Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191011 7.5 重要
Network
マイクロソフト - Microsoft Edge におけるリモートでコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-8518 2017-08-17 11:55 2017-08-4 Show GitHub Exploit DB Packet Storm
191012 9.8 緊急
Network
Marel - 複数の Marel Food Processing System 製品のファームウェアにおけるハードコードされた認証情報の使用に関する脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2016-9358 2017-08-17 11:29 2016-11-16 Show GitHub Exploit DB Packet Storm
191013 6.1 警告
Network
Plotly - Plotly, Inc. plotly.js におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-1000006 2017-08-16 18:40 2017-07-17 Show GitHub Exploit DB Packet Storm
191014 7.5 重要
Network
マイクロソフト - Microsoft SQL Server の分析サービスにおける情報を公開される脆弱性 CWE-200
情報漏えい
CVE-2017-8516 2017-08-16 18:39 2017-08-8 Show GitHub Exploit DB Packet Storm
191015 4.3 警告
Network
マイクロソフト - Microsoft Edge における情報を公開される脆弱性 CWE-200
情報漏えい
CVE-2017-8662 2017-08-16 18:12 2017-08-8 Show GitHub Exploit DB Packet Storm
191016 5.9 警告
Network
マイクロソフト - Microsoft Windows 10 のリモートデスクトッププロトコルの実装における対象のシステムに接続される脆弱性 CWE-19
データ処理
CVE-2017-8673 2017-08-16 18:10 2017-08-8 Show GitHub Exploit DB Packet Storm
191017 7.5 重要
Network
マイクロソフト - Microsoft Internet Explorer 11 および Microsoft Edge における現在のユーザのコンテキストで任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-8669 2017-08-16 18:03 2017-08-8 Show GitHub Exploit DB Packet Storm
191018 5.5 警告
Local
マイクロソフト - 複数の Microsoft Windows 製品のボリュームマネージャの拡張ドライバにおける巧妙に細工されたアプリケーションを実行される脆弱性 CWE-200
情報漏えい
CVE-2017-8668 2017-08-16 17:58 2017-08-8 Show GitHub Exploit DB Packet Storm
191019 7.5 重要
Network
マイクロソフト - Microsoft Internet Explorer 9 から 11 および Microsoft Edge における現在のユーザのコンテキストで任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-8641 2017-08-16 17:40 2017-08-8 Show GitHub Exploit DB Packet Storm
191020 7.5 重要
Network
マイクロソフト - Microsoft Edge における現在のユーザのコンテキストで任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-8640 2017-08-16 17:40 2017-08-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
421 - - - PDF Export Module used in DHTMLX's products Gantt and Scheduler is vulnerable to Remote Code Execution due to lack of "data" parameter sanitization. An unauthenticated attacker can inject the malicio… New CWE-78
OS Command 
CVE-2026-41553 2026-05-15 23:12 2026-05-15 Show GitHub Exploit DB Packet Storm
422 7.5 HIGH
Network
adobe c2pa
c2pa-web
CAI Content Credentials versions 0.78.2, 0.7.0 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could explo… New CWE-400
 Uncontrolled Resource Consumption
CVE-2026-34665 2026-05-15 23:12 2026-05-13 Show GitHub Exploit DB Packet Storm
423 3.1 LOW
Network
- - Due to improper input handling under certain conditions, SAP NetWeaver Application Server ABAP allows an attacker to inject custom Cascading Style Sheets (CSS) data into a web page served by the appl… New CWE-276
Incorrect Default Permissions 
CVE-2026-27680 2026-05-15 23:11 2026-05-15 Show GitHub Exploit DB Packet Storm
424 - - - Timing limitations of the HRNG in RS9116 when power save mode is enabled results in predictable values New CWE-332
 Insufficient Entropy in PRNG
CVE-2026-3290 2026-05-15 23:11 2026-05-15 Show GitHub Exploit DB Packet Storm
425 5.9 MEDIUM
Network
- - Stack exhaustion vulnerability in the MongoDB PHP driver can cause application crashes when processing deeply nested BSON documents in unusual circumstances when the source of these BSON documents is… New CWE-674
 Uncontrolled Recursion
CVE-2026-6811 2026-05-15 23:11 2026-05-15 Show GitHub Exploit DB Packet Storm
426 - - - Rapid7 Metasploit Pro is vulnerable to a local privilege escalation attack that allows users to gain SYSTEM level control of a Windows host. Upon startup the metasploitPostgreSQL service the subseque… New CWE-284
CWE-427
CWE-829
Improper Access Control
 Uncontrolled Search Path Element
 Inclusion of Functionality from Untrusted Control Sphere
CVE-2026-7373 2026-05-15 23:11 2026-05-15 Show GitHub Exploit DB Packet Storm
427 7.8 HIGH
Local
- - VMware Fusion contains a TOCTOU (Time-of-check Time-of-use) vulnerability that occurs during an operation performed by a SETUID binary. A malicious actor with local non-administrative user privileges… New CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-41702 2026-05-15 23:11 2026-05-15 Show GitHub Exploit DB Packet Storm
428 - - - Improper input validation in Delphix Continuous Data connectors allows an authenticated user to execute arbitrary operating system commands on the staging or target host. New CWE-78
OS Command 
CVE-2026-8654 2026-05-15 23:11 2026-05-15 Show GitHub Exploit DB Packet Storm
429 8.8 HIGH
Network
- - Crabbox prior to v0.12.0 contains an authentication bypass vulnerability that allows non-admin shared-token callers to impersonate other owners or organizations by spoofing identity headers. Attacker… New CWE-287
Improper Authentication
CVE-2026-8621 2026-05-15 23:11 2026-05-15 Show GitHub Exploit DB Packet Storm
430 8.1 HIGH
Network
- - Crabbox prior to v0.12.0 contains a privilege escalation vulnerability that allows users with shared visibility-only access to obtain Code, WebVNC, and Egress agent tickets by sending POST requests t… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-8629 2026-05-15 23:11 2026-05-15 Show GitHub Exploit DB Packet Storm