Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224931 4.9 警告 Linux - Linux Kernel の net/caif/caif_socket.c における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-3227 2013-06-13 17:36 2013-04-7 Show GitHub Exploit DB Packet Storm
224932 4.9 警告 Linux - Linux Kernel の net/bluetooth/sco.c における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-3226 2013-06-13 17:35 2013-04-7 Show GitHub Exploit DB Packet Storm
224933 10 危険 オラクル - Oracle Java SE の JavaFX における脆弱性 CWE-noinfo
情報不足
CVE-2013-1477 2013-06-13 17:35 2013-02-1 Show GitHub Exploit DB Packet Storm
224934 5.8 警告 シスコシステムズ - Cisco Nexus 1000V 上で稼働する Cisco NX-OS におけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2013-1212 2013-06-13 17:23 2013-05-28 Show GitHub Exploit DB Packet Storm
224935 9.3 危険 アップル
オラクル
- Oracle Java SE の JavaFX における脆弱性 CWE-noinfo
情報不足
CVE-2013-1474 2013-06-13 17:23 2013-02-1 Show GitHub Exploit DB Packet Storm
224936 4.3 警告 アップル - Apple iTunes における HTTPS サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2013-1014 2013-06-13 17:20 2013-05-16 Show GitHub Exploit DB Packet Storm
224937 10 危険 オラクル - Oracle Java SE の JavaFX における脆弱性 CWE-noinfo
情報不足
CVE-2013-1472 2013-06-13 17:08 2013-02-1 Show GitHub Exploit DB Packet Storm
224938 4.3 警告 Google - Google Chrome におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2849 2013-06-13 16:58 2013-05-21 Show GitHub Exploit DB Packet Storm
224939 6.8 警告 Google - Google Chrome のワーカーの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2013-2847 2013-06-13 16:53 2013-05-21 Show GitHub Exploit DB Packet Storm
224940 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-2846 2013-06-13 16:52 2013-05-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1311 8.1 HIGH
Network
- - Live Helper Chat is an open-source application that enables live support websites. In 4.84v, the Live Helper Chat REST API chat update endpoint allows a REST user with lhchat/use to update a chat in … CWE-863
 Incorrect Authorization
CVE-2026-44633 2026-05-15 23:44 2026-05-15 Show GitHub Exploit DB Packet Storm
1312 - - - Note Mark is an open-source note-taking application. From 0.13.0 to before 0.19.4, the Note Mark application allows authenticated users to upload assets to notes via POST /api/notes/{noteID}/assets, … CWE-20
CWE-22
 Improper Input Validation 
Path Traversal
CVE-2026-44522 2026-05-15 23:44 2026-05-15 Show GitHub Exploit DB Packet Storm
1313 9.3 CRITICAL
Network
- - PrestaShop is an open source e-commerce web application. Prior to 8.2.6 and 9.1.1, there is a stored Cross-Site Scripting (XSS) vulnerability in the PrestaShop back-office Customer Service view. An u… CWE-79
Cross-site Scripting
CVE-2026-44212 2026-05-15 23:30 2026-05-15 Show GitHub Exploit DB Packet Storm
1314 5.4 MEDIUM
Network
- - Cross-site scripting vulnerability exists in Musetheque V4 Information Disclosure for IPKNOWLEDGE V4L1 rev2203.0 and earlier. If a file containing malicious contents is uploaded, an arbitrary script … CWE-79
Cross-site Scripting
CVE-2026-24662 2026-05-15 23:30 2026-05-15 Show GitHub Exploit DB Packet Storm
1315 8.1 HIGH
Network
- - Cross-site request forgery vulnerability exists in Musetheque V4 Information Disclosure for IPKNOWLEDGE V4L1 rev2203.0 and earlier. If a user views a malicious page while logged-in to the affected pr… CWE-352
 Origin Validation Error
CVE-2026-28761 2026-05-15 23:30 2026-05-15 Show GitHub Exploit DB Packet Storm
1316 6.5 MEDIUM
Network
pyload-ng_project pyload-ng pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, when passing a folder name in the set_package_data() API function call inside the data object with key "_… CWE-22
CWE-36
Path Traversal
 Absolute Path Traversal
CVE-2026-42315 2026-05-15 23:29 2026-05-12 Show GitHub Exploit DB Packet Storm
1317 5.5 MEDIUM
Local
microsoft live_preview Relative path traversal in Visual Studio Code allows an unauthorized attacker to disclose information locally. CWE-22
CWE-23
Path Traversal
 Relative Path Traversal
CVE-2026-41612 2026-05-15 23:25 2026-05-13 Show GitHub Exploit DB Packet Storm
1318 8.8 HIGH
Network
microsoft visual_studio_code Session fixation in Visual Studio Code allows an unauthorized attacker to elevate privileges over a network. CWE-78
CWE-384
OS Command 
 Session Fixation
CVE-2026-41613 2026-05-15 23:23 2026-05-13 Show GitHub Exploit DB Packet Storm
1319 7.5 HIGH
Network
webtechnologies changedetection changedetection.io is a free open source web page change detection tool. Prior to 0.55.1, the vulnerability is caused by trusting attacker-controlled snapshot paths restored from backup files. The vu… CWE-73
 External Control of File Name or Path
CVE-2026-43891 2026-05-15 23:20 2026-05-13 Show GitHub Exploit DB Packet Storm
1320 6.7 MEDIUM
Local
fortinet fortiap
fortiap-w2
An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiAP 7.6.0 through 7.6.2, FortiAP 7.4.0 through 7.4.5, FortiAP 7.2 all versi… CWE-78
OS Command 
CVE-2025-53870 2026-05-15 23:15 2026-05-13 Show GitHub Exploit DB Packet Storm