Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193251 8.8 重要
Network
Foscam - Foscam C1 Indoor HD カメラの Web 管理インターフェースにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2017-2844 2017-07-19 15:41 2017-06-19 Show GitHub Exploit DB Packet Storm
193252 7.5 重要
Network
Eclipse Foundation
日立
Fedora Project
- Eclipse Jetty の例外処理コードにおけるプロセスメモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-2080 2017-07-19 14:46 2015-02-24 Show GitHub Exploit DB Packet Storm
193253 7.5 重要
Network
Boa - BOA Webserver におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2017-9833 2017-07-19 14:44 2017-06-20 Show GitHub Exploit DB Packet Storm
193254 6.1 警告
Network
Sitecore - Sitecore.NET におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-9356 2017-07-19 14:44 2017-06-21 Show GitHub Exploit DB Packet Storm
193255 7.5 重要
Network
シスコシステムズ - Cisco Virtualized Packet Core-Distributed Instance ソフトウェアの ingress UDP パケット処理機能におけるリソース管理に関する脆弱性 CWE-399
リソース管理の問題
CVE-2017-6678 2017-07-19 12:39 2017-06-21 Show GitHub Exploit DB Packet Storm
193256 7.8 重要
Local
シスコシステムズ - Cisco WebEx Network Recording Player for Advanced Recording Format Files におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-6669 2017-07-19 12:39 2017-06-21 Show GitHub Exploit DB Packet Storm
193257 8 重要
Network
シスコシステムズ - Cisco PI および EPNM の Web ベースのユーザインターフェースにおける XML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2017-6662 2017-07-19 12:39 2017-06-21 Show GitHub Exploit DB Packet Storm
193258 4.9 警告
Network
シスコシステムズ - Cisco ASR 5000 シリーズの Aggregated Services Router 上で稼動する StarOS のファイルチェック操作における任意のファイルを上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-6690 2017-07-19 12:31 2017-06-7 Show GitHub Exploit DB Packet Storm
193259 5.9 警告
Network
シスコシステムズ - Cisco IP Phone 8800 デバイスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2017-6656 2017-07-19 12:31 2017-06-7 Show GitHub Exploit DB Packet Storm
193260 6.5 警告
Adjacent
シスコシステムズ - Cisco NX-OS ソフトウェアの FCoE プロトコルの実装におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-6655 2017-07-19 12:31 2017-06-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2601 9.8 CRITICAL
Network
php php In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the SOAP extension's object deduplication mechanism stores pointers to PHP objects in a global m… CWE-416
 Use After Free
CVE-2026-6722 2026-05-13 02:48 2026-05-10 Show GitHub Exploit DB Packet Storm
2602 6.1 MEDIUM
Network
php php In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, 8.5.* before 8.5.6, due to improper sanitation of user data, it allows an attacker to compose an URL, which will cause t… CWE-79
Cross-site Scripting
CVE-2026-6735 2026-05-13 02:43 2026-05-10 Show GitHub Exploit DB Packet Storm
2603 7.5 HIGH
Network
php php In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, some functions, including urldecode(), pass signed char to ctype functions (like isxdigit()). On… CWE-125
Out-of-bounds Read
CVE-2026-7258 2026-05-13 02:41 2026-05-10 Show GitHub Exploit DB Packet Storm
2604 6.5 MEDIUM
Network
php php In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, a mismatch between encoding lists in Oniguruma and mbfl leads to  a NULL pointer dereference, re… CWE-476
 NULL Pointer Dereference
CVE-2026-7259 2026-05-13 02:40 2026-05-10 Show GitHub Exploit DB Packet Storm
2605 9.8 CRITICAL
Network
php php In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when SoapServer is configured with SOAP_PERSISTENCE_SESSION, the handler object is persisted acr… CWE-416
 Use After Free
CVE-2026-7261 2026-05-13 02:40 2026-05-10 Show GitHub Exploit DB Packet Storm
2606 7.5 HIGH
Network
php php In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when a SOAP server has a typemap configured, the decoding process contains a mistake which check… CWE-476
 NULL Pointer Dereference
CVE-2026-7262 2026-05-13 02:39 2026-05-10 Show GitHub Exploit DB Packet Storm
2607 7.5 HIGH
Network
php php In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the metaphone() function in ext/standard/metaphone.c uses a signed int variable to track the cur… CWE-125
CWE-190
Out-of-bounds Read
 Integer Overflow or Wraparound
CVE-2026-7568 2026-05-13 02:38 2026-05-10 Show GitHub Exploit DB Packet Storm
2608 7.5 HIGH
Network
open5gs open5gs A vulnerability was identified in Open5GS up to 2.7.7. This affects the function pcf_npcf_smpolicycontrol_handle_delete of the file src/pcf/sm-sm.c of the component delete Endpoint. The manipulation … CWE-404
 Improper Resource Shutdown or Release
CVE-2026-8225 2026-05-13 02:38 2026-05-10 Show GitHub Exploit DB Packet Storm
2609 7.5 HIGH
Network
open5gs open5gs A security flaw has been discovered in Open5GS up to 2.7.7. This vulnerability affects the function ogs_pcc_rule_install_flow_from_media in the library /lib/proto/types.c. The manipulation results in… CWE-404
 Improper Resource Shutdown or Release
CVE-2026-8226 2026-05-13 02:38 2026-05-10 Show GitHub Exploit DB Packet Storm
2610 8.8 HIGH
Network
wavlink wl-nu516u1_firmware A vulnerability was detected in Wavlink NU516U1 240425. The affected element is the function WifiBasic of the file /cgi-bin/wireless.cgi. Performing a manipulation of the argument AuthMethod/EncrypTy… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-8229 2026-05-13 02:37 2026-05-10 Show GitHub Exploit DB Packet Storm