Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
195261 7 重要
Local
S-nail project - S-nail の setuid root helper バイナリにおけるディレクトリトラバーサルの脆弱性 CWE-22
CWE-362
CVE-2017-5899 2017-04-27 18:20 2017-01-27 Show GitHub Exploit DB Packet Storm
195262 7.8 重要
Local
Debian
Canonical
Apache Software Foundation
- Debian および Ubuntu の tomcat パッケージにおける root 権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-9775 2017-04-27 18:16 2016-12-18 Show GitHub Exploit DB Packet Storm
195263 7.8 重要
Local
Debian
Canonical
Apache Software Foundation
- Debian および Ubuntu の tomcat パッケージにおける重要な情報を取得される脆弱性 CWE-59
リンク解釈の問題
CVE-2016-9774 2017-04-27 18:16 2016-12-18 Show GitHub Exploit DB Packet Storm
195264 9.8 緊急
Network
Irssi - Irssi の netjoin 処理におけるサービス運用妨害 (DoS) の脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-7191 2017-04-27 17:04 2017-03-11 Show GitHub Exploit DB Packet Storm
195265 7.5 重要
Network
OpenBSD - OpenBSD の httpd におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2017-5850 2017-04-27 16:55 2017-01-31 Show GitHub Exploit DB Packet Storm
195266 5.4 警告
Network
NetComm Wireless Limited. - NetComm NB16WV-02 ルータのファームウェアにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-5900 2017-04-27 16:50 2017-03-27 Show GitHub Exploit DB Packet Storm
195267 7.8 重要
Local
KDE project
Fedora Project
- Ark における任意のコードを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2017-5330 2017-04-27 16:46 2017-01-6 Show GitHub Exploit DB Packet Storm
195268 7.8 重要
Local
exFAT project - exfat-utils の exfatfsck の verify_vbr_checksum 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-8026 2017-04-27 16:46 2015-09-9 Show GitHub Exploit DB Packet Storm
195269 8.1 重要
Network
Broadcom - Broadcom Wi-Fi HardMAC SoC チップのファームウェアにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-6957 2017-04-27 16:41 2017-03-23 Show GitHub Exploit DB Packet Storm
195270 7.8 重要
Local
GNU Project - Bash のパスのオートコンプリート機能における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2017-5932 2017-04-27 16:38 2017-01-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1841 5.3 MEDIUM
Adjacent
- - Some EZVIZ products utilize older versions of cloud feature modules with legacy API interfaces, which pose a data transmission risk. Attackers can exploit this by eavesdropping on network requests to… - CVE-2026-32683 2026-05-13 01:42 2026-05-9 Show GitHub Exploit DB Packet Storm
1842 7.2 HIGH
Network
- - Some Hikvision switch products (discontinued since December 2023) are vulnerable to authenticated remote command execution due to insufficient input validation. Attackers with valid credentials can e… CWE-78
OS Command 
CVE-2026-3828 2026-05-13 01:42 2026-05-9 Show GitHub Exploit DB Packet Storm
1843 - - - FastGPT is an AI Agent building platform. In versions 4.14.13 and prior, the code-sandbox component suffers from insufficient resource isolation and uncontrolled resource consumption. The service rel… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-42343 2026-05-13 01:41 2026-05-9 Show GitHub Exploit DB Packet Storm
1844 7.5 HIGH
Network
- - pygeoapi is a Python server implementation of the OGC API suite of standards. From version 0.23.0 to before version 0.23.3, a raw string path concatenation vulnerability in pygeoapi's STAC FileSystem… CWE-22
Path Traversal
CVE-2026-42351 2026-05-13 01:41 2026-05-9 Show GitHub Exploit DB Packet Storm
1845 8.6 HIGH
Network
- - pygeoapi is a Python server implementation of the OGC API suite of standards. From version 0.23.0 to before version 0.23.3, OGC API process execution requests can use the subscriber object to reques… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-42352 2026-05-13 01:41 2026-05-9 Show GitHub Exploit DB Packet Storm
1846 8.1 HIGH
Network
- - Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Prior to version 2.1.0, /users/login issues a temporary JWT (temp_token) for TOTP-enabled… CWE-304
 Missing Critical Step in Authentication
CVE-2026-42452 2026-05-13 01:40 2026-05-9 Show GitHub Exploit DB Packet Storm
1847 - - - Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Prior to version 2.1.0, the extractArchive and compressFiles endpoints in file-manager.ts… CWE-77
Command Injection
CVE-2026-42453 2026-05-13 01:40 2026-05-9 Show GitHub Exploit DB Packet Storm
1848 9.9 CRITICAL
Network
- - Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Prior to version 2.1.0, all Docker container management endpoints in Termix interpolate t… CWE-78
OS Command 
CVE-2026-42454 2026-05-13 01:40 2026-05-9 Show GitHub Exploit DB Packet Storm
1849 9.8 CRITICAL
Network
- - FastGPT is an AI Agent building platform. From version 4.14.10 to before version 4.14.13, the agent-sandbox component of FastGPT is vulnerable to unauthenticated Remote Code Execution (RCE). The star… CWE-306
Missing Authentication for Critical Function
CVE-2026-42302 2026-05-13 01:40 2026-05-9 Show GitHub Exploit DB Packet Storm
1850 6.3 MEDIUM
Network
- - FastGPT is an AI Agent building platform. In versions 4.14.11 and prior, FastGPT's isInternalAddress() function in packages/service/common/system/utils.ts is vulnerable to DNS rebinding (TOCTOU — Tim… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-42344 2026-05-13 01:40 2026-05-9 Show GitHub Exploit DB Packet Storm