Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191441 8.1 重要
Network
マイクロソフト - Microsoft Windows XP および Server 2003 の gpkcsp.dll の Smart Card 認証コードにおけるバッファオーバーフローの脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-0176 2017-07-6 10:48 2017-06-13 Show GitHub Exploit DB Packet Storm
191442 6.5 警告
Network
oVirt - oVirt のエンジンの VersionMapper.fromKernelVersionString メソッドにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-3077 2017-07-6 10:39 2016-03-29 Show GitHub Exploit DB Packet Storm
191443 5.4 警告
Network
IBM - IBM DOORS Next Generation におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-1278 2017-07-6 10:34 2017-06-8 Show GitHub Exploit DB Packet Storm
191444 5.4 警告
Network
IBM - IBM DOORS Next Generation におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-1276 2017-07-6 10:34 2017-06-8 Show GitHub Exploit DB Packet Storm
191445 5.4 警告
Network
IBM - IBM DOORS Next Generation におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-1247 2017-07-6 10:34 2017-06-8 Show GitHub Exploit DB Packet Storm
191446 5.7 警告
Network
IBM - IBM iNotes における情報を公開される脆弱性 CWE-200
情報漏えい
CVE-2017-1214 2017-07-6 10:34 2017-06-1 Show GitHub Exploit DB Packet Storm
191447 8.8 重要
Network
IBM - IBM Maximo Asset Management における任意のコマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-9984 2017-07-6 10:34 2016-12-16 Show GitHub Exploit DB Packet Storm
191448 7.8 重要
Local
GNU Project - Stack Smashing Protection (SSP) に GCC の libssp ライブラリを使用してコンパイルされたバイナリにおけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2016-4973 2017-07-6 10:25 2016-04-7 Show GitHub Exploit DB Packet Storm
191449 7.5 重要
Network
ブルーコートシステムズ - 複数の Blue Coat 製品におけるブロックされたリクエストを回避される脆弱性 CWE-254
セキュリティ機能
CVE-2016-6594 2017-07-6 10:05 2016-07-14 Show GitHub Exploit DB Packet Storm
191450 7.5 重要
Network
Samba Project - Samba の smbd におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2017-9461 2017-07-5 18:31 2017-02-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
91 8.8 HIGH
Adjacent
- - The Optoma CinemaX P2 projector (firmware TVOS-04.24.010.04.01, Android 8.0.0) exposes Android Debug Bridge (ADB) on TCP port 5555 over the network without requiring authentication. The device is con… New CWE-285
Improper Authorization
CVE-2026-30495 2026-05-9 08:16 2026-05-7 Show GitHub Exploit DB Packet Storm
92 6.1 MEDIUM
Network
- - Sidekiq-cron thru 2.3.1, an open-source scheduling add-on for Sidekiq, is vulnerable to a cross-site scripting (xss) vulnerability via crafted URL being rended from cron.erb. New CWE-79
Cross-site Scripting
CVE-2025-67202 2026-05-9 08:16 2026-05-8 Show GitHub Exploit DB Packet Storm
93 9.8 CRITICAL
Network
- - NPM package next-npm-version1.0.1 is vulnerable to Command injection. New CWE-94
Code Injection
CVE-2025-63706 2026-05-9 08:16 2026-05-8 Show GitHub Exploit DB Packet Storm
94 9.8 CRITICAL
Network
- - npm package parse-ini v1.0.6 is vulnerable to Prototype Pollution in index.js(). New CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2025-63703 2026-05-9 08:16 2026-05-8 Show GitHub Exploit DB Packet Storm
95 7.5 HIGH
Network
- - Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322. New - CVE-2026-42499 2026-05-9 07:16 2026-05-8 Show GitHub Exploit DB Packet Storm
96 - - - Emlog is an open source website building system. Prior to version 2.6.11, direct SQL injection in article creation and update functions allows attackers to execute arbitrary SQL commands, potentially… New CWE-89
SQL Injection
CVE-2026-42287 2026-05-9 07:16 2026-05-9 Show GitHub Exploit DB Packet Storm
97 - - - Emlog is an open source website building system. Prior to version 2.6.11, missing CSRF protection in critical admin functions allows attackers to trick authenticated administrators into performing un… New CWE-352
 Origin Validation Error
CVE-2026-42286 2026-05-9 07:16 2026-05-9 Show GitHub Exploit DB Packet Storm
98 8.8 HIGH
Network
- - GitPython is a python library used to interact with Git repositories. From version 3.1.30 to before version 3.1.47, GitPython blocks dangerous Git options such as --upload-pack and --receive-pack by … New CWE-78
OS Command 
CVE-2026-42215 2026-05-9 07:16 2026-05-8 Show GitHub Exploit DB Packet Storm
99 - - - SolidCAM-GPPL-IDE is an unofficial, independently developed extension, Postprocessor IDE for SolidCAM. From version 1.0.0 to before version 1.0.2, the inc "filename" directive in GPPL postprocessor f… New CWE-22
CWE-200
CWE-295
CWE-918
Path Traversal
Information Exposure
Improper Certificate Validation 
Server-Side Request Forgery (SSRF) 
CVE-2026-42213 2026-05-9 07:16 2026-05-9 Show GitHub Exploit DB Packet Storm
100 - - - SolidCAM-GPPL-IDE is an unofficial, independently developed extension, Postprocessor IDE for SolidCAM. From version 1.0.0 to before version 1.0.2, Opening a .gpp file in the SolidCAM Postprocessor ID… New CWE-400
CWE-611
CWE-776
 Uncontrolled Resource Consumption
XXE
XML Entity Expansion
CVE-2026-42212 2026-05-9 07:16 2026-05-9 Show GitHub Exploit DB Packet Storm