Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193531 9.8 緊急
Network
Apache Software Foundation - Apache TomEE の EjbObjectInputStream クラスにおける任意のコードを実行される脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2016-0779 2017-05-16 16:47 2016-03-16 Show GitHub Exploit DB Packet Storm
193532 6.1 警告
Network
フォーティネット - FortiMail における不特定のクロスサイトスクリプティングングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-3125 2017-05-16 16:42 2017-04-4 Show GitHub Exploit DB Packet Storm
193533 8.1 重要
Network
Foscam - Foscam ネットワークデバイスにおける暗号保護メカニズムを破られる脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2017-7648 2017-05-16 16:40 2017-04-9 Show GitHub Exploit DB Packet Storm
193534 9.8 緊急
Network
Fiyo CMS - Fiyo CMS における webshell をアップロードされる脆弱性 CWE-94
コード・インジェクション
CVE-2017-7625 2017-05-16 16:30 2017-04-11 Show GitHub Exploit DB Packet Storm
193535 8.8 重要
Network
Wuhan Deepin Technology Co., Ltd - DDE のデーモンプロセスである dde-daemon における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-7622 2017-05-16 16:30 2017-04-11 Show GitHub Exploit DB Packet Storm
193536 7.5 重要
Network
libdwarf project - Libdwarf の dwarf_macro5.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-5041 2017-05-16 16:30 2016-05-4 Show GitHub Exploit DB Packet Storm
193537 4.3 警告
Physics
kernel.org
IBM
レッドハット
- util-linux の libblkid ライブラリの partitions/dos.c の parse_dos_extended 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-5011 2017-05-16 16:08 2016-07-7 Show GitHub Exploit DB Packet Storm
193538 6.5 警告
Network
Kony, Inc. - Kony Enterprise Mobile Management における平文で秘密鍵を公開される脆弱性 CWE-200
情報漏えい
CVE-2017-5672 2017-05-16 16:08 2017-03-20 Show GitHub Exploit DB Packet Storm
193539 6.7 警告
Local
Unisys - Unisys s-Par のゲストサービスにおける権限を取得される脆弱性 CWE-428
引用されない検索パスまたは要素
CVE-2017-5873 2017-05-16 16:07 2017-02-2 Show GitHub Exploit DB Packet Storm
193540 9.8 緊急
Network
OpenBSD - OpenSSH のクライアントにおけるフォールバックを誘発される脆弱性 CWE-254
セキュリティ機能
CVE-2016-1908 2017-05-16 16:07 2016-01-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
951 7.5 HIGH
Network
- - Boundary Community Edition and Boundary Enterprise (“Boundary”) workers are vulnerable to a denial-of-service condition during node enrollment TLS handshakes. An attacker with network access to the w… New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-7776 2026-05-6 05:24 2026-05-5 Show GitHub Exploit DB Packet Storm
952 - - - Masa CMS is an open source content management system. In versions 7.5.2 and earlier, a SQL injection vulnerability exists in the beanFeed.cfc component within the getQuery function's processing of th… New CWE-89
SQL Injection
CVE-2026-40329 2026-05-6 05:24 2026-05-6 Show GitHub Exploit DB Packet Storm
953 - - - Masa CMS is an open source content management system. In versions 7.2.0 through 7.2.9, 7.3.0 through 7.3.14, 7.4.0 through 7.4.9, and 7.5.0 through 7.5.2, a SQL injection vulnerability exists in the … New CWE-89
SQL Injection
CVE-2026-40330 2026-05-6 05:24 2026-05-6 Show GitHub Exploit DB Packet Storm
954 - - - Masa CMS is an open source content management system. In versions 7.2.0 through 7.2.9, 7.3.0 through 7.3.14, 7.4.0 through 7.4.9, and 7.5.0 through 7.5.2, the unauthenticated JSON API accepts an altT… New CWE-89
SQL Injection
CVE-2026-40331 2026-05-6 05:24 2026-05-6 Show GitHub Exploit DB Packet Storm
955 4.6 MEDIUM
Network
- - PPTAgent is an agentic framework for reflective PowerPoint generation. Prior to commit 418491a, PPTAgent is vulnerable to arbitrary file write and directory creation via markdown_table_to_image. This… Update CWE-22
Path Traversal
CVE-2026-42078 2026-05-6 05:19 2026-05-5 Show GitHub Exploit DB Packet Storm
956 8.6 HIGH
Local
- - PPTAgent is an agentic framework for reflective PowerPoint generation. Prior to commit 418491a, PPTAgent is vulnerable to arbitrary code execution via Python eval() of LLM-generated code with builtin… Update CWE-95
Eval Injection
CVE-2026-42079 2026-05-6 05:19 2026-05-5 Show GitHub Exploit DB Packet Storm
957 4.6 MEDIUM
Network
- - PPTAgent is an agentic framework for reflective PowerPoint generation. Prior to commit 418491a, there is an arbitrary file write vulnerability via `save_generated_slides`. This issue has been patched… Update CWE-22
Path Traversal
CVE-2026-42080 2026-05-6 05:19 2026-05-5 Show GitHub Exploit DB Packet Storm
958 6.3 MEDIUM
Network
- - A security flaw has been discovered in puchunjie doc-tools-mcp 1.0.18. This affects the function create_document/open_document of the file src/mcp-server.ts of the component MCP Interface. The manipu… Update CWE-22
Path Traversal
CVE-2026-7738 2026-05-6 05:16 2026-05-4 Show GitHub Exploit DB Packet Storm
959 6.3 MEDIUM
Network
- - A vulnerability was detected in code-projects BloodBank Managing System 1.0. The impacted element is an unknown function of the file request_blood.php. The manipulation results in unrestricted upload… Update CWE-284
CWE-434
Improper Access Control
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-7732 2026-05-6 05:16 2026-05-4 Show GitHub Exploit DB Packet Storm
960 6.3 MEDIUM
Network
- - A vulnerability was found in PrefectHQ prefect up to 3.6.25.dev6. Affected by this issue is some unknown functionality of the file src/prefect/runner/storage.py of the component GitRepository Pull Ha… Update CWE-74
CWE-88
Injection
Argument Injection
CVE-2026-7725 2026-05-6 05:16 2026-05-4 Show GitHub Exploit DB Packet Storm