Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 2, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
192671 7.5 重要
Network
Ping Identity - Apache 用 Ping Identity OpenID Connect 認証モジュールの Mod_auth_openidc.c におけるページのコンテンツを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2017-6059 2017-05-18 10:06 2017-01-26 Show GitHub Exploit DB Packet Storm
192672 7.3 重要
Network
Apache Software Foundation - Apache FOP における XML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2017-5661 2017-05-18 10:01 2017-04-18 Show GitHub Exploit DB Packet Storm
192673 5.3 警告
Network
pulp project - Pulp における競合状態に関する脆弱性 CWE-362
競合状態
CVE-2016-3106 2017-05-17 18:46 2016-04-8 Show GitHub Exploit DB Packet Storm
192674 7.8 重要
Local
Palo Alto Networks - Palo Alto Networks PAN-OS の Management Web Interface における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-7218 2017-05-17 18:40 2017-04-10 Show GitHub Exploit DB Packet Storm
192675 7.8 重要
Local
game-music-emu project
openSUSE project
SUSE
- game-music-emu における境界外読み取りに関する脆弱性 CWE-125
CWE-787
CVE-2016-9959 2017-05-17 18:31 2016-12-14 Show GitHub Exploit DB Packet Storm
192676 7.8 重要
Local
game-music-emu project
openSUSE project
SUSE
- game-music-emu におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2016-9958 2017-05-17 18:31 2016-12-14 Show GitHub Exploit DB Packet Storm
192677 7.8 重要
Local
game-music-emu project
openSUSE project
SUSE
- game-music-emu におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2016-9957 2017-05-17 18:31 2016-12-14 Show GitHub Exploit DB Packet Storm
192678 6.1 警告
Network
Oliver - Oliver におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2710 2017-05-17 18:10 2014-04-1 Show GitHub Exploit DB Packet Storm
192679 7.5 重要
Network
レッドハット - mod_cluster におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2016-4459 2017-05-17 18:07 2016-10-12 Show GitHub Exploit DB Packet Storm
192680 8.8 重要
Network
Unitrends - Unitrends Enterprise Backup における証明書・パスワードの管理に関する脆弱性 CWE-255
証明書・パスワード管理
CVE-2017-7284 2017-05-17 17:59 2017-04-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 2, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
351 7.5 HIGH
Network
postgresql postgresql_jdbc_driver pgjdbc is an open source postgresql JDBC Driver. From version 42.2.0 to before version 42.7.11, pgjdbc is vulnerable to a client-side denial of service during SCRAM-SHA-256 authentication. A maliciou… New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-42198 2026-05-1 21:51 2026-04-30 Show GitHub Exploit DB Packet Storm
352 7.8 HIGH
Local
freebsd freebsd An operator precedence bug in the kernel results in a scenario where a buffer overflow causes attacker-controlled data to overwrite adjacent execve(2) argument buffers. The bug may be exploitable by… New CWE-783
 Operator Precedence Logic Error
CVE-2026-7270 2026-05-1 21:47 2026-04-30 Show GitHub Exploit DB Packet Storm
353 7.5 HIGH
Network
freebsd freebsd Incorrect packet validation allowed unbounded recursion parsing SCTP chunk parameters. This can eventually result in a stack overflow and panic. Remote attackers can craft packets which cause affec… New CWE-674
CWE-791
 Uncontrolled Recursion
 Incomplete Filtering of Special Elements
CVE-2026-7164 2026-05-1 21:46 2026-04-30 Show GitHub Exploit DB Packet Storm
354 7.8 HIGH
Local
freebsd freebsd When exchanging data over a socket, libnv uses select(2) to wait for data to arrive. However, it does not verify whether the provided socket descriptor fits in select(2)'s file descriptor set size l… New CWE-121
Stack-based Buffer Overflow
CVE-2026-39457 2026-05-1 21:41 2026-04-30 Show GitHub Exploit DB Packet Storm
355 7.5 HIGH
Network
mozilla firefox
thunderbird
Information disclosure due to incorrect boundary conditions in the Audio/Video component. This vulnerability was fixed in Firefox 150.0.1, Firefox ESR 140.10.1, Firefox ESR 115.35.1, Thunderbird 150.… Update CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-7320 2026-05-1 21:32 2026-04-29 Show GitHub Exploit DB Packet Storm
356 7.3 HIGH
Network
mozilla firefox
thunderbird
Memory safety bugs present in Thunderbird ESR 140.10.0 and Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have… Update CWE-119
CWE-416
Incorrect Access of Indexable Resource ('Range Error') 
 Use After Free
CVE-2026-7322 2026-05-1 21:30 2026-04-29 Show GitHub Exploit DB Packet Storm
357 5.4 MEDIUM
Network
helpy.io helpy Helpy contains a stored cross-site scripting vulnerability in the knowledge base Doc rendering logic. An authenticated attacker with admin or agent editor privileges can persist arbitrary HTML or Jav… New CWE-79
Cross-site Scripting
CVE-2026-40230 2026-05-1 21:26 2026-04-30 Show GitHub Exploit DB Packet Storm
358 5.4 MEDIUM
Network
helpy.io helpy Helpy contains a stored cross-site scripting vulnerability in the post author display logic. Any registered user can persist arbitrary HTML in their account name field and cause it to be rendered une… New CWE-79
Cross-site Scripting
CVE-2026-40229 2026-05-1 21:25 2026-04-30 Show GitHub Exploit DB Packet Storm
359 4.7 MEDIUM
Network
- - Open redirect vulnerability exists in Multiple laser printers and MFPs which implement Ricoh Web Image Monitor. When accessing a specially crafted URL, the user may be redirected to an arbitrary webs… New CWE-601
Open Redirect
CVE-2026-41226 2026-05-1 17:16 2026-04-30 Show GitHub Exploit DB Packet Storm
360 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. New - CVE-2026-4178 2026-05-1 08:16 2026-05-1 Show GitHub Exploit DB Packet Storm