Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191811 7.8 重要
Local
Lenovo - Lenovo Solution Center のバックエンドサービスプロセスにおけるシステム権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-1876 2017-06-26 16:06 2016-04-26 Show GitHub Exploit DB Packet Storm
191812 6.1 警告
Network
Contiki プロジェクト - Contiki Operating System におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-7296 2017-06-26 15:56 2017-05-28 Show GitHub Exploit DB Packet Storm
191813 7.5 重要
Network
Contiki プロジェクト - Contiki Operating System における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-7295 2017-06-26 15:56 2017-05-28 Show GitHub Exploit DB Packet Storm
191814 6.1 警告
Network
OpenVPN Technologies - OpenVPN Access Server の Web インターフェースにおける CRLF インジェクションの脆弱性 CWE-93
CRLF インジェクション
CVE-2017-5868 2017-06-26 15:56 2017-05-23 Show GitHub Exploit DB Packet Storm
191815 7.8 重要
Local
Hancom Inc. - Hancom Thinkfree Office NEO の Hangul Word Processor コンポーネントにおけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-2819 2017-06-26 15:56 2017-05-12 Show GitHub Exploit DB Packet Storm
191816 9.8 緊急
Network
フォーティネット - FortiOS で使用される Fortinet FortiClient SSL_VPN Linux バージョンにおける権限を昇格される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-8497 2017-06-26 15:56 2016-10-7 Show GitHub Exploit DB Packet Storm
191817 9.8 緊急
Network
Yodl project - Yodl の queue/queuepush.c の queue_push 関数におけるバッファオーバーリードの脆弱性 CWE-119
バッファエラー
CVE-2016-10375 2017-06-26 15:56 2016-02-5 Show GitHub Exploit DB Packet Storm
191818 7.5 重要
Network
Huawei - 複数の Huawei WLAN AC デバイスのソフトウェアの mDNS モジュールにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-6586 2017-06-26 13:56 2015-09-9 Show GitHub Exploit DB Packet Storm
191819 9.8 緊急
Network
F5 Networks - F5 BIG-IP におけるハードコードされた認証情報の使用に関する脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2017-6131 2017-06-26 13:50 2017-05-22 Show GitHub Exploit DB Packet Storm
191820 8.1 重要
Network
Zabbix - Zabbix サーバにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2017-2824 2017-06-26 13:50 2017-04-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
581 8.1 HIGH
Network
- - Budibase is an open-source low-code platform. Prior to version 3.35.10, the budibase:auth cookie containing the JWT session token is set with httpOnly: false at packages/backend-core/src/utils/utils.… New CWE-1004
 Sensitive Cookie Without 'HttpOnly' Flag
CVE-2026-42239 2026-05-8 05:35 2026-05-8 Show GitHub Exploit DB Packet Storm
582 - - - Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322. New - CVE-2026-42499 2026-05-8 05:33 2026-05-8 Show GitHub Exploit DB Packet Storm
583 7.6 HIGH
Network
- - manage.get.gov is the .gov TLD registrar maintained by CISA. manage.get.gov allows an organization administrator to assign domain manager privileges for domains not already in another organization. F… New CWE-266
 Incorrect Privilege Assignment
CVE-2026-43510 2026-05-8 05:32 2026-05-8 Show GitHub Exploit DB Packet Storm
584 3.3 LOW
Local
- - A weakness has been identified in OSGeo gdal up to 3.13.0dev-4. The affected element is the function GDfieldinfo of the file frmts/hdf4/hdf-eos/GDapi.c. Executing a manipulation can lead to out-of-bo… New CWE-119
CWE-125
Incorrect Access of Indexable Resource ('Range Error') 
Out-of-bounds Read
CVE-2026-8088 2026-05-8 05:32 2026-05-8 Show GitHub Exploit DB Packet Storm
585 5.3 MEDIUM
Local
- - A security flaw has been discovered in OSGeo gdal up to 3.13.0dev-4. Impacted is the function GDnentries of the file frmts/hdf4/hdf-eos/GDapi.c. Performing a manipulation of the argument DataFieldNam… New CWE-119
CWE-122
Incorrect Access of Indexable Resource ('Range Error') 
Heap-based Buffer Overflow
CVE-2026-8087 2026-05-8 05:32 2026-05-8 Show GitHub Exploit DB Packet Storm
586 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: bpf: sockmap: Fix use-after-free of sk->sk_socket in sk_psock_verdict_data_ready(). syzbot reported use-after-free of AF_UNIX soc… Update CWE-416
 Use After Free
CVE-2026-43016 2026-05-8 05:31 2026-05-2 Show GitHub Exploit DB Packet Storm
587 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: macb: fix clk handling on PCI glue driver removal platform_device_unregister() may still want to use the registered clks dur… Update CWE-416
 Use After Free
CVE-2026-43015 2026-05-8 05:31 2026-05-2 Show GitHub Exploit DB Packet Storm
588 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: macb: properly unregister fixed rate clocks The additional resources allocated with clk_register_fixed_rate() need to be rel… Update NVD-CWE-noinfo
CVE-2026-43014 2026-05-8 05:29 2026-05-2 Show GitHub Exploit DB Packet Storm
589 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net/mlx5: lag: Check for LAG device before creating debugfs __mlx5_lag_dev_add_mdev() may return 0 (success) even when an error o… Update CWE-476
 NULL Pointer Dereference
CVE-2026-43013 2026-05-8 05:28 2026-05-2 Show GitHub Exploit DB Packet Storm
590 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix switchdev mode rollback in case of failure If for some internal reason switchdev mode fails, we rollback to legacy … Update NVD-CWE-noinfo
CVE-2026-43012 2026-05-8 05:28 2026-05-2 Show GitHub Exploit DB Packet Storm