Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 12:06 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191351 9.8 緊急
Network
ヒューマックス - Humax Digital HG100R における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-7315 2017-07-26 16:44 2017-06-29 Show GitHub Exploit DB Packet Storm
191352 7.8 重要
Local
XnSoft - Windows 用 XnView Classic におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2017-10774 2017-07-26 16:41 2017-07-5 Show GitHub Exploit DB Packet Storm
191353 7.3 重要
Local
Nullsoft - Winamp における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-10725 2017-07-26 16:39 2017-07-5 Show GitHub Exploit DB Packet Storm
191354 6.1 警告
Network
IBM - IBM Security Guardium におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-1256 2017-07-26 10:21 2017-06-29 Show GitHub Exploit DB Packet Storm
191355 6.1 警告
Network
IBM - IBM WebSphere Portal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-1217 2017-07-26 10:21 2017-06-27 Show GitHub Exploit DB Packet Storm
191356 9.1 緊急
Network
Schneider Electric - 複数の Schneider Electric Modicon PLC Modicon ファームウェアにおけるエントロピー不足に関する脆弱性 CWE-331
エントロピー不足
CVE-2017-6030 2017-07-26 09:59 2017-03-30 Show GitHub Exploit DB Packet Storm
191357 9.8 緊急
Network
Schneider Electric - Schneider Electric Modicon PLC Modicon M241 および M251 ファームウェアにおける証明書・パスワードの管理に関する脆弱性 CWE-255
証明書・パスワード管理
CVE-2017-6028 2017-07-26 09:59 2017-03-30 Show GitHub Exploit DB Packet Storm
191358 9.1 緊急
Network
Schneider Electric - Schneider Electric Modicon PLC Modicon M241 および M251 ファームウェアにおける不十分なランダム値の使用に関する脆弱性 CWE-330
不十分なランダム値の使用
CVE-2017-6026 2017-07-26 09:59 2017-03-30 Show GitHub Exploit DB Packet Storm
191359 7.5 重要
Network
Arcadyan Technology Corporation - Arcadyan SLT-00 Star* デバイスの Web インターフェースにおけるサービス運用妨害 (DoS) の脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-10042 2017-07-25 18:21 2016-12-15 Show GitHub Exploit DB Packet Storm
191360 9.8 緊急
Network
Marel - 複数の Marel Food Processing System 製品のファームウェアにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2017-6041 2017-07-25 17:55 2017-04-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
401 9.6 CRITICAL
Network
- - External control of a file name in Ivanti Xtraction before version 2026.2 allows a remote authenticated attacker to read sensitive files and write arbitrary HTML files to a web directory, leading to … New CWE-73
 External Control of File Name or Path
CVE-2026-8043 2026-05-13 01:38 2026-05-13 Show GitHub Exploit DB Packet Storm
402 7.2 HIGH
Network
- - OS command injection in Ivanti Virtual Traffic Manager before version 22.9r4 allows a remote authenticated attacker with admin privileges to achieve remote code execution. New CWE-78
OS Command 
CVE-2026-8051 2026-05-13 01:38 2026-05-13 Show GitHub Exploit DB Packet Storm
403 6.5 MEDIUM
Network
- - An exposed dangerous method on the Core Server of Ivanti Endpoint Manager before version 2024 SU6 allows a remote authenticated attacker to leak access credentials. New CWE-749
 Exposed Dangerous Method or Function
CVE-2026-8109 2026-05-13 01:38 2026-05-13 Show GitHub Exploit DB Packet Storm
404 7.8 HIGH
Local
- - Incorrect permissions assignment in the agent of Ivanti Endpoint Manager before version 2024 SU6 allows a local authenticated attacker to escalate their privileges. New CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2026-8110 2026-05-13 01:38 2026-05-13 Show GitHub Exploit DB Packet Storm
405 8.8 HIGH
Network
- - SQL injection in the web console of Ivanti Endpoint Manager before version 2024 SU6 allows a remote authenticated attacker to achieve remote code execution. New CWE-89
SQL Injection
CVE-2026-8111 2026-05-13 01:38 2026-05-13 Show GitHub Exploit DB Packet Storm
406 - - - PyTorch-Lightning versions 2.6.0 and earlier contain an insecure deserialization vulnerability (CWE-502) in the checkpoint loading mechanism. The LightningModule.load_from_checkpoint() method, which … New - CVE-2026-31221 2026-05-13 01:38 2026-05-13 Show GitHub Exploit DB Packet Storm
407 - - - The snorkel library thru v0.10.0 contains an insecure deserialization vulnerability (CWE-502) in the Trainer.load() method of the Trainer class. The method loads model checkpoint files using torch.lo… New - CVE-2026-31222 2026-05-13 01:38 2026-05-13 Show GitHub Exploit DB Packet Storm
408 - - - The snorkel library thru v0.10.0 contains a critical insecure deserialization vulnerability (CWE-502) in the BaseLabeler.load() method of the BaseLabeler class. The method loads serialized labeler mo… New - CVE-2026-31223 2026-05-13 01:38 2026-05-13 Show GitHub Exploit DB Packet Storm
409 - - - The snorkel library thru v0.10.0 contains an insecure deserialization vulnerability (CWE-502) in the MultitaskClassifier.load() method of the MultitaskClassifier class. The method loads model weight … New - CVE-2026-31224 2026-05-13 01:38 2026-05-13 Show GitHub Exploit DB Packet Storm
410 8.8 HIGH
Network
pi-hole ftldns Pi-hole FTL is the core engine of the Pi-hole network-level advertisement and tracker blocker. In versions before 6.6.1, the `dns.interface` configuration field in Pi-hole FTL accepted newline charac… Update CWE-93
CRLF Injection
CVE-2026-39849 2026-05-13 01:27 2026-05-6 Show GitHub Exploit DB Packet Storm