Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224441 2.1 注意 RSAセキュリティ - アプライアンスで使用される EMC RSA Authentication Manager における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-3273 2013-07-10 13:44 2013-07-8 Show GitHub Exploit DB Packet Storm
224442 7.5 危険 Atlassian - Atlassian Crowd における任意のコマンドを実行される脆弱性 CWE-Other
その他
CVE-2013-3926 2013-07-10 11:33 2013-06-30 Show GitHub Exploit DB Packet Storm
224443 7.8 危険 シスコシステムズ - Cisco Unified Customer Voice Portal の Resource Manager におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-1224 2013-07-10 10:45 2013-05-8 Show GitHub Exploit DB Packet Storm
224444 4.3 警告 WordPress.org
Fedora Project
Moxiecode Systems
- WordPress などの製品で使用される Moxiecode Plupload におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0237 2013-07-9 18:48 2013-01-24 Show GitHub Exploit DB Packet Storm
224445 4.3 警告 WordPress.org - WordPress におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0236 2013-07-9 18:47 2013-01-24 Show GitHub Exploit DB Packet Storm
224446 6.4 警告 WordPress.org - WordPress の XMLRPC API におけるイントラネットサーバへ HTTP リクエストを送信される脆弱性 CWE-Other
その他
CVE-2013-0235 2013-07-9 18:41 2013-01-24 Show GitHub Exploit DB Packet Storm
224447 2.9 注意 シマンテック - Symantec Security Information Manager アプライアンスの管理コンソールにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-1615 2013-07-9 15:23 2013-07-1 Show GitHub Exploit DB Packet Storm
224448 4.3 警告 シマンテック - Symantec Security Information Manager アプライアンスの管理コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1614 2013-07-9 15:23 2013-07-1 Show GitHub Exploit DB Packet Storm
224449 4.7 警告 シマンテック - Symantec Security Information Manager アプライアンスの管理コンソールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-1613 2013-07-9 15:22 2013-07-1 Show GitHub Exploit DB Packet Storm
224450 5.1 警告 フォーティネット - Fortinet FortiGate デバイス上で稼働する FortiOS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-1414 2013-07-9 15:21 2013-07-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
71 9.8 CRITICAL
Network
- - Camel-CXF and Camel-Knative Message Header Injection via Missing Inbound Filtering The CXF and Knative HeaderFilterStrategy implementations (CxfRsHeaderFilterStrategy in camel-cxf-rest, CxfHeaderFil… New CWE-178
 Improper Handling of Case Sensitivity
CVE-2026-47323 2026-05-21 02:16 2026-05-19 Show GitHub Exploit DB Packet Storm
72 8.8 HIGH
Network
apache ofbiz Improper Control of Generation of Code ('Code Injection'), Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') vulnerability in Apache OFBiz. This issue affects Ap… New CWE-94
CWE-95
Code Injection
Eval Injection
CVE-2026-46586 2026-05-21 02:16 2026-05-19 Show GitHub Exploit DB Packet Storm
73 5.5 MEDIUM
Local
- - In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dumpable()' logic The 'dumpability' of a task is fundamentally about the memory image of the task - t… Update CWE-269
 Improper Privilege Management
CVE-2026-46333 2026-05-21 02:16 2026-05-15 Show GitHub Exploit DB Packet Storm
74 9.8 CRITICAL
Network
apache ofbiz Improper Authentication vulnerability in Apache OFBiz via Password-Change Logic Flaw Leading to Remote Code Execution This issue affects Apache OFBiz: before 24.09.06. Users are recommended to upgr… New CWE-287
Improper Authentication
CVE-2026-45434 2026-05-21 02:16 2026-05-19 Show GitHub Exploit DB Packet Storm
75 7.8 HIGH
Local
tabby tabby Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.233, since Tabby does not escape control characters from file paths when dragging and dropping a file into it, code … Update CWE-150
 Improper Neutralization of Escape, Meta, or Control Sequences
CVE-2026-45038 2026-05-21 02:16 2026-05-16 Show GitHub Exploit DB Packet Storm
76 7.0 HIGH
Local
tabby tabby Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.233, Tabby before 1.0.233 automatically confirms ZMODEM protocol detection on all terminal session output without us… Update CWE-78
OS Command 
CVE-2026-45036 2026-05-21 02:16 2026-05-16 Show GitHub Exploit DB Packet Storm
77 4.3 MEDIUM
Network
- - In OpenStack Ironic through 35.x before a3f6d73, during image handling, an infinite loop in checksum calculations can occur via the file:///dev/zero URL. Update CWE-696
 Incorrect Behavior Order
CVE-2026-44919 2026-05-21 02:16 2026-05-14 Show GitHub Exploit DB Packet Storm
78 9.8 CRITICAL
Network
- - In the Linux kernel, the following vulnerability has been resolved: crypto: pcrypt - Fix handling of MAY_BACKLOG requests MAY_BACKLOG requests can return EBUSY. Handle them by checking for that va… New - CVE-2026-43493 2026-05-21 02:16 2026-05-19 Show GitHub Exploit DB Packet Storm
79 8.8 HIGH
Network
- - In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate inherited ACE SID length smb_inherit_dacl() walks the parent directory DACL loaded from the security descriptor x… Update - CVE-2026-43490 2026-05-21 02:16 2026-05-15 Show GitHub Exploit DB Packet Storm
80 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: net-shapers: don't free reply skb after genlmsg_reply() genlmsg_reply() hands the reply skb to netlink, and netlink_unicast() con… Update - CVE-2026-43481 2026-05-21 02:16 2026-05-14 Show GitHub Exploit DB Packet Storm