Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226651 9.3 危険 マイクロソフト - Microsoft Internet Explorer 6 から 9 における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-0018 2013-02-14 16:53 2013-02-12 Show GitHub Exploit DB Packet Storm
226652 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルにおける権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1280 2013-02-14 16:53 2013-02-12 Show GitHub Exploit DB Packet Storm
226653 4.3 警告 マイクロソフト - Microsoft Internet Explorer 6 から 9 におけるコンテンツを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-0015 2013-02-14 16:53 2013-02-12 Show GitHub Exploit DB Packet Storm
226654 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルにおける権限昇格の脆弱性 CWE-362
競合状態
CVE-2013-1279 2013-02-14 16:53 2013-02-12 Show GitHub Exploit DB Packet Storm
226655 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルにおける権限昇格の脆弱性 CWE-362
競合状態
CVE-2013-1278 2013-02-14 16:53 2013-02-12 Show GitHub Exploit DB Packet Storm
226656 2.6 注意 グリー株式会社 - Android 版 GREE (グリー) におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-0704 2013-02-14 12:01 2013-02-14 Show GitHub Exploit DB Packet Storm
226657 4.3 警告 imgboard.com CGIダウンロードセンター - imgboard におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0703 2013-02-14 12:00 2013-02-14 Show GitHub Exploit DB Packet Storm
226658 4.3 警告 General Electric Company - GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY および Proficy Process Systems with CIMPLICITY におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-0653 2013-02-13 16:45 2013-01-22 Show GitHub Exploit DB Packet Storm
226659 9.3 危険 General Electric Company - GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY および Proficy Process Systems with CIMPLICITY における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-0654 2013-02-13 16:44 2013-01-22 Show GitHub Exploit DB Packet Storm
226660 6.8 警告 アクセラテクノロジ - Accela BizSearch におけるユーザになりすまされる脆弱性 CWE-noinfo
情報不足
- 2013-02-13 15:44 2013-02-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3241 8.1 HIGH
Network
weblate weblate Weblate is a web based localization tool. Prior to version 5.17.1, an authenticated user with project.add permission (default on hosted Weblate SaaS and for any user holding an active billing/trial p… CWE-20
CWE-918
 Improper Input Validation 
Server-Side Request Forgery (SSRF) 
CVE-2026-41654 2026-05-12 00:30 2026-05-8 Show GitHub Exploit DB Packet Storm
3242 6.5 MEDIUM
Network
mongodb mongodb An authenticated user can crash mongod when running $rankFusion or $scoreFusion with an empty pipeline on a view. When resolving a view, the server inspects the aggregation pipeline to determine whe… CWE-476
 NULL Pointer Dereference
CVE-2026-8063 2026-05-12 00:26 2026-05-7 Show GitHub Exploit DB Packet Storm
3243 6.5 MEDIUM
Network
apache cloudstack The CloudStack Backup plugin has an improper authorization logic in versions 4.21.0.0 and 4.22.0.0. Anyone with authenticated user-account access in CloudStack 4.21.0.0+ environments, where this plug… CWE-863
 Incorrect Authorization
CVE-2025-66170 2026-05-12 00:24 2026-05-8 Show GitHub Exploit DB Packet Storm
3244 7.5 HIGH
Network
osrg gobgp GoBGP is an open source Border Gateway Protocol (BGP) implementation in the Go Programming Language. In version 4.4.0, an unauthenticated remote BGP peer can trigger a fatal panic in GoBGP by sending… CWE-476
 NULL Pointer Dereference
CVE-2026-42285 2026-05-12 00:22 2026-05-7 Show GitHub Exploit DB Packet Storm
3245 5.4 MEDIUM
Network
misp misp Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in misp allows Stored XSS. This issue affects MISP before 2.5.37. A stored cross-si… CWE-79
Cross-site Scripting
CVE-2026-8080 2026-05-12 00:21 2026-05-7 Show GitHub Exploit DB Packet Storm
3246 8.0 HIGH
Network
phoenixcontact fl_mguard_2102_firmware
fl_mguard_2105_firmware
fl_mguard_4102_pci_firmware
fl_mguard_4102_pcie_firmware
fl_mguard_4302_firmware
fl_mguard_4305_firmware
fl_mguard_centerport_firmwar…
A low privileged remote attacker can gain the root password due to improper removal of sensitive information before storage or transfer. CWE-212
 Improper Removal of Sensitive Information Before Storage or Transfer
CVE-2024-43384 2026-05-12 00:20 2026-05-7 Show GitHub Exploit DB Packet Storm
3247 9.8 CRITICAL
Network
mozilla firefox
thunderbird
Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150, Thunderbird 150, Firefox ESR 140.10.1, Thunderbird 140.10.1, and Firefox ESR 115.35.… NVD-CWE-noinfo
CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2026-8091 2026-05-12 00:20 2026-05-7 Show GitHub Exploit DB Packet Storm
3248 8.1 HIGH
Network
mozilla firefox
thunderbird
Memory safety bugs present in Thunderbird ESR 140.10.1 and Thunderbird 150.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have… CWE-125
CWE-416
CWE-787
Out-of-bounds Read
 Use After Free
 Out-of-bounds Write
CVE-2026-8092 2026-05-12 00:16 2026-05-7 Show GitHub Exploit DB Packet Storm
3249 7.5 HIGH
Network
google android In IMS, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. NVD-CWE-noinfo
CVE-2025-71251 2026-05-12 00:13 2026-05-6 Show GitHub Exploit DB Packet Storm
3250 7.5 HIGH
Network
google android In Modem IMS, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed. NVD-CWE-noinfo
CVE-2025-71252 2026-05-12 00:13 2026-05-6 Show GitHub Exploit DB Packet Storm