Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225361 4.3 警告 Moodle
Yahoo!
- Moodle などの製品で使用される Yahoo! YUI の Uploader コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4941 2013-07-30 16:21 2013-07-15 Show GitHub Exploit DB Packet Storm
225362 4.3 警告 Moodle
Yahoo!
- Moodle などの製品で使用される Yahoo! YUI の IO Utility コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4940 2013-07-30 16:20 2013-07-15 Show GitHub Exploit DB Packet Storm
225363 4.3 警告 Moodle
Yahoo!
- Moodle などの製品で使用される Yahoo! YUI の IO Utility コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4939 2013-07-30 16:19 2013-07-15 Show GitHub Exploit DB Packet Storm
225364 4.3 警告 Moodle - Moodle の LTI mod_form の実装における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4938 2013-07-30 16:18 2013-07-15 Show GitHub Exploit DB Packet Storm
225365 4 警告 Moodle - Moodle の mod/feedback/lib.php における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2246 2013-07-30 16:17 2013-07-15 Show GitHub Exploit DB Packet Storm
225366 4 警告 Moodle - Moodle の rss/file.php における重要な block 情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2013-2245 2013-07-30 16:16 2013-07-15 Show GitHub Exploit DB Packet Storm
225367 4.3 警告 Moodle - Moodle の lib/conditionlib.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2244 2013-07-30 16:15 2013-07-15 Show GitHub Exploit DB Packet Storm
225368 4 警告 Moodle - Moodle の mod/lesson/pagetypes/matching.php における重要な answer 情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-2243 2013-07-30 16:15 2013-07-15 Show GitHub Exploit DB Packet Storm
225369 4 警告 Moodle - Moodle の mod/chat/gui_sockets/index.php におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2242 2013-07-30 16:14 2013-07-15 Show GitHub Exploit DB Packet Storm
225370 4.3 警告 TrustGo Inc. - TrustGo Antivirus & Mobile Security にサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-3580 2013-07-30 14:38 2013-07-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2691 - - - In the Linux kernel, the following vulnerability has been resolved: x86/shstk: Prevent deadlock during shstk sigreturn During sigreturn the shadow stack signal frame is popped. The kernel does this… - CVE-2026-46063 2026-05-27 23:48 2026-05-27 Show GitHub Exploit DB Packet Storm
2692 - - - In the Linux kernel, the following vulnerability has been resolved: ceph: fix num_ops off-by-one when crypto allocation fails move_dirty_folio_in_page_array() may fail if the file is encrypted, the… - CVE-2026-46066 2026-05-27 23:48 2026-05-27 Show GitHub Exploit DB Packet Storm
2693 - - - In the Linux kernel, the following vulnerability has been resolved: mm/damon/core: validate damos_quota_goal->nid for node_memcg_{used,free}_bp Users can set damos_quota_goal->nid with arbitrary va… - CVE-2026-46067 2026-05-27 23:48 2026-05-27 Show GitHub Exploit DB Packet Storm
2694 - - - In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: fix use-after-free in mwifiex_adapter_cleanup() The mwifiex_adapter_cleanup() function uses timer_delete() (non-sy… - CVE-2026-46069 2026-05-27 23:48 2026-05-27 Show GitHub Exploit DB Packet Storm
2695 - - - In the Linux kernel, the following vulnerability has been resolved: hwmon: (powerz) Fix missing usb_kill_urb() on signal interrupt wait_for_completion_interruptible_timeout() returns -ERESTARTSYS w… - CVE-2026-46073 2026-05-27 23:48 2026-05-27 Show GitHub Exploit DB Packet Storm
2696 - - - In the Linux kernel, the following vulnerability has been resolved: RDMA/mana_ib: Disable RX steering on RSS QP destroy When an RSS QP is destroyed (e.g. DPDK exit), mana_ib_destroy_qp_rss() destro… - CVE-2026-46084 2026-05-27 23:48 2026-05-27 Show GitHub Exploit DB Packet Storm
2697 - - - In the Linux kernel, the following vulnerability has been resolved: net: bridge: use a stable FDB dst snapshot in RCU readers Local FDB entries can be rewritten in place by `fdb_delete_local()`, wh… - CVE-2026-46086 2026-05-27 23:48 2026-05-27 Show GitHub Exploit DB Packet Storm
2698 - - - In the Linux kernel, the following vulnerability has been resolved: ext4: fix bounds check in check_xattrs() to prevent out-of-bounds access The bounds check for the next xattr entry in check_xattr… - CVE-2026-46094 2026-05-27 23:48 2026-05-27 Show GitHub Exploit DB Packet Storm
2699 8.7 HIGH
Network
twenty twenty Twenty is an open source CRM. In 1.18.0 and earlier, the file serving endpoints in Twenty CRM at /files/* and /file/:fileFolder/:id serve uploaded files using fileStream.pipe(res) without setting any… CWE-79
Cross-site Scripting
CVE-2026-44729 2026-05-27 23:45 2026-05-27 Show GitHub Exploit DB Packet Storm
2700 9.9 CRITICAL
Network
twenty twenty Twenty is an open source CRM. From 1.7.7 through 1.16.7, a critical Remote Code Execution (RCE) vulnerability exists in Twenty CRM via a chained SQL Injection and PostgreSQL COPY TO PROGRAM attack. I… CWE-78
CWE-89
OS Command 
SQL Injection
CVE-2026-46624 2026-05-27 23:45 2026-05-27 Show GitHub Exploit DB Packet Storm