Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194381 6.5 警告
Network
w3m project
openSUSE project
- w3m の parsetagx.c におけるアプリケーションのクラッシュを引き起こされる脆弱性 CWE-20
不適切な入力確認
CVE-2016-9436 2017-01-30 16:57 2016-08-20 Show GitHub Exploit DB Packet Storm
194382 6.5 警告
Network
w3m project
openSUSE project
- w3m の file.c の HTMLtagproc1 関数におけるアプリケーションのクラッシュを引き起こされる脆弱性 CWE-20
不適切な入力確認
CVE-2016-9435 2017-01-30 16:57 2016-08-20 Show GitHub Exploit DB Packet Storm
194383 7 重要
Local
Lenovo - Lenovo XClarity Administrator における権限を昇格される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-8221 2017-01-30 16:48 2016-10-13 Show GitHub Exploit DB Packet Storm
194384 6.1 警告
Network
Exponent CMS project - Exponent CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-8684 2017-01-30 16:46 2015-12-25 Show GitHub Exploit DB Packet Storm
194385 6.1 警告
Network
Exponent CMS project - Exponent CMS の Reset Your Password モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-8667 2017-01-30 16:46 2015-12-24 Show GitHub Exploit DB Packet Storm
194386 7.8 重要
Local
サムスン - Samsung Note デバイスの Telecom アプリケーションの SmartCall Activity コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-6527 2017-01-30 16:45 2016-05-11 Show GitHub Exploit DB Packet Storm
194387 7.8 重要
Local
サムスン - Samsung Note デバイスの Telecom アプリケーションの SpamCall Activity コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-6526 2017-01-30 16:45 2016-05-11 Show GitHub Exploit DB Packet Storm
194388 5.5 警告
Local
ImageMagick - ImageMagick の magick/attribute.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-416
解放済みメモリの使用
CVE-2016-7906 2017-01-30 15:58 2016-10-2 Show GitHub Exploit DB Packet Storm
194389 5.5 警告
Local
ImageMagick - ImageMagick の MagickCore/profile.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-7799 2017-01-30 15:58 2016-10-2 Show GitHub Exploit DB Packet Storm
194390 6.5 警告
Network
ImageMagick - ImageMagick の SGI コーダにおけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-7101 2017-01-30 15:58 2016-08-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
991 5.9 MEDIUM
Network
- - A zone transition from NSEC to NSEC3 might trigger an internal inconsistency and cause a denial of service. New CWE-353
 Missing Support for Integrity Check
CVE-2026-33261 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
992 5.9 MEDIUM
Network
- - An attacker can send replies that result in a null pointer dereference, caused by a missing consistency check and leading to a denial of service. Cookies are disabled by default. New CWE-476
 NULL Pointer Dereference
CVE-2026-33262 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
993 4.4 MEDIUM
Network
- - An RPZ sent by a malicious authoritative server can result in a null pointer dereference, caused by a missing consistency check and leading to a denial of service. New CWE-476
 NULL Pointer Dereference
CVE-2026-33600 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
994 4.4 MEDIUM
Network
- - If you use the zoneToCache function with a malicious authoritative server, an attacker can send a zone that result in a null pointer dereference, caused by a missing consistency check and leading to … New CWE-476
 NULL Pointer Dereference
CVE-2026-33601 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
995 5.4 MEDIUM
Network
- - A flaw was found in Red Hat Quay. When Red Hat Quay requests password re-verification for sensitive operations, such as token generation or robot account creation, the re-authentication prompt can be… New CWE-613
 Insufficient Session Expiration
CVE-2026-6848 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
996 7.1 HIGH
Local
- - A flaw was found in InstructLab. A local attacker could exploit a path traversal vulnerability in the chat session handler by manipulating the `logs_dir` parameter. This allows the attacker to create… New CWE-22
Path Traversal
CVE-2026-6855 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
997 7.5 HIGH
Network
- - A flaw was found in camel-infinispan. This vulnerability involves unsafe deserialization in the ProtoStream remote aggregation repository. A remote attacker with low privileges could exploit this by … New CWE-502
 Deserialization of Untrusted Data
CVE-2026-6857 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
998 - - - Incorrect Default Permissions in pcvisit service binary on Windows allows a low-privileged local attacker to escalate their privileges by overwriting the service binary with arbitrary contents. This … New CWE-276
Incorrect Default Permissions 
CVE-2026-0539 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
999 6.5 MEDIUM
Network
- - Insufficient validation of Chrome extension identifiers in Raindrop.io Bookmark Manager Web App 5.6.76.0 allows attackers to obtain sensitive user data via a crafted request. New CWE-20
CWE-284
 Improper Input Validation 
Improper Access Control
CVE-2026-31192 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
1000 5.3 MEDIUM
Network
- - An attacker can create a large number of concurrent DoQ or DoH3 connections, causing unlimited memory allocation in DNSdist and leading to a denial of service. DOQ and DoH3 are disabled by default. New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-33254 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm