Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
871 9.8 緊急
Network
Provectus UI for Apache Kafka ProvectusのUI for Apache Kafkaにおける複数の脆弱性 CWE-74
CWE-94
CVE-2026-5562 2026-05-7 12:27 2026-04-5 Show GitHub Exploit DB Packet Storm
872 6.1 警告
Network
WSO2 WSO2 Identity Server WSO2のWSO2 Identity Serverにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-10503 2026-05-7 12:07 2026-04-29 Show GitHub Exploit DB Packet Storm
873 5.3 警告
Network
MCPHub MCPHub MCPHubにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2025-13822 2026-05-7 12:07 2026-04-14 Show GitHub Exploit DB Packet Storm
874 5.3 警告
Network
IBM IBM DB2 IBMのIBM DB2における入力で指定された数量の不適切な検証に関する脆弱性 CWE-1284
入力で指定された数量の不適切な検証
CVE-2025-14688 2026-05-7 12:07 2026-04-30 Show GitHub Exploit DB Packet Storm
875 6.5 警告
Network
IBM IBM DB2 IBMのIBM DB2における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-36122 2026-05-7 12:07 2026-04-30 Show GitHub Exploit DB Packet Storm
876 5.3 警告
Network
HCL Technologies Limited HCL AION HCL Technologies LimitedのHCL AIONにおけるエラーメッセージによる情報漏えいに関する脆弱性 CWE-209
エラーメッセージによる情報漏えい
CVE-2025-52641 2026-05-7 12:07 2026-04-15 Show GitHub Exploit DB Packet Storm
877 6.4 警告
Local
レッドハット Ansible Automation Platform レッドハットのAnsible Automation Platformにおける不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2025-57847 2026-05-7 12:07 2026-04-8 Show GitHub Exploit DB Packet Storm
878 6.7 警告
Local
レッドハット Red Hat Advanced Cluster Management for Kubernetes レッドハットのRed Hat Advanced Cluster Management for Kubernetesにおける不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2025-57851 2026-05-7 12:07 2026-04-8 Show GitHub Exploit DB Packet Storm
879 6.5 警告
Network
IBM IBM DB2 IBMのIBM DB2における入力で指定された数量の不適切な検証に関する脆弱性 CWE-1284
入力で指定された数量の不適切な検証
CVE-2026-1577 2026-05-7 12:07 2026-04-30 Show GitHub Exploit DB Packet Storm
880 5.5 警告
Local
サムスン android サムスンのAndroidにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-21023 2026-05-7 12:06 2026-04-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312571 6.1 MEDIUM
Network
phpgurukul job_portal Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted. Exploitation of this vulnerability could allow an attacker to retrieve the session details of an… CWE-79
Cross-site Scripting
CVE-2024-8471 2024-09-6 20:44 2024-09-5 Show GitHub Exploit DB Packet Storm
312572 7.5 HIGH
Network
phpgurukul job_portal SQL injection vulnerability, by which an attacker could send a specially designed query through CATEGORY parameter in /jobportal/admin/vacancy/controller.php, and retrieve all the information stored … CWE-89
SQL Injection
CVE-2024-8470 2024-09-6 20:44 2024-09-5 Show GitHub Exploit DB Packet Storm
312573 7.5 HIGH
Network
phpgurukul job_portal SQL injection vulnerability, by which an attacker could send a specially designed query through id parameter in /jobportal/admin/employee/index.php, and retrieve all the information stored in it. CWE-89
SQL Injection
CVE-2024-8469 2024-09-6 20:43 2024-09-5 Show GitHub Exploit DB Packet Storm
312574 7.5 HIGH
Network
phpgurukul job_portal SQL injection vulnerability, by which an attacker could send a specially designed query through search parameter in /jobportal/index.php, and retrieve all the information stored in it. CWE-89
SQL Injection
CVE-2024-8468 2024-09-6 20:43 2024-09-5 Show GitHub Exploit DB Packet Storm
312575 7.5 HIGH
Network
phpgurukul job_portal SQL injection vulnerability, by which an attacker could send a specially designed query through id parameter in /jobportal/admin/category/index.php, and retrieve all the information stored in it. CWE-89
SQL Injection
CVE-2024-8467 2024-09-6 20:42 2024-09-5 Show GitHub Exploit DB Packet Storm
312576 7.5 HIGH
Network
phpgurukul job_portal SQL injection vulnerability, by which an attacker could send a specially designed query through CATEGORY parameter in /jobportal/admin/category/controller.php, and retrieve all the information stored… CWE-89
SQL Injection
CVE-2024-8466 2024-09-6 20:24 2024-09-5 Show GitHub Exploit DB Packet Storm
312577 7.5 HIGH
Network
phpgurukul job_portal SQL injection vulnerability, by which an attacker could send a specially designed query through user_id parameter in /jobportal/admin/user/controller.php, and retrieve all the information stored in i… CWE-89
SQL Injection
CVE-2024-8465 2024-09-6 20:16 2024-09-5 Show GitHub Exploit DB Packet Storm
312578 7.5 HIGH
Network
phpgurukul job_portal SQL injection vulnerability, by which an attacker could send a specially designed query through JOBREGID parameter in /jobportal/admin/applicants/controller.php, and retrieve all the information stor… CWE-89
SQL Injection
CVE-2024-8464 2024-09-6 20:15 2024-09-5 Show GitHub Exploit DB Packet Storm
312579 - - - In the Linux kernel, the following vulnerability has been resolved: media: aspeed: Fix memory overwrite if timing is 1600x900 When capturing 1600x900, system could crash when system memory usage is… - CVE-2023-52916 2024-09-6 18:15 2024-09-6 Show GitHub Exploit DB Packet Storm
312580 - - - The WP ULike WordPress plugin before 4.7.2.1 does not properly sanitize user display names when rendering on a public page. - CVE-2024-6792 2024-09-6 15:15 2024-09-6 Show GitHub Exploit DB Packet Storm