Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1821 7.5 重要
Network
TYPO3 Association TYPO3 TYPO3 AssociationのTYPO3における重要な情報の平文保存に関する脆弱性 CWE-312
重要な情報の平文保存
CVE-2026-6553 2026-05-7 10:51 2026-04-21 Show GitHub Exploit DB Packet Storm
1822 7.5 重要
Network
xmlsoft.org
レッドハット
Red Hat Hardened Images
Red Hat OpenShift Container Platform
libxml2
Red Hat Enterprise Linux
JBoss Core Services
レッドハット等の複数ベンダの製品における型の取り違えに関する脆弱性 CWE-843
型の取り違え
CVE-2026-6732 2026-05-7 10:50 2026-04-23 Show GitHub Exploit DB Packet Storm
1823 7.5 重要
Network
Eclipse Foundation Eclipse OpenJ9 Eclipse FoundationのEclipse OpenJ9における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-6918 2026-05-7 10:50 2026-05-5 Show GitHub Exploit DB Packet Storm
1824 - - IDrive Inc. IDrive Cloud Backup Client for Windows IDrive Cloud Backup Client for Windowsにおける権限昇格の脆弱性 - CVE-2026-1995 2026-05-1 15:13 2026-04-30 Show GitHub Exploit DB Packet Storm
1825 - - (複数のベンダ) (複数の製品) CISA ICS Advisory / ICS Medical Advisory(2026年04月28日) - - 2026-05-1 14:31 2026-04-30 Show GitHub Exploit DB Packet Storm
1826 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. F456 Firmware Shenzhen Tenda Technology Co.,Ltd.のF456 Firmwareにおける複数の脆弱性 CWE-119
CWE-120
CVE-2026-7100 2026-05-1 10:49 2026-04-27 Show GitHub Exploit DB Packet Storm
1827 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. F456 Firmware Shenzhen Tenda Technology Co.,Ltd.のF456 Firmwareにおける複数の脆弱性 CWE-74
CWE-77
CVE-2026-7102 2026-05-1 10:49 2026-04-27 Show GitHub Exploit DB Packet Storm
1828 7.2 重要
Local
click project click Pallets projectのClickにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-7246 2026-05-1 10:49 2026-04-30 Show GitHub Exploit DB Packet Storm
1829 7.8 重要
Local
LizardSystems Terminal Services Manager LizardSystemsのTerminal Services Managerにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2018-25259 2026-05-1 10:49 2026-04-22 Show GitHub Exploit DB Packet Storm
1830 5.5 警告
Local
EZB Systems UltraISO EZB SystemsのUltraISOにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2018-25267 2026-05-1 10:49 2026-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1641 7.5 HIGH
Network
- - A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application is susceptible to resource exhaustion when subjected to high volume of TCP SYN packets This cou… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-22925 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
1642 9.1 CRITICAL
Network
- - Affected devices do not properly validate and sanitize PLC/station name rendered on the "communication" parameters page of the web interface. This could allow an authenticated attacker who is author… CWE-79
Cross-site Scripting
CVE-2026-25786 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
1643 7.5 HIGH
Network
- - A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1… CWE-78
OS Command 
CVE-2025-40947 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
1644 6.8 MEDIUM
Network
- - A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1… CWE-88
Argument Injection
CVE-2025-40948 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
1645 9.1 CRITICAL
Network
- - A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1… CWE-78
OS Command 
CVE-2025-40949 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
1646 9.1 CRITICAL
Network
- - Affected devices do not properly validate and sanitize Technology Object (TO) name rendered on the "Motion Control Diagnostics" page of the web interface. This could allow an authenticated attacker w… CWE-79
Cross-site Scripting
CVE-2026-25787 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
1647 7.1 HIGH
Network
- - Affected devices do not properly validate and sanitize filenames on the Firmware Update page. This could allow a remote attacker to social engineer the user into selecting the modified firmware file… CWE-79
Cross-site Scripting
CVE-2026-25789 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
1648 7.7 HIGH
Local
- - Affected devices do not properly restrict access to the web browser via the Control Panel when no corresponding security mechanisms are in place. This could allow an unauthenticated attacker to gain… CWE-1188
 Insecure Default Initialization of Resource
CVE-2026-27662 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
1649 7.3 HIGH
Network
- - A vulnerability has been identified in Teamcenter V2312 (All versions < V2312.0014), Teamcenter V2406 (All versions < V2406.0012), Teamcenter V2412 (All versions < V2412.0009), Teamcenter V2506 (All … CWE-79
Cross-site Scripting
CVE-2026-33862 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
1650 7.5 HIGH
Network
- - A vulnerability has been identified in Teamcenter V2312 (All versions < V2312.0014), Teamcenter V2406 (All versions < V2406.0012), Teamcenter V2412 (All versions < V2412.0009), Teamcenter V2506 (All … CWE-798
 Use of Hard-coded Credentials
CVE-2026-33893 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm