Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191411 9.8 緊急
Network
Pivotal Software, Inc. - Pivotal Cloud Foundry Elastic Runtime における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-2773 2017-07-14 16:56 2017-03-27 Show GitHub Exploit DB Packet Storm
191412 7.5 重要
Network
TeamSpeak Systems GmbH - TeamSpeak Client におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2017-9982 2017-07-14 16:54 2017-06-26 Show GitHub Exploit DB Packet Storm
191413 7.2 重要
Network
DELL EMC (旧 EMC Corporation) - EMC Isilon OneFS における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-4988 2017-07-14 16:53 2017-06-20 Show GitHub Exploit DB Packet Storm
191414 8.8 重要
Network
Horde - Horde_Image におけるリモートでコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2017-9774 2017-07-14 16:50 2017-06-21 Show GitHub Exploit DB Packet Storm
191415 7 重要
Local
Fedora Project - fedora-arm-installer における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-7496 2017-07-14 16:45 2017-06-26 Show GitHub Exploit DB Packet Storm
191416 7.8 重要
Local
Irfan Skiljan - IrfanView の JPEG 2000 パーサ機能における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2017-2813 2017-07-14 16:42 2017-04-26 Show GitHub Exploit DB Packet Storm
191417 8.8 重要
Network
OpenDaylight Project - OpenDaylight defense4all におけるレポートデータを任意のファイルに書き込まれる脆弱性 CWE-20
不適切な入力確認
CVE-2014-8149 2017-07-14 16:38 2014-10-10 Show GitHub Exploit DB Packet Storm
191418 7.5 重要
Network
Fedora Project
ELOG
- elog におけるログブックに任意のユーザ名でデータを投稿される脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-6342 2017-07-14 16:37 2016-08-29 Show GitHub Exploit DB Packet Storm
191419 5.5 警告
Local
stalin project - stalin における任意のファイルに書き込まれる脆弱性 CWE-284
不適切なアクセス制御
CVE-2015-8697 2017-07-14 16:37 2015-12-22 Show GitHub Exploit DB Packet Storm
191420 8.8 重要
Network
Foscam - Foscam C1 Indoor HD カメラの Web 管理インターフェースにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2017-2843 2017-07-14 16:32 2017-06-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
181 7.2 HIGH
Network
- - A hidden, persistent backdoor was found in Yarbo firmware v2.3.9 that provides remote, unauthenticated (or weakly authenticated) access to privileged functionality. The backdoor is undocumented, cann… Update CWE-912
 Hidden Functionality
CVE-2026-7413 2026-05-9 08:16 2026-05-8 Show GitHub Exploit DB Packet Storm
182 6.6 MEDIUM
Local
- - Vim is an open source, command line text editor. Prior to version 9.2.0450, a heap buffer overflow exists in read_compound() in src/spellfile.c when loading a crafted spell file (.spl) with UTF-8 enc… New CWE-122
CWE-190
Heap-based Buffer Overflow
 Integer Overflow or Wraparound
CVE-2026-45130 2026-05-9 08:16 2026-05-9 Show GitHub Exploit DB Packet Storm
183 3.8 LOW
Network
- - SysReptor is a fully customizable pentest reporting platform. Prior to version 2026.29, users with "User Admin" permissions can change the email addresses of users with "Superuser" permissions. If th… New CWE-269
 Improper Privilege Management
CVE-2026-44987 2026-05-9 08:16 2026-05-9 Show GitHub Exploit DB Packet Storm
184 - - - Vim is an open source, command line text editor. Prior to version 9.2.0435, an OS command injection vulnerability exists in Vim's :find command-line completion. When the path option contains backtick… New CWE-78
OS Command 
CVE-2026-44656 2026-05-9 08:16 2026-05-9 Show GitHub Exploit DB Packet Storm
185 - - - FastGPT is an AI Agent building platform. Prior to version 4.14.17, an unauthenticated Server-Side Request Forgery (SSRF) vulnerability allows attackers (or authenticated users with App editing privi… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-44286 2026-05-9 08:16 2026-05-9 Show GitHub Exploit DB Packet Storm
186 6.3 MEDIUM
Network
- - FastGPT is an AI Agent building platform. Prior to version 4.14.17, FastGPT had an inconsistent SSRF protection gap in MCP tool URL handling. The direct MCP preview/run endpoints already rejected int… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-44284 2026-05-9 08:16 2026-05-9 Show GitHub Exploit DB Packet Storm
187 8.9 HIGH
Network
- - Postiz is an AI social media scheduling tool. From version 2.21.6 to before version 2.21.7, any authenticated user who can create a post can store arbitrary HTML in post content by tampering their ow… New CWE-79
Cross-site Scripting
CVE-2026-42556 2026-05-9 08:16 2026-05-9 Show GitHub Exploit DB Packet Storm
188 4.3 MEDIUM
Network
- - AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. Prior to version 1.12.1, GET /api/workspace/:slug/tts/:chatId in AnythingLL… New CWE-200
CWE-639
Information Exposure
 Authorization Bypass Through User-Controlled Key
CVE-2026-42456 2026-05-9 08:16 2026-05-9 Show GitHub Exploit DB Packet Storm
189 9.9 CRITICAL
Network
- - Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Prior to version 2.1.0, all Docker container management endpoints in Termix interpolate t… New CWE-78
OS Command 
CVE-2026-42454 2026-05-9 08:16 2026-05-9 Show GitHub Exploit DB Packet Storm
190 - - - Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Prior to version 2.1.0, the extractArchive and compressFiles endpoints in file-manager.ts… New CWE-77
Command Injection
CVE-2026-42453 2026-05-9 08:16 2026-05-9 Show GitHub Exploit DB Packet Storm