Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
196171 7.5 重要
Local
シトリックス・システムズ
Xen プロジェクト
- Xen の pygrub ブートローダエミュレータにおけるホスト上の任意のファイルを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2016-9380 2017-02-6 15:48 2016-11-22 Show GitHub Exploit DB Packet Storm
196172 7.9 重要
Local
シトリックス・システムズ
Xen プロジェクト
- Xen の pygrub ブートローダエミュレータにおけるホスト上の任意のファイルを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2016-9379 2017-02-6 15:48 2016-11-22 Show GitHub Exploit DB Packet Storm
196173 9.8 緊急
Network
OpenSLP - OpenSLP の common/slp_compare.c の SLPFoldWhiteSpace 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-7567 2017-02-6 15:48 2016-09-27 Show GitHub Exploit DB Packet Storm
196174 5.5 警告
Local
libdwarf project - libdwarf の dwarf_loc.c の _dwarf_read_loc_section 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-7410 2017-02-6 15:48 2016-09-13 Show GitHub Exploit DB Packet Storm
196175 9.8 緊急
Network
MetalGenix - GeniXCMS の inc/lib/Options.class.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-5575 2017-02-6 13:48 2017-01-23 Show GitHub Exploit DB Packet Storm
196176 9.8 緊急
Network
MetalGenix - GeniXCMS の register.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-5574 2017-02-6 13:48 2017-01-23 Show GitHub Exploit DB Packet Storm
196177 8.8 重要
Network
eClinicalWorks - eClinicalWorks Patient Portal の messageJson.jsp におけるブラインド SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-5570 2017-02-6 13:48 2017-01-23 Show GitHub Exploit DB Packet Storm
196178 9.8 緊急
Network
eClinicalWorks - eClinicalWorks Patient Portal の template.jsp におけるブラインド SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-5569 2017-02-6 13:48 2017-01-23 Show GitHub Exploit DB Packet Storm
196179 8.8 重要
Network
LibTIFF - LibTIFF の tif_lzw.c におけるヒープベースのバッファオーバーリードの脆弱性 CWE-119
バッファエラー
CVE-2017-5563 2017-02-6 13:48 2017-01-18 Show GitHub Exploit DB Packet Storm
196180 8.1 重要
Network
Foxit Software Inc - Windows 上で稼動する Foxit Reader および PhantomPDF の ConvertToPDF プラグインにおけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2017-5556 2017-02-6 13:48 2017-01-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
531 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: net/packet: fix TOCTOU race on mmap'd vnet_hdr in tpacket_snd() In tpacket_snd(), when PACKET_VNET_HDR is enabled, vnet_hdr point… - CVE-2026-31700 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
532 7.1 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy CSR to userspace if PSP command failed When retrieving the PEK CSR, don't attempt to copy the … - CVE-2026-31699 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
533 7.1 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy PDH cert to userspace if PSP command failed When retrieving the PDH cert, don't attempt to cop… - CVE-2026-31698 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
534 7.1 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy ID to userspace if PSP command failed When retrieving the ID for the CPU, don't attempt to cop… - CVE-2026-31697 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
535 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: wifi: virt_wifi: remove SET_NETDEV_DEV to avoid use-after-free Currently we execute `SET_NETDEV_DEV(dev, &priv->lowerdev->dev)` f… - CVE-2026-31695 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
536 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: fuse: reject oversized dirents in page cache fuse_add_dirent_to_cache() computes a serialized dirent size from the server-control… - CVE-2026-31694 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
537 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: cifs: some missing initializations on replay In several places in the code, we have a label to signify the start of the code wher… - CVE-2026-31693 2026-05-3 16:16 2026-04-30 Show GitHub Exploit DB Packet Storm
538 6.5 MEDIUM
Network
- - A security vulnerability has been detected in jsbroks COCO Annotator up to 0.11.1. Affected by this vulnerability is an unknown functionality of the file backend/webserver/api/datasets.py of the comp… CWE-285
CWE-639
Improper Authorization
 Authorization Bypass Through User-Controlled Key
CVE-2026-7681 2026-05-3 15:15 2026-05-3 Show GitHub Exploit DB Packet Storm
539 4.3 MEDIUM
Network
- - A weakness has been identified in jsbroks COCO Annotator up to 0.11.1. Affected is an unknown function of the file backend/webserver/api/datasets.py of the component Data Endpoint. Executing a manipu… CWE-22
Path Traversal
CVE-2026-7680 2026-05-3 15:15 2026-05-3 Show GitHub Exploit DB Packet Storm
540 7.2 HIGH
Network
- - The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via POST parameter key names in the submit_nex_form() function in versions up to,… CWE-79
Cross-site Scripting
CVE-2026-5063 2026-05-3 15:15 2026-05-3 Show GitHub Exploit DB Packet Storm