Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193991 8.8 重要
Network
Apache Software Foundation - Apache CXF Fediz におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-7662 2017-06-15 16:18 2017-05-16 Show GitHub Exploit DB Packet Storm
193992 8.8 重要
Network
Apache Software Foundation - Apache CXF Fediz の複数のプラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-7661 2017-06-15 16:18 2017-05-16 Show GitHub Exploit DB Packet Storm
193993 7.8 重要
Local
LibRaw - LibRaw におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-6887 2017-06-15 16:18 2017-03-5 Show GitHub Exploit DB Packet Storm
193994 9.8 緊急
Network
LibRaw - LibRaw におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-6886 2017-06-15 16:18 2017-03-5 Show GitHub Exploit DB Packet Storm
193995 5.5 警告
Local
GNU Project - GNU Binutils の readelf.c の print_symbol_for_build_attribute 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2017-9044 2017-06-15 15:44 2017-05-12 Show GitHub Exploit DB Packet Storm
193996 7.8 重要
Local
GNU Project - GNU Binutils の readelf.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2017-9043 2017-06-15 15:44 2017-04-21 Show GitHub Exploit DB Packet Storm
193997 6.1 警告
Network
Invision Power Services, Inc - Invision Power Services Community Suite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-8897 2017-06-15 15:42 2017-05-9 Show GitHub Exploit DB Packet Storm
193998 5.9 警告
Network
OnePlus - OnePlus One および X デバイスにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-8851 2017-06-15 15:03 2017-05-11 Show GitHub Exploit DB Packet Storm
193999 5.9 警告
Network
OnePlus - 複数の OnePlus One デバイスにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-8850 2017-06-15 15:03 2017-05-11 Show GitHub Exploit DB Packet Storm
194000 5.9 警告
Network
OnePlus - 複数の OnePlus One デバイスにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-5948 2017-06-15 15:03 2017-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1471 7.8 HIGH
Local
adobe substance_3d_designer Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation … CWE-787
 Out-of-bounds Write
CVE-2026-34683 2026-05-14 05:16 2026-05-13 Show GitHub Exploit DB Packet Storm
1472 5.9 MEDIUM
Network
vercel next.js Next.js is a React framework for building full-stack web applications. From 10.0.0 to before 15.5.16 and 16.2.5, when self-hosting Next.js with the default image loader, the Image Optimization API fe… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-44577 2026-05-14 05:00 2026-05-14 Show GitHub Exploit DB Packet Storm
1473 5.5 MEDIUM
Local
pengutronix barebox barebox version prior to 2026.04.0 contains a denial-of-service vulnerability in ext4 directory parsing in fs/ext4/ext4_common.c where the ext4fs_iterate_dir() function fails to validate that directo… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-34962 2026-05-14 04:58 2026-05-12 Show GitHub Exploit DB Packet Storm
1474 7.7 HIGH
Local
pengutronix barebox barebox prior to version 2026.04.0 contains out-of-bounds read vulnerabilities in ext4 extent parsing due to missing validation of the eh_entries field against buffer capacity in fs/ext4/ext4_common.… CWE-125
Out-of-bounds Read
CVE-2026-34961 2026-05-14 04:57 2026-05-12 Show GitHub Exploit DB Packet Storm
1475 7.8 HIGH
Local
pengutronix barebox barebox version prior to 2026.04.0 contains multiple memory-safety vulnerabilities in the EFI PE loader in efi/loader/pe.c where integer overflow in virtual image size computation using 32-bit arithm… CWE-190
 Integer Overflow or Wraparound
CVE-2026-34963 2026-05-14 04:44 2026-05-12 Show GitHub Exploit DB Packet Storm
1476 7.8 HIGH
Local
adobe after_effects After Effects versions 26.0, 25.6.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitat… CWE-121
Stack-based Buffer Overflow
CVE-2026-34690 2026-05-14 04:42 2026-05-13 Show GitHub Exploit DB Packet Storm
1477 7.8 HIGH
Local
adobe substance_3d_designer Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation … CWE-787
 Out-of-bounds Write
CVE-2026-34682 2026-05-14 04:40 2026-05-13 Show GitHub Exploit DB Packet Storm
1478 7.8 HIGH
Local
adobe substance_3d_designer Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation … CWE-787
 Out-of-bounds Write
CVE-2026-34681 2026-05-14 04:40 2026-05-13 Show GitHub Exploit DB Packet Storm
1479 6.3 MEDIUM
Local
adobe substance_3d_designer Substance3D - Designer versions 15.1.0 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrary file sy… CWE-22
Path Traversal
CVE-2026-34664 2026-05-14 04:40 2026-05-13 Show GitHub Exploit DB Packet Storm
1480 9.3 CRITICAL
Network
adobe connect_desktop_application Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. An … CWE-863
 Incorrect Authorization
CVE-2026-34660 2026-05-14 04:39 2026-05-13 Show GitHub Exploit DB Packet Storm