におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1661 2013-09-5 11:50 2013-08-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1221 5.5 MEDIUM
Local
microsoft 365_apps
office
office_long_term_servicing_channel
word
Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized attacker to disclose information locally. CWE-552
 Files or Directories Accessible to External Parties
CVE-2026-35440 2026-05-20 03:05 2026-05-13 Show GitHub Exploit DB Packet Storm
1222 8.4 HIGH
Local
microsoft 365_apps
office
office_long_term_servicing_channel
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. CWE-416
 Use After Free
CVE-2026-40358 2026-05-20 03:05 2026-05-13 Show GitHub Exploit DB Packet Storm
1223 7.8 HIGH
Local
microsoft 365_apps
excel
office
office_long_term_servicing_channel
office_online_server
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. CWE-416
 Use After Free
CVE-2026-40359 2026-05-20 03:05 2026-05-13 Show GitHub Exploit DB Packet Storm
1224 7.8 HIGH
Local
microsoft 365_apps
excel
office
office_long_term_servicing_channel
office_online_server
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. CWE-125
Out-of-bounds Read
CVE-2026-40360 2026-05-20 03:05 2026-05-13 Show GitHub Exploit DB Packet Storm
1225 8.4 HIGH
Local
microsoft 365_apps
office
office_long_term_servicing_channel
word
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. CWE-416
 Use After Free
CVE-2026-40361 2026-05-20 03:05 2026-05-13 Show GitHub Exploit DB Packet Storm
1226 7.8 HIGH
Local
microsoft 365_apps
excel
office
office_long_term_servicing_channel
office_online_server
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. CWE-122
Heap-based Buffer Overflow
CVE-2026-40362 2026-05-20 03:05 2026-05-13 Show GitHub Exploit DB Packet Storm
1227 8.4 HIGH
Local
microsoft 365_apps
office
office_long_term_servicing_channel
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. CWE-122
Heap-based Buffer Overflow
CVE-2026-40363 2026-05-20 03:05 2026-05-13 Show GitHub Exploit DB Packet Storm
1228 8.4 HIGH
Local
microsoft 365_apps
office
office_long_term_servicing_channel
word
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally. CWE-122
CWE-843
CWE-908
Heap-based Buffer Overflow
Type Confusion
 Use of Uninitialized Resource
CVE-2026-40364 2026-05-20 03:05 2026-05-13 Show GitHub Exploit DB Packet Storm
1229 8.4 HIGH
Local
microsoft 365_apps
office
office_long_term_servicing_channel
word
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. CWE-416
 Use After Free
CVE-2026-40366 2026-05-20 03:05 2026-05-13 Show GitHub Exploit DB Packet Storm
1230 8.4 HIGH
Local
microsoft 365_apps
office
office_long_term_servicing_channel
sharepoint_server
word
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally. CWE-822
 Untrusted Pointer Dereference
CVE-2026-40367 2026-05-20 03:05 2026-05-13 Show GitHub Exploit DB Packet Storm