Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194561 5.5 警告
Local
Python Software Foundation - Pillow の j2k_encode_entry 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-3076 2017-05-26 16:11 2016-03-29 Show GitHub Exploit DB Packet Storm
194562 8.8 重要
Network
アップル - Apple Safari で使用される WebKit におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-3438 2017-05-26 16:11 2011-09-13 Show GitHub Exploit DB Packet Storm
194563 9.8 緊急
Network
アップル - Windows 用 Apple QuickTime におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-3428 2017-05-26 16:10 2011-09-13 Show GitHub Exploit DB Packet Storm
194564 5.9 警告
Network
Grandstream Networks - Android 用 Grandstream Wave アプリケーションの com.softphone.common パッケージにおける Grandstream プロビジョニングサーバを偽造される脆弱性 CWE-295
不正な証明書検証
CVE-2016-1519 2017-05-26 15:23 2016-03-18 Show GitHub Exploit DB Packet Storm
194565 8.1 重要
Network
Grandstream Networks - Android および Grandstream Video IP phone 用 Grandstream Wave アプリケーションにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-1518 2017-05-26 15:22 2016-03-17 Show GitHub Exploit DB Packet Storm
194566 7.8 重要
Local
マイクロソフト - 複数の Microsoft 製品におけるリモートコードを実行される脆弱性 CWE-19
データ処理
CVE-2017-0281 2017-05-26 14:54 2017-05-9 Show GitHub Exploit DB Packet Storm
194567 7.5 重要
Network
マイクロソフト - Microsoft .NET Framework における Enhanced Security Usage のタグ付けを回避される脆弱性 CWE-254
セキュリティ機能
CVE-2017-0248 2017-05-26 14:30 2017-05-9 Show GitHub Exploit DB Packet Storm
194568 7.8 重要
Local
マイクロソフト - 複数の Microsoft 製品におけるリモートでコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2017-0254 2017-05-26 14:26 2017-05-9 Show GitHub Exploit DB Packet Storm
194569 7 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバの Graphics コンポーネントにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-0246 2017-05-26 14:22 2017-05-9 Show GitHub Exploit DB Packet Storm
194570 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバにおける情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-0077 2017-05-26 14:02 2017-05-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1661 7.5 HIGH
Network
- - In Meari IoT Cloud alert image storage on Alibaba OSS (latest observed; storage service version not disclosed), motion snapshots are retrievable without authentication, signed URLs, or expiry enforce… CWE-862
 Missing Authorization
CVE-2026-33359 2026-05-14 00:36 2026-05-12 Show GitHub Exploit DB Packet Storm
1662 7.5 HIGH
Network
- - In Meari IoT SDK image handling (libmrplayer.so) as observed in CloudEdge 5.5.0 (build 220), Arenti 1.8.1 (build 220), and related white-label apps (<= 1.8.x), baby monitor ".jpgx3" files use reversi… CWE-326
Inadequate Encryption Strength
CVE-2026-33361 2026-05-14 00:36 2026-05-12 Show GitHub Exploit DB Packet Storm
1663 8.6 HIGH
Network
- - In Meari IoT SDK builds embedded in CloudEdge 5.5.0 (build 220), Arenti 1.8.1 (build 220), and white-label Android apps <= 1.8.x (latest observed), multiple security-critical secrets are hardcoded an… CWE-321
 Use of Hard-coded Cryptographic Key
CVE-2026-33362 2026-05-14 00:36 2026-05-12 Show GitHub Exploit DB Packet Storm
1664 8.4 HIGH
Network
- - A vulnerability has been identified in [Rancher's Extensions](https://ranchermanager.docs.rancher.com/integrations-in-rancher/rancher-extensions) where malicious code can be injected in Rancher throu… CWE-35
 Path Traversal: '.../...//'
CVE-2026-25705 2026-05-14 00:35 2026-05-13 Show GitHub Exploit DB Packet Storm
1665 9.9 CRITICAL
Network
- - Fleet's Helm deployer did not fully apply ServiceAccount impersonation in two code paths, allowing a tenant with git push access to a Fleet-monitored repository to read secrets from any namespace on … CWE-863
 Incorrect Authorization
CVE-2026-41050 2026-05-14 00:35 2026-05-13 Show GitHub Exploit DB Packet Storm
1666 - - - The new upstream added a privileged D-Bus helper called plasmaloginauthhelper, which suffers from multiple issues, e.g.aA compromised plasmalogin service account can chown() arbitrary files in the sy… CWE-250
 Execution with Unnecessary Privileges
CVE-2026-25710 2026-05-14 00:35 2026-05-13 Show GitHub Exploit DB Packet Storm
1667 - - - The newly introduced RecordUsage D-Bus method https://gitlab.freedesktop.org/pwithnall/malcontent/-/blob/0.14.0/libmalcontent-timer/child-timer-service.c in malcontent-timerd allows arbitrary users… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-44931 2026-05-14 00:35 2026-05-13 Show GitHub Exploit DB Packet Storm
1668 8.8 HIGH
Adjacent
- - A vulnerability in the web-based management interface of Access Points running AOS-10 and AOS-8 Instant could allow an unauthenticated remote attacker to execute arbitrary JavaScript code in a victim… CWE-79
Cross-site Scripting
CVE-2026-23819 2026-05-14 00:35 2026-05-13 Show GitHub Exploit DB Packet Storm
1669 7.2 HIGH
Network
- - A vulnerability in the command line interface of Access Points running AOS-10 and AOS-8 Instant could allow an authenticated remote attacker to execute system commands in a restricted shell environme… CWE-78
OS Command 
CVE-2026-23820 2026-05-14 00:35 2026-05-13 Show GitHub Exploit DB Packet Storm
1670 7.2 HIGH
Network
- - A vulnerability in the configuration processing logic of Access Points running AOS-10 could allow an authenticated remote attacker to execute system commands under certain pre-existing conditions. Su… CWE-78
OS Command 
CVE-2026-23821 2026-05-14 00:35 2026-05-13 Show GitHub Exploit DB Packet Storm