Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
195391 5.4 警告
Network
IBM - IBM Rational Team Concert におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6032 2017-03-3 15:04 2016-06-29 Show GitHub Exploit DB Packet Storm
195392 5.9 警告
Network
IBM - IBM Jazz for Service Management における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-5935 2017-03-3 14:41 2016-06-29 Show GitHub Exploit DB Packet Storm
195393 7.2 重要
Network
IBM - IBM General Parallel File System におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-6115 2017-03-3 14:31 2016-06-29 Show GitHub Exploit DB Packet Storm
195394 3.1
Network
IBM - IBM Forms Experience Builder におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2016-6001 2017-03-3 14:22 2016-06-29 Show GitHub Exploit DB Packet Storm
195395 3.7
Network
IBM - IBM Sterling Order Management における URL の Base64 としてエンコードされたセッション ID を送信される脆弱性 CWE-200
情報漏えい
CVE-2016-5953 2017-03-3 11:59 2016-11-24 Show GitHub Exploit DB Packet Storm
195396 6.1 警告
Network
IBM - IBM Social Rendering Templates for Digital Data Connector におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-8936 2017-03-3 11:36 2016-11-18 Show GitHub Exploit DB Packet Storm
195397 5.5 警告
Local
Google - Google Chrome の FFmpeg におけるヒープを破損される脆弱性 CWE-119
バッファエラー
CVE-2017-5024 2017-03-3 11:25 2017-01-25 Show GitHub Exploit DB Packet Storm
195398 4.3 警告
Network
Google - Google Chrome における境界外読み取りを実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-5021 2017-03-3 11:25 2017-01-25 Show GitHub Exploit DB Packet Storm
195399 6.1 警告
Network
Google - Google Chrome における特権ページにスクリプトまたは HTML を挿入される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-5018 2017-03-3 11:25 2017-01-25 Show GitHub Exploit DB Packet Storm
195400 4.3 警告
Network
Google - Google Chrome の OS を伴うインタラクションにおけるシステム上で画像のフラグメントを抜き出される脆弱性 CWE-200
情報漏えい
CVE-2017-5017 2017-03-3 11:25 2017-01-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
901 9.8 CRITICAL
Network
tenda i9_firmware A vulnerability was identified in Tenda i9 1.0.0.5(2204). This vulnerability affects the function R7WebsSecurityHandlerfunction of the component HTTP Handler. The manipulation leads to path traversal… CWE-22
Path Traversal
CVE-2026-7036 2026-04-30 23:10 2026-04-26 Show GitHub Exploit DB Packet Storm
902 8.8 HIGH
Network
tenda hg10_firmware A flaw has been found in Tenda HG10 HG7_HG9_HG10re_300001138_en_xpon. This issue affects the function formRoute of the file /boaform/formRouting of the component Boa Service. This manipulation of the… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-6988 2026-04-30 23:10 2026-04-26 Show GitHub Exploit DB Packet Storm
903 8.8 HIGH
Network
tenda f453_firmware A vulnerability has been found in Tenda F453 up to 1.0.0.3. Impacted is the function TendaTelnet of the file /goform/telnet of the component Telnet Service. Such manipulation leads to command injecti… CWE-74
CWE-77
Injection
Command Injection
CVE-2026-6989 2026-04-30 23:10 2026-04-26 Show GitHub Exploit DB Packet Storm
904 7.2 HIGH
Network
linksys mr9600_firmware A vulnerability was identified in Linksys MR9600 2.0.6.206937. This affects the function BTRequestGetSmartConnectStatus of the file /etc/init.d/run_central2.sh of the component JNAP Action Handler. T… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-6992 2026-04-30 23:09 2026-04-26 Show GitHub Exploit DB Packet Storm
905 7.3 HIGH
Network
dlink dir-822_firmware A vulnerability was determined in D-Link DIR-822 A_101. The impacted element is the function system of the file /udhcpcd/dhcpd.c of the component udhcpd DHCP Service. This manipulation of the argumen… CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7067 2026-04-30 23:09 2026-04-27 Show GitHub Exploit DB Packet Storm
906 8.8 HIGH
Adjacent
dlink dir-825_firmware A vulnerability was identified in D-Link DIR-825 3.00b32. This affects the function NMBD_process of the file sserver.c of the component nmbd. Such manipulation leads to buffer overflow. The attack ca… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7068 2026-04-30 23:08 2026-04-27 Show GitHub Exploit DB Packet Storm
907 8.0 HIGH
Adjacent
dlink dir-825_firmware A security flaw has been discovered in D-Link DIR-825 up to 3.00b32. This impacts the function AddPortMapping of the file upnpsoap.c of the component miniupnpd. Performing a manipulation of the argum… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7069 2026-04-30 23:08 2026-04-27 Show GitHub Exploit DB Packet Storm
908 7.8 HIGH
Local
openclaw openclaw OpenClaw before 2026.4.8 contains a privilege escalation vulnerability allowing previously paired nodes to reconnect with exec-capable commands without operator.admin scope requirement. Attackers can… CWE-863
 Incorrect Authorization
CVE-2026-42432 2026-04-30 23:06 2026-04-29 Show GitHub Exploit DB Packet Storm
909 8.1 HIGH
Network
openclaw openclaw OpenClaw before 2026.4.8 contains a security bypass vulnerability in node.invoke(browser.proxy) that allows mutation of persistent browser profiles. Attackers can exploit this path to circumvent the … CWE-863
 Incorrect Authorization
CVE-2026-42431 2026-04-30 23:06 2026-04-29 Show GitHub Exploit DB Packet Storm
910 7.1 HIGH
Network
openclaw openclaw OpenClaw before 2026.4.8 contains a privilege escalation vulnerability in the gateway plugin HTTP authentication mechanism that widens identity-bearing operator.read requests into runtime operator.wr… CWE-863
 Incorrect Authorization
CVE-2026-42429 2026-04-30 23:06 2026-04-29 Show GitHub Exploit DB Packet Storm