Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
195781 10 緊急
Network
Carlo Gavazzi - Carlo Gavazzi VMU-C EM および VMU-C PV ファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-5145 2017-03-14 18:57 2017-01-12 Show GitHub Exploit DB Packet Storm
195782 9.8 緊急
Network
Carlo Gavazzi - Carlo Gavazzi VMU-C EM および VMU-C PV ファームウェアにおける認証なしでアプリケーション機能にアクセスされる脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-5144 2017-03-14 18:57 2017-01-12 Show GitHub Exploit DB Packet Storm
195783 5.5 警告
Local
wolfSSL Inc. - wolfSSL の fp_mul_comba 関数における RSA 鍵情報を抽出される脆弱性 CWE-200
情報漏えい
CVE-2017-6076 2017-03-14 18:05 2017-02-10 Show GitHub Exploit DB Packet Storm
195784 7.5 重要
Network
Hanwha Techwin Co, ltd. - Hanwha Techwin Smart Security Manager の Redis および Apache Felix Gogo サーバにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-5169 2017-03-14 18:00 2017-02-9 Show GitHub Exploit DB Packet Storm
195785 7.5 重要
Network
Hanwha Techwin Co, ltd. - Hanwha Techwin Smart Security Manager の ActiveMQ Broker サービスにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2017-5168 2017-03-14 18:00 2017-02-9 Show GitHub Exploit DB Packet Storm
195786 7.8 重要
Local
tnef project - tnef の file_add_mapi_attrs() 関数における不正な読み書き操作を引き起こされる脆弱性 CWE-125
CWE-787
CVE-2017-6310 2017-03-14 17:56 2017-02-23 Show GitHub Exploit DB Packet Storm
195787 7.8 重要
Local
tnef project - tnef の parse_file() 関数における不正な読み書き操作を引き起こされる脆弱性 CWE-125
CWE-787
CVE-2017-6309 2017-03-14 17:56 2017-02-23 Show GitHub Exploit DB Packet Storm
195788 7.8 重要
Local
tnef project - tnef の関数における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2017-6308 2017-03-14 17:56 2017-02-23 Show GitHub Exploit DB Packet Storm
195789 7.8 重要
Local
tnef project - tnef の src/mapi_attr.c:mapi_attr_read() における境界外書き込みの脆弱性 CWE-125
CWE-787
CVE-2017-6307 2017-03-14 17:56 2017-02-23 Show GitHub Exploit DB Packet Storm
195790 7.8 重要
Local
ytnef project - ytnef の settings.c の SanitizeFilename 関数におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2017-6306 2017-03-14 17:37 2017-02-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1251 9.1 CRITICAL
Network
apache wicket Missing invocation of Servlet http web request method changeSessionId after session binding can be exploited for a session fixation attack in Apache Wicket. This issue affects Apache Wicket: from 8.… CWE-384
 Session Fixation
CVE-2026-40010 2026-05-7 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
1252 - - - Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, NamedPipeServer::OpenHandler copies the server field from NAMED_PIPE_OPEN_REQ into a fix… CWE-121
CWE-170
Stack-based Buffer Overflow
 Improper Null Termination
CVE-2026-34464 2026-05-7 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
1253 - - - Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, several ProcessServer handlers (KillAllHandler, SuspendAllHandler, and RunSandboxedHandl… CWE-121
CWE-170
Stack-based Buffer Overflow
 Improper Null Termination
CVE-2026-34462 2026-05-7 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
1254 - - - Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, the SbieIniServer RunSbieCtrl handler contains a stack buffer overflow. The MSGID_SBIE_I… CWE-121
Stack-based Buffer Overflow
CVE-2026-34461 2026-05-7 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
1255 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: cifs: some missing initializations on replay In several places in the code, we have a label to signify the start of the code wher… CWE-908
 Use of Uninitialized Resource
CVE-2026-31693 2026-05-7 21:49 2026-04-30 Show GitHub Exploit DB Packet Storm
1256 6.7 MEDIUM
Local
mediatek mt6768_firmware
mt6789_firmware
mt6877_firmware
mt6899_firmware
mt6989_firmware
mt6991_firmware
mt6993_firmware
mt8196_firmware
mt8367_firmware
mt8766_firmware
mt8768_fi…
In geniezone, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privileg… CWE-125
Out-of-bounds Read
CVE-2026-20447 2026-05-7 21:43 2026-05-4 Show GitHub Exploit DB Packet Storm
1257 6.7 MEDIUM
Local
mediatek mt6765_firmware
mt6768_firmware
mt6789_firmware
mt6877_firmware
mt6897_firmware
mt6899_firmware
mt6989_firmware
mt6991_firmware
mt6993_firmware
mt8367_firmware
mt8766_fi…
In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege if a malicious actor has already obtained the System priv… CWE-280
Improper Handling of Insufficient Permissions or Privileges 
CVE-2026-20448 2026-05-7 21:43 2026-05-4 Show GitHub Exploit DB Packet Storm
1258 6.5 MEDIUM
Adjacent
mediatek mt6763_firmware
mt6765_firmware
mt6767_firmware
mt6768_firmware
mt6769_firmware
mt6771_firmware
mt6779_firmware
mt6781_firmware
mt6783_firmware
mt6785_firmware
mt6789_fi…
In Modem, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with n… CWE-120
Classic Buffer Overflow
CVE-2026-20449 2026-05-7 21:43 2026-05-4 Show GitHub Exploit DB Packet Storm
1259 6.5 MEDIUM
Adjacent
mediatek mt2735_firmware
mt2737_firmware
mt6833_firmware
mt6835_firmware
mt6853_firmware
mt6855_firmware
mt6858_firmware
mt6873_firmware
mt6875_firmware
mt6877_firmware
mt6878_fi…
In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with… CWE-617
 Reachable Assertion
CVE-2026-20450 2026-05-7 21:42 2026-05-4 Show GitHub Exploit DB Packet Storm
1260 6.7 MEDIUM
Local
mediatek mt8115_firmware
mt8186_firmware
mt8188_firmware
mt8196_firmware
mt8365_firmware
mt8367_firmware
mt8370_firmware
mt8371_firmware
mt8390_firmware
mt8391_firmware
mt8395_fi…
In slbc, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interacti… CWE-843
Type Confusion
CVE-2026-20451 2026-05-7 21:42 2026-05-4 Show GitHub Exploit DB Packet Storm