Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
192381 7.8 重要
Local
Google - Mediaserver の libstagefright の id3/ID3.cpp におけるリモートでコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-0588 2017-06-9 19:45 2017-05-1 Show GitHub Exploit DB Packet Storm
192382 7.8 重要
Local
Google - Mediaserver の libmpeg2 におけるリモートでコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-0587 2017-06-9 19:45 2017-05-1 Show GitHub Exploit DB Packet Storm
192383 9.8 緊急
Network
レッドハット
Debian
openSUSE project
Fedora Project
Google
- Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-5178 2017-06-9 19:20 2016-09-29 Show GitHub Exploit DB Packet Storm
192384 8.8 重要
Network
レッドハット
Debian
openSUSE project
Fedora Project
Google
- Google Chrome の V8 におけるサービス運用妨害 (DoS) の脆弱性 CWE-416
解放済みメモリの使用
CVE-2016-5177 2017-06-9 19:20 2016-09-29 Show GitHub Exploit DB Packet Storm
192385 5.4 警告
Network
Certec EDV - Certec EDV GmbH atvise scada におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6029 2017-06-9 17:01 2017-04-6 Show GitHub Exploit DB Packet Storm
192386 6.1 警告
Network
OpenText - OpenText Tempo Box におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-8892 2017-06-9 16:56 2017-05-10 Show GitHub Exploit DB Packet Storm
192387 9.8 緊急
Network
Linux - Linux Kernel の net/ipv4/inet_connection_sock.c の inet_csk_clone_lock 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-415
二重解放
CVE-2017-8890 2017-06-9 16:56 2017-05-9 Show GitHub Exploit DB Packet Storm
192388 6.1 警告
Network
トレンドマイクロ - Trend Micro OfficeScan におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-8801 2017-06-9 16:54 2017-04-14 Show GitHub Exploit DB Packet Storm
192389 7.5 重要
Network
GNU Project - GNU C ライブラリの xdr_bytes and xdr_string 関数におけるサービス運用妨害 (DoS) の脆弱性概要 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2017-8804 2017-06-9 16:37 2017-05-16 Show GitHub Exploit DB Packet Storm
192390 7.2 重要
Network
CMS Made Simple - CMS Made Simple における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2017-8912 2017-06-9 16:25 2017-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1171 8.3 HIGH
Network
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ksmbd: require minimum ACE size in smb_check_perm_dacl() Both ACE-walk loops in smb_check_perm_dacl() only guard against an under… Update CWE-787
 Out-of-bounds Write
CVE-2026-31712 2026-05-7 05:16 2026-05-1 Show GitHub Exploit DB Packet Storm
1172 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: rtnetlink: add missing netlink_ns_capable() check for peer netns rtnl_newlink() lacks a CAP_NET_ADMIN capability check on the pee… Update NVD-CWE-noinfo
CVE-2026-31692 2026-05-7 05:05 2026-04-30 Show GitHub Exploit DB Packet Storm
1173 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: Buffer overflow in drivers/xen/sys-hypervisor.c The build id returned by HYPERVISOR_xen_version(XENVER_build_id) is neither NUL t… Update CWE-787
 Out-of-bounds Write
CVE-2026-31786 2026-05-7 04:44 2026-04-30 Show GitHub Exploit DB Packet Storm
1174 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: xen/privcmd: fix double free via VMA splitting privcmd_vm_ops defines .close (privcmd_close), but neither .may_split nor .open. W… Update CWE-415
 Double Free
CVE-2026-31787 2026-05-7 04:38 2026-04-30 Show GitHub Exploit DB Packet Storm
1175 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: fuse: reject oversized dirents in page cache fuse_add_dirent_to_cache() computes a serialized dirent size from the server-control… Update NVD-CWE-noinfo
CVE-2026-31694 2026-05-7 04:23 2026-05-1 Show GitHub Exploit DB Packet Storm
1176 3.9 LOW
Network
- - HCL BigFix Service Management (SM) is susceptible to a Root File System Not Mounted as Read-Only. An improperly configured root file system may allow unintended modifications to critical system comp… New CWE-1188
 Insecure Default Initialization of Resource
CVE-2025-31974 2026-05-7 04:20 2026-05-7 Show GitHub Exploit DB Packet Storm
1177 8.8 HIGH
Network
- - Vvveb before version 1.0.8.2 contains an authenticated remote code execution vulnerability in the admin code editor that allows low-privilege authenticated users to execute arbitrary code by exploiti… New CWE-184
 Incomplete Blacklist
CVE-2026-41934 2026-05-7 04:20 2026-05-7 Show GitHub Exploit DB Packet Storm
1178 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: wifi: virt_wifi: remove SET_NETDEV_DEV to avoid use-after-free Currently we execute `SET_NETDEV_DEV(dev, &priv->lowerdev->dev)` f… Update CWE-416
 Use After Free
CVE-2026-31695 2026-05-7 04:19 2026-05-1 Show GitHub Exploit DB Packet Storm
1179 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix missing validation of ticket length in non-XDR key preparsing In rxrpc_preparse(), there are two paths for parsing key… Update CWE-787
 Out-of-bounds Write
CVE-2026-31696 2026-05-7 04:17 2026-05-1 Show GitHub Exploit DB Packet Storm
1180 9.8 CRITICAL
Network
- - OpenCMS v20 and before is vulnerable to XML External Entity (XXE) in the Admin Import DB feature due to insecure XML parsing of user supplied .zip files containing a manifest.xml. Update CWE-611
XXE
CVE-2026-38429 2026-05-7 04:16 2026-05-6 Show GitHub Exploit DB Packet Storm