Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224491 4 警告 Apache Software Foundation - Apache Subversion の mod_dav_svn Apache HTTPD サーバモジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-4131 2013-08-2 15:41 2013-07-25 Show GitHub Exploit DB Packet Storm
224492 10 危険 Eva LibRary - Ultra Mini HTTPD におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-5019 2013-08-2 15:26 2013-07-11 Show GitHub Exploit DB Packet Storm
224493 4.3 警告 シマンテック - Symantec Encryption Management Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4674 2013-08-2 15:20 2013-07-22 Show GitHub Exploit DB Packet Storm
224494 4 警告 Fedora Project
レッドハット
- Red Hat Directory Server および 389 Directory Server における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2219 2013-08-2 15:14 2013-07-30 Show GitHub Exploit DB Packet Storm
224495 4.3 警告 Beanbag - Review Board の htdocs/media/rb/js/reviews.js におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2209 2013-08-2 15:06 2013-06-22 Show GitHub Exploit DB Packet Storm
224496 6 警告 The Foreman
レッドハット
- Foreman の Bookmarks コントローラの create メソッドにおける任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-2121 2013-08-2 14:11 2013-06-7 Show GitHub Exploit DB Packet Storm
224497 6 警告 The Foreman
レッドハット
- Foreman の app/controllers/users_controller.rb の create メソッドにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2113 2013-08-2 14:06 2013-06-7 Show GitHub Exploit DB Packet Storm
224498 7.1 危険 Novell
CollabNet, Inc.
Apache Software Foundation
- Apache Subversion における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-2088 2013-08-1 18:01 2013-07-4 Show GitHub Exploit DB Packet Storm
224499 4.3 警告 Western Digital Corporation - 複数の Western Digital My Net ルータ製品のファームウェアにおける平文の管理パスワードを破られる脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-5006 2013-08-1 17:36 2013-07-18 Show GitHub Exploit DB Packet Storm
224500 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-2886 2013-08-1 16:33 2013-07-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
811 9.8 CRITICAL
Network
- - GitBucket 4.23.1 contains an unauthenticated remote code execution vulnerability that allows attackers to execute arbitrary commands by exploiting weak secret token generation and insecure file uploa… CWE-306
Missing Authentication for Critical Function
CVE-2018-25332 2026-05-19 05:16 2026-05-17 Show GitHub Exploit DB Packet Storm
812 8.2 HIGH
Network
- - Nordex N149/4.0-4.5 Wind Turbine Web Server 4.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the … CWE-89
SQL Injection
CVE-2018-25333 2026-05-19 05:16 2026-05-17 Show GitHub Exploit DB Packet Storm
813 - - - LibJWT is a C JSON Web Token Library. From 3.0.0 to 3.3.2, libjwt accepts an RSA JWK that does not contain an alg parameter as the verification key for an HS256/HS384/HS512 token. In the OpenSSL back… CWE-327
CWE-347
 Use of a Broken or Risky Cryptographic Algorithm
 Improper Verification of Cryptographic Signature
CVE-2026-44699 2026-05-19 04:59 2026-05-16 Show GitHub Exploit DB Packet Storm
814 9.1 CRITICAL
Network
- - OpenMRS is an open source electronic medical record system platform. From 2.7.0 to before 2.7.9 and 2.8.6, the ConceptReferenceRangeUtility.evaluateCriteria() method in OpenMRS Core evaluates databas… CWE-94
Code Injection
CVE-2026-41258 2026-05-19 04:59 2026-05-16 Show GitHub Exploit DB Packet Storm
815 7.5 HIGH
Network
- - The bitcoinj library is a Java implementation of the Bitcoin protocol. Prior to 0.17.1, ScriptExecution.correctlySpends() contains two fast-path verification bugs for standard P2PKH and native P2WPKH… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2026-44714 2026-05-19 04:59 2026-05-16 Show GitHub Exploit DB Packet Storm
816 9.8 CRITICAL
Network
- - MCP Calculate Server is a mathematical calculation service based on MCP protocol and SymPy library. Prior to 0.1.1, the use of eval() to evaluate mathematical expressions without proper input sanitiz… CWE-94
Code Injection
CVE-2026-44717 2026-05-19 04:59 2026-05-16 Show GitHub Exploit DB Packet Storm
817 5.5 MEDIUM
Local
- - Microsoft APM is an open-source, community-driven dependency manager for AI agents. Prior to 0.13.0, Microsoft APM contains a Windows-specific archive extraction boundary failure in the legacy-bundle… CWE-22
CWE-73
Path Traversal
 External Control of File Name or Path
CVE-2026-46383 2026-05-19 04:59 2026-05-16 Show GitHub Exploit DB Packet Storm
818 3.5 LOW
Network
- - `gh` is GitHub’s official command line tool. From 1.6.0 to before 2.92.0, a security vulnerability has been identified in GitHub CLI that could allow terminal escape sequence injection when users vie… CWE-150
 Improper Neutralization of Escape, Meta, or Control Sequences
CVE-2026-45803 2026-05-19 04:59 2026-05-16 Show GitHub Exploit DB Packet Storm
819 8.8 HIGH
Network
google chrome Out of bounds write in WebAudio in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Hig… CWE-787
 Out-of-bounds Write
CVE-2026-8524 2026-05-19 04:43 2026-05-15 Show GitHub Exploit DB Packet Storm
820 8.8 HIGH
Network
google chrome Out of bounds write in WebRTC in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) CWE-787
 Out-of-bounds Write
CVE-2026-8526 2026-05-19 04:43 2026-05-15 Show GitHub Exploit DB Packet Storm