Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191881 6.1 警告
Network
フォーティネット - Fortinet FortiGate におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-3127 2017-06-23 16:32 2017-04-19 Show GitHub Exploit DB Packet Storm
191882 6.5 警告
Network
ImageMagick - ImageMagick の coders/png.c の ReadJNGImage 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2017-9262 2017-06-23 16:21 2017-05-7 Show GitHub Exploit DB Packet Storm
191883 6.5 警告
Network
ImageMagick - ImageMagick の coders/png.c の ReadMNGImage 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2017-9261 2017-06-23 16:20 2017-05-7 Show GitHub Exploit DB Packet Storm
191884 7.3 重要
Network
Ceragon Ltd. - Ceragon FibeAir IP-10 ワイヤレス受信器における証明書・パスワードの管理に関する脆弱性 CWE-255
証明書・パスワード管理
CVE-2017-9137 2017-06-23 16:02 2017-05-18 Show GitHub Exploit DB Packet Storm
191885 7.3 重要
Local
Pegasus Mail - Pegasus Mail の winpm-32.exe におけるコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2017-9046 2017-06-23 15:44 2017-05-19 Show GitHub Exploit DB Packet Storm
191886 6.5 警告
Network
MantisBT Group - MantisBT における任意のパーマリンクを挿入される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-7620 2017-06-23 15:17 2017-04-10 Show GitHub Exploit DB Packet Storm
191887 3.5
Adjacent
Shenzhen Tenda Technology Co.,Ltd. - 複数の Tenda ルータにおけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-9139 2017-06-23 15:07 2017-05-21 Show GitHub Exploit DB Packet Storm
191888 8 重要
Adjacent
Shenzhen Tenda Technology Co.,Ltd. - 複数の Tenda ルータのデバッグインターフェースにおけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-9138 2017-06-23 15:07 2017-05-21 Show GitHub Exploit DB Packet Storm
191889 7.5 重要
Network
シスコシステムズ - Cisco UCS C シリーズラックサーバの TCP スロットリングプロセスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2017-6633 2017-06-23 15:07 2017-05-17 Show GitHub Exploit DB Packet Storm
191890 8.8 重要
Adjacent
D-Link Systems, Inc. - D-Link DIR-600M デバイスのファームウェアの login.cgi における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2017-9100 2017-06-23 14:58 2017-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
731 4.9 MEDIUM
Network
- - SQL Injection via ORDER BY clause in V2Board thru 1.7.4. In app/Http/Controllers/Admin/UserController.php, the sort parameter from user input is passed directly to User::orderBy($sort, $sortType) wit… Update CWE-89
SQL Injection
CVE-2026-37505 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
732 8.4 HIGH
Local
- - Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The sync-invoke TCP server (Server.php:87) receives data from a TCP socket, passes it directly to Opis\Closure\unserialize(),… Update CWE-502
 Deserialization of Untrusted Data
CVE-2026-37552 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
733 6.5 MEDIUM
Network
- - SQL injection vulnerability in MixPHP Framework 2.x thru 2.2.17 via crafted `on` array to the joinOn function in BuildHelper.php. Update CWE-89
SQL Injection
CVE-2026-42475 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
734 5.5 MEDIUM
Local
- - A stack-based out-of-bounds read vulnerability in VrmlData_Scene::ReadLine in the VRML parser in Open CASCADE Technology (OCCT) V8_0_0_rc5 allows attackers to cause a denial of service via a crafted … Update CWE-125
Out-of-bounds Read
CVE-2026-42480 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
735 7.1 HIGH
Adjacent
- - openxc/isotp-c thru commit 5a5d19245f65189202719321facd49ce6f5d46ac (2021-08-09) contains an out-of-bounds read in the ISO-TP Single Frame receive handler, where the 4-bit payload length nibble is us… Update CWE-125
Out-of-bounds Read
CVE-2026-37535 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
736 8.8 HIGH
Adjacent
- - miaofng/uds-c commit e506334e270d77b20c0bc259ac6c7d8c9b702b7a (2016-10-05) contains a stack buffer overflow in send_diagnostic_request. A 6-byte stack buffer (MAX_DIAGNOSTIC_PAYLOAD_SIZE=6) receives … Update CWE-121
Stack-based Buffer Overflow
CVE-2026-37536 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
737 8.1 HIGH
Adjacent
- - collin80/Open-SAE-J1939 thru commit 744024d4306bc387857dfce439558336806acb06 (2023-03-08) contains an integer underflow leading to out-of-bounds write in Transport Protocol Data Transfer handling. At… Update CWE-190
 Integer Overflow or Wraparound
CVE-2026-37537 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
738 7.5 HIGH
Network
- - Buffer overflow vulnerability in socketcand 0.4.2 in file socketcand.c in function main allows attackers to cause a denial of service or other unspecified impacts via crafted bus_name. Update CWE-121
Stack-based Buffer Overflow
CVE-2026-37538 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
739 8.4 HIGH
Local
- - OpenAMP v2025.10.0 ELF loader contains an integer overflow vulnerability in firmware image parsing. In elf_loader.c, it performs multiplication of two attacker-controlled 16-bit values from the ELF h… Update CWE-190
 Integer Overflow or Wraparound
CVE-2026-37540 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
740 7.8 HIGH
Local
- - An issue in the component DirectIo64.sys of PassMark BurnInTest v11.0 Build 1011, OSForensics v11.1 Build 1007, and PerformanceTest v11.1 Build 1004 allows attackers to access kernel memory and escal… Update CWE-20
CWE-269
 Improper Input Validation 
 Improper Privilege Management
CVE-2025-52347 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm