Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
192641 6.1 警告
Network
Craft CMS - Craft CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-8384 2017-06-5 15:40 2017-04-27 Show GitHub Exploit DB Packet Storm
192642 5.3 警告
Network
Craft CMS - Craft CMS におけるセキュリティ機能に関する脆弱性 CWE-254
セキュリティ機能
CVE-2017-8383 2017-06-5 15:40 2017-04-27 Show GitHub Exploit DB Packet Storm
192643 4.7 警告
Local
Underbit Technologies, Inc. - Underbit MAD libmad の layer3.c の mad_layer_III 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2017-8372 2017-06-5 15:32 2017-04-30 Show GitHub Exploit DB Packet Storm
192644 5.3 警告
Network
MetalGenix - GeniXCMS における alertDanger MSG_USER_EMAIL_EXIST 保護メカニズムを回避される脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-8388 2017-06-5 15:28 2017-04-25 Show GitHub Exploit DB Packet Storm
192645 7.8 重要
Local
秋田稔 (Akky) - 7-ZIP32.DLL で作成された自己解凍書庫における任意の DLL 読み込みに関する脆弱性 CWE-Other
その他
CVE-2017-2107 2017-06-5 11:52 2017-02-17 Show GitHub Exploit DB Packet Storm
192646 4.8 警告
Network
日産証券株式会社 - スマートフォンアプリ「アクセスCX」における SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2017-2110 2017-06-5 11:21 2017-03-1 Show GitHub Exploit DB Packet Storm
192647 8.8 重要
Adjacent
株式会社アイ・オー・データ機器 - アイ・オー・データ製の複数のネットワークカメラ製品におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-2113 2017-06-5 11:07 2017-03-2 Show GitHub Exploit DB Packet Storm
192648 8 重要
Adjacent
アライドテレシス - CentreCOM AR260S V2 における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-2125 2017-06-5 10:42 2017-03-30 Show GitHub Exploit DB Packet Storm
192649 9.8 緊急
Network
Cloud Foundry Foundation
Pivotal Software, Inc.
- Cloud Foundry の Cloud Controller における重要なユーザ認証情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-5006 2017-06-5 10:27 2016-07-26 Show GitHub Exploit DB Packet Storm
192650 7.8 重要
Local
Google - Qualcomm ブートローダにおける権限を昇格される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-10276 2017-06-2 20:02 2016-11-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1271 5.3 MEDIUM
Network
- - Improper Null Termination, Out-of-bounds Read vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which f… CWE-125
CWE-170
Out-of-bounds Read
 Improper Null Termination
CVE-2026-34032 2026-05-5 03:16 2026-05-4 Show GitHub Exploit DB Packet Storm
1272 5.3 MEDIUM
Network
- - Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the… CWE-125
Out-of-bounds Read
CVE-2026-33857 2026-05-5 03:16 2026-05-4 Show GitHub Exploit DB Packet Storm
1273 6.5 MEDIUM
Network
- - HTTP response splitting vulnerability in multiple Apache HTTP Server modules with untrusted or compromised backend servers. This issue affects Apache HTTP Server: from through 2.4.66. Users are rec… CWE-443
 DEPRECATED: HTTP response splitting
CVE-2026-33523 2026-05-5 03:16 2026-05-5 Show GitHub Exploit DB Packet Storm
1274 5.3 MEDIUM
Network
- - A NULL pointer dereference in the mod_authn_socache in Apache HTTP Server 2.4.66 and earlier allows an unauthenticated remote user to crash a child process in a caching forward proxy configuration. … CWE-476
 NULL Pointer Dereference
CVE-2026-33007 2026-05-5 03:16 2026-05-5 Show GitHub Exploit DB Packet Storm
1275 - - - A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows a bypass of Digest authentication by a remote attacker. Users are recommended to upgrade to version 2.4.67, which fixes th… CWE-208
 Information Exposure Through Timing Discrepancy
CVE-2026-33006 2026-05-5 03:16 2026-05-5 Show GitHub Exploit DB Packet Storm
1276 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… - CVE-2026-2828 2026-05-5 03:16 2026-05-5 Show GitHub Exploit DB Packet Storm
1277 - - - An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and earlier allows local .htaccess authors to read files with the privileges of the httpd user. Users are recommended to upgra… CWE-269
 Improper Privilege Management
CVE-2026-24072 2026-05-5 03:16 2026-05-4 Show GitHub Exploit DB Packet Storm
1278 8.8 HIGH
Network
- - Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol. This issue affects Apache HTTP Server: 2.4.66. Users are recommended to upgrade to version 2.4.67, which f… CWE-415
 Double Free
CVE-2026-23918 2026-05-5 03:16 2026-05-5 Show GitHub Exploit DB Packet Storm
1279 7.5 HIGH
Network
- - Assertion failure vulnerability in the PCO (Protocol Configuration Options) parser in the SMF (Session Management Function) component of Open5GS before v2.7.5 allows remote attackers to cause denial … CWE-617
 Reachable Assertion
CVE-2025-56568 2026-05-5 03:16 2026-05-1 Show GitHub Exploit DB Packet Storm
1280 7.5 HIGH
Network
- - An issue in open5gs v.2.7.3 allows a remote attacker to cause a denial of service via a crafted PDU Session Modification Request CWE-20
CWE-400
 Improper Input Validation 
 Uncontrolled Resource Consumption
CVE-2025-46115 2026-05-5 03:16 2026-05-1 Show GitHub Exploit DB Packet Storm