Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190991 6.1 警告
Network
FineCMS project - FineCms の dayrui におけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2017-11586 2017-08-17 17:47 2017-07-20 Show GitHub Exploit DB Packet Storm
190992 9.8 緊急
Network
FineCMS project - FineCms の dayrui におけるリモートで PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2017-11585 2017-08-17 17:47 2017-07-20 Show GitHub Exploit DB Packet Storm
190993 6.1 警告
Network
FineCMS project - FineCms の dayrui の admin/Login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-11581 2017-08-17 17:47 2017-07-20 Show GitHub Exploit DB Packet Storm
190994 6.1 警告
Network
atmail pty ltd - atmail におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-11617 2017-08-17 16:58 2017-05-25 Show GitHub Exploit DB Packet Storm
190995 5.9 警告
Network
ジュニパーネットワークス - Juniper Networks MX プラットフォーム上で稼動する Junos OS におけるデータ処理に関する脆弱性 CWE-19
データ処理
CVE-2017-2346 2017-08-17 16:43 2017-07-12 Show GitHub Exploit DB Packet Storm
190996 9.8 緊急
Network
ジュニパーネットワークス - Juniper SRX シリーズのデバイス上で稼動する Junos OS におけるハードコードされた認証情報の使用に関する脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2017-2343 2017-08-17 16:43 2017-07-12 Show GitHub Exploit DB Packet Storm
190997 9.8 緊急
Network
XOOPS - XOOPS の Core ディストリビューションの install/page_dbsettings.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-11174 2017-08-17 16:39 2017-07-11 Show GitHub Exploit DB Packet Storm
190998 9.8 緊急
Network
Newport Corporation - Newport XPS-Cx および XPS-Qx における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2017-7919 2017-08-17 16:25 2017-06-27 Show GitHub Exploit DB Packet Storm
190999 7.5 重要
Network
Puppet - Puppet Enterprise における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-2294 2017-08-17 16:25 2017-05-11 Show GitHub Exploit DB Packet Storm
191000 7.5 重要
Network
IPsec-Tools - IPsec-Tools におけるアルゴリズムの複雑さに関する脆弱性 CWE-407
アルゴリズムの複雑性
CVE-2016-10396 2017-08-17 16:25 2016-12-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
471 6.2 MEDIUM
Local
adobe c2pa
c2pa-web
CAI Content Credentials versions 0.78.2, 0.7.0 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in an application denial-of-service. An attacker could exp… CWE-190
 Integer Overflow or Wraparound
CVE-2026-34671 2026-05-15 23:13 2026-05-13 Show GitHub Exploit DB Packet Storm
472 6.2 MEDIUM
Local
adobe c2pa
c2pa-web
CAI Content Credentials versions 0.78.2, 0.7.0 and earlier are affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit … CWE-20
 Improper Input Validation 
CVE-2026-34670 2026-05-15 23:13 2026-05-13 Show GitHub Exploit DB Packet Storm
473 6.2 MEDIUM
Local
adobe c2pa
c2pa-web
CAI Content Credentials versions 0.78.2, 0.7.0 and earlier are affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit … CWE-20
 Improper Input Validation 
CVE-2026-34669 2026-05-15 23:13 2026-05-13 Show GitHub Exploit DB Packet Storm
474 6.2 MEDIUM
Local
adobe c2pa
c2pa-web
CAI Content Credentials versions 0.78.2, 0.7.0 and earlier are affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit … CWE-20
 Improper Input Validation 
CVE-2026-34668 2026-05-15 23:13 2026-05-13 Show GitHub Exploit DB Packet Storm
475 6.2 MEDIUM
Local
adobe c2pa
c2pa-web
CAI Content Credentials versions 0.78.2, 0.7.0 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker c… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2026-34667 2026-05-15 23:13 2026-05-13 Show GitHub Exploit DB Packet Storm
476 6.2 MEDIUM
Local
adobe c2pa
c2pa-web
CAI Content Credentials versions 0.78.2, 0.7.0 and earlier are affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit … CWE-20
 Improper Input Validation 
CVE-2026-34666 2026-05-15 23:13 2026-05-13 Show GitHub Exploit DB Packet Storm
477 - - - PDF Export Module used in DHTMLX's products Gantt and Scheduler is vulnerable to Path Traversal due to lack of HTML sanitization. An unauthenticated user could craft the html payload which could incl… CWE-22
Path Traversal
CVE-2026-41552 2026-05-15 23:12 2026-05-15 Show GitHub Exploit DB Packet Storm
478 - - - PDF Export Module used in DHTMLX's products Gantt and Scheduler is vulnerable to Remote Code Execution due to lack of "data" parameter sanitization. An unauthenticated attacker can inject the malicio… CWE-78
OS Command 
CVE-2026-41553 2026-05-15 23:12 2026-05-15 Show GitHub Exploit DB Packet Storm
479 7.5 HIGH
Network
adobe c2pa
c2pa-web
CAI Content Credentials versions 0.78.2, 0.7.0 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could explo… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-34665 2026-05-15 23:12 2026-05-13 Show GitHub Exploit DB Packet Storm
480 3.1 LOW
Network
- - Due to improper input handling under certain conditions, SAP NetWeaver Application Server ABAP allows an attacker to inject custom Cascading Style Sheets (CSS) data into a web page served by the appl… CWE-276
Incorrect Default Permissions 
CVE-2026-27680 2026-05-15 23:11 2026-05-15 Show GitHub Exploit DB Packet Storm