Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191761 7.5 重要
Network
Mimosa Networks, Inc. - Mimosa Client における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-9136 2017-06-19 17:29 2017-05-12 Show GitHub Exploit DB Packet Storm
191762 8.8 重要
Network
Mimosa Networks, Inc. - Mimosa Client および Backhaul におけるインジェクションに関する脆弱性 CWE-74
インジェクション
CVE-2017-9135 2017-06-19 17:29 2017-05-12 Show GitHub Exploit DB Packet Storm
191763 7.5 重要
Network
Mimosa Networks, Inc. - Mimosa Client および Backhaul における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2017-9134 2017-06-19 17:29 2017-05-12 Show GitHub Exploit DB Packet Storm
191764 8.8 重要
Network
Mimosa Networks, Inc. - Mimosa Client および Backhaul におけるインジェクションに関する脆弱性 CWE-74
インジェクション
CVE-2017-9133 2017-06-19 17:29 2017-05-12 Show GitHub Exploit DB Packet Storm
191765 7.5 重要
Network
Mimosa Networks, Inc. - Mimosa Client および Backhaul におけるハードコードされた認証情報の使用に関する脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2017-9132 2017-06-19 17:29 2017-05-12 Show GitHub Exploit DB Packet Storm
191766 7.5 重要
Network
Mimosa Networks, Inc. - Mimosa Client および Backhaul における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-9131 2017-06-19 17:29 2017-05-12 Show GitHub Exploit DB Packet Storm
191767 7.8 重要
Local
Linux - Linux Kernel を使用している CAF の Android の msm_pcm_playback_close() 関数における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-8246 2017-06-19 17:15 2017-05-1 Show GitHub Exploit DB Packet Storm
191768 7.8 重要
Local
Linux - Linux Kernel を使用している CAF の Android におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-8245 2017-06-19 17:12 2017-05-1 Show GitHub Exploit DB Packet Storm
191769 7 重要
Local
Linux - Linux Kernel を使用している CAF の Android の core_info_read および inst_info_read におけるバッファエラーの脆弱性 CWE-119
CWE-362
CVE-2017-8244 2017-06-19 17:10 2017-05-1 Show GitHub Exploit DB Packet Storm
191770 7.5 重要
Network
FlightGear - FlightGear におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2017-8921 2017-06-19 16:42 2017-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
131 8.1 HIGH
Adjacent
- - BusyBox before commit 42202bf contains a heap buffer overflow vulnerability in the DHCPv6 client (udhcpc6) DNS_SERVERS option handler in networking/udhcp/d6_dhcpc.c that allows network-adjacent attac… New CWE-122
Heap-based Buffer Overflow
CVE-2026-29004 2026-05-6 23:16 2026-05-5 Show GitHub Exploit DB Packet Storm
132 4.7 MEDIUM
Network
- - Vulnerability in the Oracle Macoron Tool product of Oracle Open Source Projects. The supported versions that is affected is v0.22.0. Easily exploitable vulnerability allows unauthenticated attacker w… New - CVE-2026-35253 2026-05-6 22:26 2026-05-6 Show GitHub Exploit DB Packet Storm
133 6.5 MEDIUM
Network
- - Dify before version 1.14.0 contains an authorization bypass vulnerability that allows authenticated users to read the full contents of files uploaded by other users within the same tenant by supplyin… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-41950 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
134 - - - Pi-hole FTL is the core engine of the Pi-hole network-level advertisement and tracker blocker. In versions before 6.6.1, the `dns.interface` configuration field in Pi-hole FTL accepted newline charac… New CWE-93
CRLF Injection
CVE-2026-39849 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
135 - - - Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, a Time-of-Check-to-Time-of-Use (TOCTOU) race condition exists during addon installation.… New CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-34596 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
136 - - - Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, SbieIniServer::HashPassword converts a SHA-1 digest to hexadecimal incorrectly. The high… New CWE-328
 Use of Weak Hash
CVE-2026-34527 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
137 - - - Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, an INI injection vulnerability allows any standard local user to bypass configuration re… New CWE-93
CRLF Injection
CVE-2026-34458 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
138 - - - CoreDNS is a DNS server that chains plugins. In versions prior to 1.14.3, the tsig plugin can be bypassed on non-plain-DNS transports (DoT, DoH, DoH3, DoQ, and gRPC) because it trusts the transport w… New CWE-303
 Incorrect Implementation of Authentication Algorithm
CVE-2026-33190 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
139 - - - Vaultwarden is a Bitwarden-compatible server written in Rust. In versions 1.35.4 and earlier, the WebAuthn authentication flow in `validate_webauthn_login()` updates persistent credential metadata (1… New CWE-345
 Insufficient Verification of Data Authenticity
CVE-2026-31835 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
140 5.4 MEDIUM
Network
- - Traccar is an open source GPS tracking system. In org.traccar:traccar versions starting at 6.11.1 before 6.13.0, the KML and GPX export functionality writes device names to XML output without proper … New CWE-91
Blind XPath Injection
CVE-2026-27693 2026-05-6 22:16 2026-05-5 Show GitHub Exploit DB Packet Storm