Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224921 4 警告 IBM - 複数の IBM サーバ製品上で稼働する Integrated Management Module における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-4038 2013-08-13 15:25 2013-08-1 Show GitHub Exploit DB Packet Storm
224922 4.3 警告 IBM - 複数の IBM サーバ製品上で稼働する Integrated Management Module におけるアクセス権を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-4037 2013-08-13 15:24 2013-08-1 Show GitHub Exploit DB Packet Storm
224923 10 危険 IBM - 複数の IBM サーバ製品上で稼働する Integrated Management Module における電源アクションを実行される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-4031 2013-08-13 15:23 2013-08-1 Show GitHub Exploit DB Packet Storm
224924 4.3 警告 Mike Jolley - WordPress 用 Download Monitor プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5098 2013-08-13 14:04 2013-06-5 Show GitHub Exploit DB Packet Storm
224925 4.3 警告 Mike Jolley - WordPress 用 Download Monitor プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3262 2013-08-13 14:04 2013-06-5 Show GitHub Exploit DB Packet Storm
224926 4.3 警告 Life in the Grid - WordPress 用 Duplicator プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4625 2013-08-13 13:43 2013-07-21 Show GitHub Exploit DB Packet Storm
224927 6.8 警告 Xhanch Studio - WordPress 用 Xhanch - My Twitter プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-3253 2013-08-13 13:35 2013-08-2 Show GitHub Exploit DB Packet Storm
224928 5 警告 Jason A. Donenfeld
Lars Hjemli
- cgit の ui-summary.c の cgit_parse_readme 関数におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-2117 2013-08-13 12:29 2013-05-27 Show GitHub Exploit DB Packet Storm
224929 5 警告 シスコシステムズ - Cisco Finesse の Web インタフェースにおける絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-3457 2013-08-13 11:08 2013-08-12 Show GitHub Exploit DB Packet Storm
224930 4.3 警告 OpenEMR - OpenEMR の interface/main/onotes/office_comments_full.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4620 2013-08-13 10:46 2013-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2131 - - - Lack of input filtering leads to an XSS vector in the HTML filter code. CWE-79
Cross-site Scripting
CVE-2026-48905 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2132 - - - An improper access check allows privelege escalation through the com_users group editing webservice endpoint. CWE-284
Improper Access Control
CVE-2026-48904 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2133 - - - Inadequate content filtering within the checkAttribute methods leads to XSS vulnerabilities in various components. CWE-79
Cross-site Scripting
CVE-2026-48903 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2134 - - - An improper access check allowed low privileged users to edit the task types of existing scheduler tasks. CWE-284
Improper Access Control
CVE-2026-48900 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2135 - - - An improper access check allows privilege escalation through the com_users batch task. CWE-284
Improper Access Control
CVE-2026-48899 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2136 - - - An improper access check allows privilege escalation through the com_users batch task. CWE-284
Improper Access Control
CVE-2026-48898 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2137 - - - Rejected reason: Further research determined the issue is not a vulnerability. - CVE-2026-48091 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2138 4.3 MEDIUM
Network
- - Bugsink is a self-hosted error tracking tool. Prior to 2.2.0, Bugsink resolved sourcemaps and debug files by debug ID without scoping that lookup to the project that owned the uploaded metadata. An a… CWE-862
 Missing Authorization
CVE-2026-47728 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2139 3.1 LOW
Network
- - Bugsink is a self-hosted error tracking tool. Prior to 2.2.0, In affected versions, the issue list view authorizes access through the project in the URL, but applies the requested bulk action to the … CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-47716 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2140 3.1 LOW
Network
- - Bugsink is a self-hosted error tracking tool. Prior to 2.2.0, Bugsink issue event pages accept a direct event identifier from the URL and, in affected versions, look up that event without also requir… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-47715 2026-05-27 02:16 2026-05-27 Show GitHub Exploit DB Packet Storm