Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191201 8.8 重要
Network
IBM - IBM Emptoris Strategic Supply Management Platform におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-1097 2017-09-27 16:07 2017-08-7 Show GitHub Exploit DB Packet Storm
191202 8.8 重要
Network
Lexmark - Lexmark Perceptive Document Filters におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-2822 2017-09-27 16:07 2017-08-28 Show GitHub Exploit DB Packet Storm
191203 8.8 重要
Network
Lexmark - Lexmark Perceptive Document Filters における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-2821 2017-09-27 16:07 2017-08-28 Show GitHub Exploit DB Packet Storm
191204 5.9 警告
Network
レッドハット - Red Hat Enterprise Virtualization Manager におけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2015-5293 2017-09-27 15:14 2015-09-30 Show GitHub Exploit DB Packet Storm
191205 5.3 警告
Network
Debian
Fedora Project
NTP Project
- ntp における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2015-5146 2017-09-27 15:14 2015-06-29 Show GitHub Exploit DB Packet Storm
191206 5.9 警告
Network
openSUSE project
Python Software Foundation
- Python および simplejson におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2014-4616 2017-09-27 15:13 2014-05-19 Show GitHub Exploit DB Packet Storm
191207 5.9 警告
Network
SimpleSAMLphp - SimpleSAMLphp におけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-12867 2017-09-27 15:05 2017-08-8 Show GitHub Exploit DB Packet Storm
191208 9.8 緊急
Network
Debian
ConnMan project
- ConnMan におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-12865 2017-09-27 15:05 2017-08-29 Show GitHub Exploit DB Packet Storm
191209 5.5 警告
Local
mpg123 project - mpg123 における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2017-12797 2017-09-27 15:05 2017-08-8 Show GitHub Exploit DB Packet Storm
191210 5.5 警告
Local
Axiomatic Systems LLC - Bento4 における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2017-12476 2017-09-27 14:38 2017-07-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2271 3.3 LOW
Local
pypdf_project pypdf pypdf is a free and open-source pure-python PDF library. Prior to 6.12.0, an attacker who uses this vulnerability can craft a PDF which leads to long runtimes. This requires cross-reference streams w… CWE-834
 Excessive Iteration
CVE-2026-48156 2026-05-30 04:38 2026-05-29 Show GitHub Exploit DB Packet Storm
2272 5.5 MEDIUM
Local
pypdf_project pypdf pypdf is a free and open-source pure-python PDF library. Prior to 6.12.0, an attacker who uses this vulnerability can craft a PDF which leads to large memory usage. This requires extracting text in l… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-48155 2026-05-30 04:38 2026-05-29 Show GitHub Exploit DB Packet Storm
2273 9.8 CRITICAL
Network
ibm engineering_lifecycle_management IBM Engineering Lifecycle Management 7.0.3, 7.1.0, and 7.2.0 could allow an unauthenticated remote attacker to update server property files that would allow them to gain unauthorized access to the ap… CWE-863
 Incorrect Authorization
CVE-2026-3660 2026-05-30 04:31 2026-05-27 Show GitHub Exploit DB Packet Storm
2274 9.6 CRITICAL
Network
amirraminfar dozzle Dozzle is a realtime log viewer for docker containers. Prior to 10.5.2, he WebSocket upgrader for the /exec and /attach endpoints uses CheckOrigin: func(r *http.Request) bool { return true }, accepti… CWE-346
 Origin Validation Error
CVE-2026-44985 2026-05-30 04:30 2026-05-27 Show GitHub Exploit DB Packet Storm
2275 7.1 HIGH
Adjacent
free5gc free5gc free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, the AMF in Free5GC does not verify the UE Security Capabilities received in NGAP PathSwitchRequest messages against it… CWE-358
 Improperly Implemented Security Check for Standard
CVE-2026-42081 2026-05-30 04:24 2026-05-28 Show GitHub Exploit DB Packet Storm
2276 8.6 HIGH
Network
amirraminfar dozzle Dozzle is a realtime log viewer for docker containers. Prior to 10.5.2, in a default dozzle deploy (the documented quickstart, no DOZZLE_AUTH_PROVIDER set), POST /api/notifications/test-webhook is re… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-45298 2026-05-30 04:23 2026-05-27 Show GitHub Exploit DB Packet Storm
2277 7.5 HIGH
Network
tanium server Tanium addressed a denial of service vulnerability in Tanium Server. CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2026-9156 2026-05-30 04:16 2026-05-27 Show GitHub Exploit DB Packet Storm
2278 7.8 HIGH
Local
synology beedrive Uncontrolled search path element vulnerability in OpenSSL DLL component in Synology BeeDrive for desktop before 1.3.2-13814 allows local users to execute arbitrary code via unspecified vectors. CWE-427
 Uncontrolled Search Path Element
CVE-2023-52945 2026-05-30 04:13 2026-05-27 Show GitHub Exploit DB Packet Storm
2279 8.8 HIGH
Local
docker docker_desktop The Docker CLI --use-api-socket flag bypasses Enhanced Container Isolation (ECI) restrictions in Docker Desktop. When ECI is enabled, Docker socket mounts from containers are denied unless explicitly… CWE-863
 Incorrect Authorization
CVE-2026-6406 2026-05-30 04:02 2026-05-23 Show GitHub Exploit DB Packet Storm
2280 6.1 MEDIUM
Network
heartcombo devise Devise is an authentication solution for Rails based on Warden. In versions 5.0.3 and below, when the Timeoutable module is enabled in Devise, the FailureApp#redirect_url method returns request.refer… CWE-601
Open Redirect
CVE-2026-40295 2026-05-30 03:55 2026-05-23 Show GitHub Exploit DB Packet Storm