Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191351 9.8 緊急
Network
Foscam - Foscam C1 Indoor HD カメラの Web 管理インターフェースにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2017-2805 2017-07-20 16:47 2017-06-19 Show GitHub Exploit DB Packet Storm
191352 8.1 重要
Network
マイクロソフト - Azure AD Connect におけるパスワードをリセットされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-8613 2017-07-20 16:41 2017-06-28 Show GitHub Exploit DB Packet Storm
191353 8.8 重要
Network
Foscam - Foscam C1 Indoor HD カメラの Web 管理インターフェースにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2017-2841 2017-07-20 16:38 2017-06-19 Show GitHub Exploit DB Packet Storm
191354 7.5 重要
Network
tpm2-tools project - tpm2-tools におけるパスワードの漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-7524 2017-07-20 16:38 2017-06-22 Show GitHub Exploit DB Packet Storm
191355 5.9 警告
Network
OpenVPN Technologies - OpenVPN における二重解放に関する脆弱性 CWE-415
二重解放
CVE-2017-7521 2017-07-20 16:36 2017-06-22 Show GitHub Exploit DB Packet Storm
191356 7.4 重要
Network
OpenVPN Technologies - OpenVPN における証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2017-7520 2017-07-20 16:36 2017-06-22 Show GitHub Exploit DB Packet Storm
191357 9.8 緊急
Network
XML::LibXML project - Perl 用 XML-LibXML モジュールにおける任意のコードを実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-10672 2017-07-20 16:26 2017-06-27 Show GitHub Exploit DB Packet Storm
191358 6.5 警告
Network
TIBCO Software - JasperReports library コンポーネントにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-5529 2017-07-20 16:17 2017-06-28 Show GitHub Exploit DB Packet Storm
191359 8.8 重要
Network
TIBCO Software - JasperReports Server コンポーネントにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-5528 2017-07-20 16:17 2017-06-28 Show GitHub Exploit DB Packet Storm
191360 5.4 警告
Network
マカフィー - McAfee Data Loss Prevention Endpoint の ePO 拡張の IMG タグにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-3948 2017-07-20 15:21 2017-07-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
191 8.8 HIGH
Network
- - AzuraCast is a self-hosted, all-in-one web radio management suite. Prior to version 0.23.6, the currentDirectory request parameter in the Flow.js media upload endpoint (POST /api/station/{station_id}… New CWE-22
Path Traversal
CVE-2026-42605 2026-05-12 01:17 2026-05-10 Show GitHub Exploit DB Packet Storm
192 - - - ArchiveBox is an open source self-hosted web archiving system. In versions 0.8.6rc0 and prior, the /add/ endpoint (AddView in core/views.py) accepts a config JSON field that gets merged into the craw… New CWE-88
Argument Injection
CVE-2026-42601 2026-05-12 01:17 2026-05-10 Show GitHub Exploit DB Packet Storm
193 - - - Quarkus OpenAPI Generator is Quarkus' extensions for generation of Rest Clients and server stubs generation. Prior to versions 2.11.1-lts, 2.16.0-lts, and 2.17.0, the generated authentication filter … New CWE-200
Information Exposure
CVE-2026-42333 2026-05-12 01:17 2026-05-10 Show GitHub Exploit DB Packet Storm
194 - - - Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. From version 4.0.0 to before version 4.0.5, the workflow executor logs all artifact re… New CWE-522
 Insufficiently Protected Credentials
CVE-2026-42295 2026-05-12 01:17 2026-05-9 Show GitHub Exploit DB Packet Storm
195 - - - SolidCAM-GPPL-IDE is an unofficial, independently developed extension, Postprocessor IDE for SolidCAM. From version 1.0.0 to before version 1.0.2, Opening a .gpp file in the SolidCAM Postprocessor ID… New CWE-400
CWE-611
CWE-776
 Uncontrolled Resource Consumption
XXE
XML Entity Expansion
CVE-2026-42212 2026-05-12 01:17 2026-05-9 Show GitHub Exploit DB Packet Storm
196 7.5 HIGH
Network
- - Russh is a Rust SSH client & server library. Prior to version 0.60.1, a pre-authentication denial-of-service vulnerability exists in the server's keyboard-interactive authentication handler. A malici… New CWE-770
CWE-789
 Allocation of Resources Without Limits or Throttling
 Memory Allocation with Excessive Size Value
CVE-2026-42189 2026-05-12 01:17 2026-05-9 Show GitHub Exploit DB Packet Storm
197 7.5 HIGH
Network
- - LiquidJS is a Shopify / GitHub Pages compatible template engine in pure JavaScript. Prior to version 10.25.7, a circular block reference in {% layout %} / {% block %} causes an infinite recursive loo… New CWE-674
 Uncontrolled Recursion
CVE-2026-41311 2026-05-12 01:17 2026-05-9 Show GitHub Exploit DB Packet Storm
198 7.2 HIGH
Network
- - Some Hikvision switch products (discontinued since December 2023) are vulnerable to authenticated remote command execution due to insufficient input validation. Attackers with valid credentials can e… New CWE-78
OS Command 
CVE-2026-3828 2026-05-12 01:17 2026-05-9 Show GitHub Exploit DB Packet Storm
199 - - - Reflected Cross-Site Scripting (XSS) in the latest demo version of the Cradle eCommerce platform. User-controlled input is insecurely reflected in the HTML output in the endpoint /product/. Exploitat… New CWE-79
Cross-site Scripting
CVE-2026-3320 2026-05-12 01:17 2026-05-12 Show GitHub Exploit DB Packet Storm
200 - - - Reflected Cross-Site Scripting (XSS) in the latest demo version of the Cradle eCommerce platform. User-controlled input is insecurely reflected in the HTML output in the endpoint /collection/. Exploi… New CWE-79
Cross-site Scripting
CVE-2026-3319 2026-05-12 01:17 2026-05-12 Show GitHub Exploit DB Packet Storm