Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
195361 7 重要
Local
マカフィー - Intel Security McAfee Security Scan+ における悪意のあるファイルを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8991 2017-04-25 17:30 2015-12-3 Show GitHub Exploit DB Packet Storm
195362 5.9 警告
Network
マカフィー - McAfee の McAfee Application Control におけるバイナリを認証なしで実行される脆弱性 CWE-284
不適切なアクセス制御
CVE-2014-9920 2017-04-25 17:30 2014-07-2 Show GitHub Exploit DB Packet Storm
195363 7.5 重要
Network
マカフィー - McAfee SaaS Control Console プラットフォームの Web アプリケーションにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-7462 2017-04-25 17:30 2017-03-14 Show GitHub Exploit DB Packet Storm
195364 7.8 重要
Local
pcre.org - PCRE の libpcre1 の pcre_get.c の pcre32_copy_substring 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-7246 2017-04-25 16:56 2017-03-23 Show GitHub Exploit DB Packet Storm
195365 7.8 重要
Local
pcre.org - PCRE の libpcre1 の pcre_get.c の pcre32_copy_substring 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-7245 2017-04-25 16:56 2017-03-23 Show GitHub Exploit DB Packet Storm
195366 5.5 警告
Local
pcre.org - PCRE の libpcre1 の pcre_xclass.c における _pcre32_xclass 関数のサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2017-7244 2017-04-25 16:56 2017-03-23 Show GitHub Exploit DB Packet Storm
195367 8.8 重要
Network
EyesOfNetwork - EyesOfNetwork における任意のコードを実行される脆弱性 CWE-284
CWE-94
CVE-2017-6087 2017-04-25 16:53 2017-03-23 Show GitHub Exploit DB Packet Storm
195368 9.8 緊急
Network
SAP - SAP GUI における セキュリティポリシー制限を回避される脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-6950 2017-04-25 16:51 2017-03-14 Show GitHub Exploit DB Packet Storm
195369 9.8 緊急
Network
USB Pratirodh Project - USB Pratirodh における XML External Entity (XXE) 攻撃を実行される脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2017-6895 2017-04-25 16:51 2017-03-15 Show GitHub Exploit DB Packet Storm
195370 5.4 警告
Network
Alcatel-Lucent - Alcatel-Lucent Motive Home Device Manager の Management Console におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-8687 2017-04-25 16:50 2015-12-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1821 7.5 HIGH
Network
- - XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap memory when parsing XML node names containing truncated UTF-8 byte sequences. A node name ending in the middle of a multi byte UT… CWE-125
Out-of-bounds Read
CVE-2026-8177 2026-05-13 01:48 2026-05-11 Show GitHub Exploit DB Packet Storm
1822 6.5 MEDIUM
Network
- - WebDyne::Session versions through 2.075 for Perl generates the session id insecurely. The session handler generates the session id from an MD5 hash seeded with a call to the built-in rand() function… CWE-338
CWE-340
 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
 Generation of Predictable Numbers or Identifiers
CVE-2026-5084 2026-05-13 01:48 2026-05-11 Show GitHub Exploit DB Packet Storm
1823 6.5 MEDIUM
Network
- - HTTP::Tiny versions before 0.093 for Perl do not validate CRLF in HTTP request lines or control field header values. The unvalidated inputs are the method and URI in the request line, the URL host t… CWE-113
HTTP Response Splitting
CVE-2026-7010 2026-05-13 01:48 2026-05-12 Show GitHub Exploit DB Packet Storm
1824 9.8 CRITICAL
Network
- - Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Akilli Commerce Software Technologies Ltd. Co. E-Commerce Website allows SQL Injection. This iss… CWE-89
SQL Injection
CVE-2025-6577 2026-05-13 01:47 2026-05-12 Show GitHub Exploit DB Packet Storm
1825 8.8 HIGH
Network
- - Authorization bypass through User-Controlled key vulnerability in ABIS Technology Ltd. Co. BAPSİS allows Exploitation of Trusted Identifiers. This issue affects BAPSİS: before v.202604152042. CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-6001 2026-05-13 01:47 2026-05-12 Show GitHub Exploit DB Packet Storm
1826 8.8 HIGH
Network
- - Incorrect Authorization vulnerability in E-Kalite Software Hardware Engineering Design and Internet Services Industry and Trade Ltd. Co. Turboard FOR-S allows Privilege Escalation. This issue affect… CWE-863
 Incorrect Authorization
CVE-2026-2465 2026-05-13 01:47 2026-05-12 Show GitHub Exploit DB Packet Storm
1827 - - - ZEBRA is a Zcash node written entirely in Rust. Prior to version 4.4.0, a composite denial-of-service vulnerability in Zebra's block discovery pipeline allows an unauthenticated remote attacker to pe… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-44499 2026-05-13 01:45 2026-05-9 Show GitHub Exploit DB Packet Storm
1828 5.3 MEDIUM
Network
- - novaGallery is a php image gallery. Prior to version 2.1.1, a path traversal vulnerability has been identified in novaGallery. This allows unauthenticated users to read image files outside the intend… CWE-22
Path Traversal
CVE-2026-42028 2026-05-13 01:45 2026-05-9 Show GitHub Exploit DB Packet Storm
1829 7.5 HIGH
Network
- - Crypt::PasswdMD5 versions through 1.42 for Perl generates insecure random values for salts. The built-in rand function is predictable, and unsuitable for cryptography. CWE-338
 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2026-6659 2026-05-13 01:45 2026-05-9 Show GitHub Exploit DB Packet Storm
1830 - - - Emlog is an open source website building system. Prior to version 2.6.11, insecure plugin upload functionality allows attackers to upload and execute arbitrary PHP code, leading to complete server co… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-41517 2026-05-13 01:45 2026-05-9 Show GitHub Exploit DB Packet Storm