Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 2:07 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226471 5 警告 レッドハット - libvirt の qemu/qemu_agent.c 内の qemuAgentGetVCPUs 関数におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2013-4153 2013-10-2 16:30 2013-07-30 Show GitHub Exploit DB Packet Storm
226472 7.5 危険 Simone Tellini - Apache 用 mod_accounting モジュールの mod_accounting.c における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5697 2013-10-2 15:21 2013-09-20 Show GitHub Exploit DB Packet Storm
226473 4.3 警告 Emeric Vernat - JavaMelody の HtmlSessionInformationsReport.java におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4378 2013-10-2 15:16 2013-09-26 Show GitHub Exploit DB Packet Storm
226474 6.8 警告 Creative Design Solutions - WordPress 用 Simple Dropbox Upload プラグインの multi.php における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2013-5963 2013-10-2 14:52 2013-09-17 Show GitHub Exploit DB Packet Storm
226475 5.1 警告 RightHere LLC - WordPress 用 Complete Gallery Manager プラグインの frames/upload-images.php における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2013-5962 2013-10-2 14:43 2013-09-19 Show GitHub Exploit DB Packet Storm
226476 6.8 警告 Danny Morris - WordPress 用 Lazy SEO プラグインの lazyseo.php における任意の PHP コードを実行される脆弱性 CWE-Other
その他
CVE-2013-5961 2013-10-2 14:24 2013-09-22 Show GitHub Exploit DB Packet Storm
226477 4 警告 レッドハット - libvirt の qemu driver におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-2230 2013-10-2 14:13 2013-07-30 Show GitHub Exploit DB Packet Storm
226478 5 警告 レッドハット - libvirt の interface/interface_backend_netcf.c 内の virConnectListAllInterfaces メソッドにおけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2013-2218 2013-10-2 13:59 2013-07-1 Show GitHub Exploit DB Packet Storm
226479 4.3 警告 シスコシステムズ - Cisco Identity Services Engine の Mobile Device Management ポータルにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5504 2013-10-1 19:54 2013-09-28 Show GitHub Exploit DB Packet Storm
226480 5 警告 シスコシステムズ - Cisco Video Surveillance Operations Manager の管理 Web インターフェイスにおける配信動画を見られる脆弱性 CWE-287
不適切な認証
CVE-2013-3417 2013-10-1 19:53 2013-09-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
101 7.4 HIGH
Network
adobe coldfusion ColdFusion versions 2023.19, 2025.8 and earlier are affected by an Improper Restriction of XML External Entity Reference ('XXE') vulnerability that could lead to arbitrary file system read. An attack… Update CWE-611
XXE
CVE-2026-47960 2026-06-16 00:09 2026-06-10 Show GitHub Exploit DB Packet Storm
102 5.5 MEDIUM
Local
adobe c2pa
c2pa-web
CAI Content Credentials versions c2pa-web@0.7.1, c2pa-v0.80.1 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could re… Update CWE-22
Path Traversal
CVE-2026-34657 2026-06-16 00:08 2026-06-10 Show GitHub Exploit DB Packet Storm
103 7.5 HIGH
Network
adobe c2pa
c2pa-web
CAI Content Credentials versions c2pa-web@0.7.1, c2pa-v0.80.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability. An attacker could exploit this vulnerability to crash the ap… Update CWE-190
 Integer Overflow or Wraparound
CVE-2026-34711 2026-06-16 00:07 2026-06-10 Show GitHub Exploit DB Packet Storm
104 5.7 MEDIUM
Network
splunk splunk
splunk_cloud_platform
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, and Splunk Cloud Platform versions below 10.3.2512.13, 10.2.2510.15, 10.1.2507.23, and 9.3.2411.132, a low-privileged user that… Update CWE-20
 Improper Input Validation 
CVE-2026-20254 2026-06-16 00:05 2026-06-11 Show GitHub Exploit DB Packet Storm
105 5.7 MEDIUM
Network
splunk splunk
splunk_cloud_platform
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, and Splunk Cloud Platform versions below 10.3.2512.13, 10.2.2510.15, 10.1.2507.23, and 9.3.2411.132, a low-privileged user that… Update CWE-20
 Improper Input Validation 
CVE-2026-20255 2026-06-16 00:04 2026-06-11 Show GitHub Exploit DB Packet Storm
106 5.3 MEDIUM
Network
guzzlephp psr-7 guzzlehttp/psr7 is a PSR-7 HTTP message library implementation in PHP. Versions prior to 2.10.2 contain improper Host header validation when parsing raw HTTP request messages and when deriving a serv… Update CWE-20
CWE-918
 Improper Input Validation 
Server-Side Request Forgery (SSRF) 
CVE-2026-48998 2026-06-15 23:52 2026-06-11 Show GitHub Exploit DB Packet Storm
107 5.3 MEDIUM
Network
guzzlephp psr-7 guzzlehttp/psr7 is a PSR-7 HTTP message library implementation in PHP. Versions prior to 2.10.2 did not reject ASCII control characters, whitespace, or DEL in first-party URI host components. A vulne… Update CWE-20
CWE-93
CWE-113
 Improper Input Validation 
CRLF Injection
HTTP Response Splitting
CVE-2026-49214 2026-06-15 23:41 2026-06-11 Show GitHub Exploit DB Packet Storm
108 5.7 MEDIUM
Network
splunk splunk
splunk_cloud_platform
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, and Splunk Cloud Platform versions below 10.3.2512.13, 10.2.2510.15, 10.1.2507.23, and 9.3.2411.132, a low-privileged user that… Update CWE-20
 Improper Input Validation 
CVE-2026-20256 2026-06-15 23:33 2026-06-11 Show GitHub Exploit DB Packet Storm
109 5.5 MEDIUM
Local
apple macos A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to cause unexpected system ter… Update CWE-284
Improper Access Control
CVE-2025-24165 2026-06-15 23:26 2026-06-12 Show GitHub Exploit DB Packet Storm
110 5.5 MEDIUM
Local
apple macos This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.4. An app may be able to access protected user data. Update CWE-61
 UNIX Symbolic Link (Symlink) Following
CVE-2025-43278 2026-06-15 23:25 2026-06-12 Show GitHub Exploit DB Packet Storm