Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191581 5.5 警告
Local
Eclipse Foundation - Mosquitto における重要な MQTT トピック情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2017-9868 2017-07-12 17:07 2017-06-23 Show GitHub Exploit DB Packet Storm
191582 5.5 警告
Local
freedesktop.org - Poppler の GfxState.cc の GfxImageColorMap::getGray 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2017-9865 2017-07-12 16:56 2017-04-24 Show GitHub Exploit DB Packet Storm
191583 7.8 重要
Local
freedesktop.org - Poppler の pdftocairo の JBIG2Stream.cc における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2017-9776 2017-07-12 16:56 2017-06-21 Show GitHub Exploit DB Packet Storm
191584 5.5 警告
Local
freedesktop.org - Poppler の pdftocairo の GfxState.cc におけるスタックバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-9775 2017-07-12 16:56 2017-06-21 Show GitHub Exploit DB Packet Storm
191585 7.5 重要
Network
ntop - ntopng の NetworkInterface.cpp の NetworkInterface::getHost 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2017-7458 2017-07-12 16:22 2017-02-14 Show GitHub Exploit DB Packet Storm
191586 7.5 重要
Network
ntop - ntopng におけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-7459 2017-07-12 16:22 2017-05-16 Show GitHub Exploit DB Packet Storm
191587 6.1 警告
Network
ntop - ntopng におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-7416 2017-07-12 16:22 2017-05-16 Show GitHub Exploit DB Packet Storm
191588 9.8 緊急
Network
Cognito Software Ltd - Cognito Software Moneyworks におけるパスワードが公開される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-9615 2017-07-12 16:22 2017-06-26 Show GitHub Exploit DB Packet Storm
191589 5.5 警告
Local
lrzip project - lrzip の lrzip.c:1074 の get_fileinfo 関数におけるスタックのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-9929 2017-07-12 16:06 2017-05-13 Show GitHub Exploit DB Packet Storm
191590 5.5 警告
Local
lrzip project - lrzip の lrzip.c:979 の get_fileinfo 関数におけるスタックのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-9928 2017-07-12 16:06 2017-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
721 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: btrfs: fix zero size inode with non-zero size after log replay When logging that an inode exists, as part of logging a new name o… NVD-CWE-noinfo
CVE-2026-43118 2026-05-9 02:30 2026-05-6 Show GitHub Exploit DB Packet Storm
722 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: dm-verity: correctly handle dm_bufio_client_create() failure If either of the calls to dm_bufio_client_create() in verity_fec_ctr… NVD-CWE-noinfo
CVE-2026-43132 2026-05-9 02:26 2026-05-6 Show GitHub Exploit DB Packet Storm
723 7.9 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation Commit cc3ed80ae69f ("KVM: nSVM: always use vmcb01 to for vmsave/vmload o… NVD-CWE-noinfo
CVE-2026-43133 2026-05-9 02:25 2026-05-6 Show GitHub Exploit DB Packet Storm
724 4.8 MEDIUM
Network
linuxcontainers incus Incus is a system container and virtual machine manager. In versions before 7.0.0, broken TLS validation logic in the OVN database connection logic can allow connections to an attacker's OVN database… CWE-295
Improper Certificate Validation 
CVE-2026-40243 2026-05-9 02:23 2026-05-7 Show GitHub Exploit DB Packet Storm
725 8.2 HIGH
Network
quarkus quarkus Quarkus is a Java framework for building cloud-native applications. In versions prior to 3.20.6.1, 3.27.3.1, 3.33.1.1, 3.35.1.1, 3.34.7, and 3.35.2, a path normalization inconsistency between the sec… CWE-863
 Incorrect Authorization
CVE-2026-39852 2026-05-9 02:18 2026-05-6 Show GitHub Exploit DB Packet Storm
726 - - - Improper Neutralization of Input During Web Page Generation (XSS) vulnerability in absinthe-graphql absinthe_plug allows reflected cross-site scripting via the GraphiQL interface. 'Elixir.Absinthe.P… CWE-79
Cross-site Scripting
CVE-2026-42794 2026-05-9 02:16 2026-05-9 Show GitHub Exploit DB Packet Storm
727 9.8 CRITICAL
Network
- - Nornicdb is a distributed low-latency, Graph+Vector, Temporal MVCC with all sub-ms HNSW search, graph traversal, and writes. Prior to version 1.0.42-hotfix, the --address CLI flag (and NORNICDB_ADDRE… CWE-1392
 Use of Default Credentials
CVE-2026-42072 2026-05-9 02:16 2026-05-9 Show GitHub Exploit DB Packet Storm
728 6.1 MEDIUM
Network
- - MapServer is a system for developing web-based GIS applications. From version 6.0 to before version 8.6.2, a reflected XSS vulnerability in MapServer's WMS server allows an unauthenticated attacker t… CWE-80
Basic XSS
CVE-2026-42030 2026-05-9 02:16 2026-05-9 Show GitHub Exploit DB Packet Storm
729 - - - pgx is a PostgreSQL driver and toolkit for Go. Prior to version 5.9.2, SQL injection can occur when the non-default simple protocol is used, a dollar quoted string literal is used in the SQL query, t… CWE-89
SQL Injection
CVE-2026-41889 2026-05-9 02:16 2026-05-9 Show GitHub Exploit DB Packet Storm
730 4.9 MEDIUM
Network
- - Flarum is open-source forum software. Prior to versions 1.8.16 and 2.0.0-rc.1, Flarum's patch for CVE-2023-27577 restricted the @import and data-uri() LESS features in the custom_less setting, but th… CWE-22
CWE-918
Path Traversal
Server-Side Request Forgery (SSRF) 
CVE-2026-41887 2026-05-9 02:16 2026-05-9 Show GitHub Exploit DB Packet Storm