Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
192791 9.8 緊急
Network
Hangzhou Xiongmai Technology Co.,LTD. - XiongMai uc-httpd におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2017-7577 2017-05-10 14:57 2017-04-3 Show GitHub Exploit DB Packet Storm
192792 7.8 重要
Local
libming - libming の parser.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-7578 2017-05-10 14:29 2017-03-21 Show GitHub Exploit DB Packet Storm
192793 6.1 警告
Network
phpMyFAQ - phpMyFAQ におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-7579 2017-05-10 14:14 2017-04-2 Show GitHub Exploit DB Packet Storm
192794 6.1 警告
Network
ILIAS - ILIAS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-7583 2017-05-10 14:07 2017-04-5 Show GitHub Exploit DB Packet Storm
192795 7.5 重要
Network
BackBox.org - BackBox Linux におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2017-7397 2017-05-10 13:49 2017-04-7 Show GitHub Exploit DB Packet Storm
192796 7.5 重要
Network
LG project - Cistron-LG の lg.pl における IP アドレスを取得される脆弱性 CWE-284
不適切なアクセス制御
CVE-2014-3930 2017-05-10 12:38 2014-07-1 Show GitHub Exploit DB Packet Storm
192797 7.5 重要
Network
LG project - Cougar-LG のデフォルト設定における SSH 秘密鍵を取得される脆弱性 CWE-284
不適切なアクセス制御
CVE-2014-3929 2017-05-10 12:38 2014-06-2 Show GitHub Exploit DB Packet Storm
192798 9.8 緊急
Network
LG project - Cougar-LG における認証情報を取得される脆弱性 CWE-284
不適切なアクセス制御
CVE-2014-3928 2017-05-10 12:38 2014-06-2 Show GitHub Exploit DB Packet Storm
192799 2.4
Physics
Haxx - curl の tool_writeout.c の ourWriteOut 関数におけるプロセスメモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2017-7407 2017-05-10 12:31 2017-03-11 Show GitHub Exploit DB Packet Storm
192800 3.9
Physics
インテル - Intel NUC システムの BIOS におけるアクセス権を取得される脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-5686 2017-05-10 12:01 2017-04-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 1, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
181 4.4 MEDIUM
Local
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 1.0.0 to before version 4.14.4, a heap-based out-of-bounds WRITE occurs in GetAlertData, res… New CWE-124
CWE-191
Buffer Underflow
 Integer Underflow (Wrap or Wraparound)
CVE-2026-26204 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
182 6.5 MEDIUM
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.0.0 to before version 4.14.4, Wazuh's server API brute-force protection for POST /security… New CWE-307
CWE-362
CWE-367
mproper Restriction of Excessive Authentication Attempts
Race Condition
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-26206 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
183 6.5 MEDIUM
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.8.0 to before version 4.14.4, a stack-based buffer overflow exists in print_hex_string() i… New CWE-121
CWE-400
Stack-based Buffer Overflow
 Uncontrolled Resource Consumption
CVE-2026-28221 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
184 9.0 CRITICAL
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.4.0 to before version 4.14.4, a path traversal vulnerability in Wazuh's cluster synchroniz… New CWE-22
CWE-73
Path Traversal
 External Control of File Name or Path
CVE-2026-30893 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
185 6.5 MEDIUM
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.0.0 to before version 4.14.4, multiple heap-based out-of-bounds WRITE vulnerabilities exis… New CWE-124
CWE-191
Buffer Underflow
 Integer Underflow (Wrap or Wraparound)
CVE-2026-41499 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
186 9.8 CRITICAL
Network
- - Tenda W308R v2 V5.07.48 contains a cookie session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient session validation. Attackers can send… New CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25316 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
187 9.8 CRITICAL
Network
- - Tenda W3002R/A302/W309R wireless routers version V5.07.64_en contain a cookie session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient se… New CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25317 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
188 9.8 CRITICAL
Network
- - Tenda FH303/A300 firmware V5.07.68_EN contains a session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient cookie validation. Attackers ca… New CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25318 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
189 5.5 MEDIUM
Local
- - ICMPv6 PvD protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service New CWE-674
 Uncontrolled Recursion
CVE-2026-5299 2026-05-1 00:10 2026-04-30 Show GitHub Exploit DB Packet Storm
190 5.5 MEDIUM
Local
- - AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service New CWE-674
 Uncontrolled Recursion
CVE-2026-5401 2026-05-1 00:10 2026-04-30 Show GitHub Exploit DB Packet Storm