Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
196781 9.8 緊急
Network
OpenText - OpenText Documentum D2 おける任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2017-5586 2017-03-16 15:01 2017-02-15 Show GitHub Exploit DB Packet Storm
196782 7.8 重要
Local
GPGTools - GPG Suite の Libmacgpg の installerHelper サブコンポーネントにおける root 権限で任意のコマンドを実行される脆弱性 CWE-77
コマンドインジェクション
CVE-2014-4677 2017-03-16 14:55 2014-06-26 Show GitHub Exploit DB Packet Storm
196783 9.8 緊急
Network
php-gettext project - php-gettext における Eval インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2016-6175 2017-03-16 14:51 2016-07-25 Show GitHub Exploit DB Packet Storm
196784 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player の Primetime TVSDK API の機能におけるメモリを破損される脆弱性 CWE-119
バッファエラー
CVE-2017-2998 2017-03-16 14:35 2017-03-14 Show GitHub Exploit DB Packet Storm
196785 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player の Primetime TVSDK におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-2997 2017-03-16 14:35 2017-03-14 Show GitHub Exploit DB Packet Storm
196786 7.8 重要
Local
アドビシステムズ - Adobe Shockwave Player における安全でないライブラリを読み込まれる脆弱性 CWE-426
信頼性のない検索パス
CVE-2017-2983 2017-03-16 14:35 2017-03-14 Show GitHub Exploit DB Packet Storm
196787 7.5 重要
Network
マイクロソフト - Microsoft Windows の SMB Tree Connect Response パケットの処理にサービス運用妨害 (DoS) の脆弱性 - CVE-2017-0016 2017-03-16 14:18 2017-02-2 Show GitHub Exploit DB Packet Storm
196788 8.1 重要
Network
Zend Technologies Ltd. - Zend Framework における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-4861 2017-03-16 14:14 2016-09-15 Show GitHub Exploit DB Packet Storm
196789 8.1 重要
Network
D-Link Systems, Inc. - D-Link 製ルータの HNAP サービスにスタックバッファオーバーフローの脆弱性 CWE-Other
その他
CVE-2016-6563 2017-03-16 14:10 2016-11-7 Show GitHub Exploit DB Packet Storm
196790 8.8 重要
Network
シスコシステムズ - ウェブブラウザ向け Cisco WebEx 拡張機能に任意のコマンドが実行可能な脆弱性 CWE-119
CWE-78
CVE-2017-3823 2017-03-16 13:54 2017-01-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1091 7.5 HIGH
Network
- - After invoking $_internalJsEmit, which is not intended to be directly accessible, or mapreduce command’s map function in a certain way, an authenticated user can subsequently crash mongod when the se… New CWE-416
 Use After Free
CVE-2026-8336 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1092 9.9 CRITICAL
Network
- - Authorization vulnerability in pgAdmin 4 server mode affecting Server Groups, Servers, Shared Servers, Background Processes, and Debugger modules. Multiple endpoints fetched user-owned objects witho… Update CWE-284
Improper Access Control
CVE-2026-7813 2026-05-14 00:34 2026-05-12 Show GitHub Exploit DB Packet Storm
1093 4.8 MEDIUM
Network
- - Stored cross-site scripting (XSS) vulnerability in pgAdmin 4 Browser Tree and Explain Visualizer modules. User-controlled PostgreSQL object names (database, schema, table, column, etc.) were assigne… Update CWE-79
Cross-site Scripting
CVE-2026-7814 2026-05-14 00:34 2026-05-12 Show GitHub Exploit DB Packet Storm
1094 8.8 HIGH
Network
- - SQL injection vulnerability in pgAdmin 4 Maintenance Tool. Four user-supplied JSON fields (buffer_usage_limit, vacuum_parallel, vacuum_index_cleanup, reindex_tablespace) were concatenated directly i… Update CWE-89
SQL Injection
CVE-2026-7815 2026-05-14 00:34 2026-05-12 Show GitHub Exploit DB Packet Storm
1095 8.8 HIGH
Network
- - OS command injection (CWE-78) vulnerability in pgAdmin 4 Import/Export query export. User-supplied input was interpolated directly into a psql \copy metacommand template without sanitization. An aut… Update CWE-89
SQL Injection
CVE-2026-7816 2026-05-14 00:34 2026-05-12 Show GitHub Exploit DB Packet Storm
1096 6.5 MEDIUM
Network
- - Local file inclusion (LFI) and server-side request forgery (SSRF) vulnerabilities in pgAdmin 4 LLM API configuration endpoints. User-supplied api_key_file and api_url preferences were passed to the … Update CWE-552
 Files or Directories Accessible to External Parties
CVE-2026-7817 2026-05-14 00:34 2026-05-12 Show GitHub Exploit DB Packet Storm
1097 7.0 HIGH
Local
- - Deserialization of untrusted data (CWE-502) in pgAdmin 4 FileBackedSessionManager. The session manager performed unsafe deserialization of session-file contents (using Python's standard object-seria… Update CWE-502
 Deserialization of Untrusted Data
CVE-2026-7818 2026-05-14 00:34 2026-05-12 Show GitHub Exploit DB Packet Storm
1098 8.1 HIGH
Network
- - Symbolic-link path traversal (CWE-61, CWE-22) in pgAdmin 4 File Manager. check_access_permission used os.path.abspath, which resolves '..' but does not resolve symbolic links, while the subsequent k… Update CWE-61
 UNIX Symbolic Link (Symlink) Following
CVE-2026-7819 2026-05-14 00:34 2026-05-12 Show GitHub Exploit DB Packet Storm
1099 6.5 MEDIUM
Network
- - Improper restriction of excessive authentication attempts (CWE-307) in pgAdmin 4. pgAdmin enforces MAX_LOGIN_ATTEMPTS only inside its custom /authenticate/login view. Flask-Security's default /login… Update CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2026-7820 2026-05-14 00:34 2026-05-12 Show GitHub Exploit DB Packet Storm
1100 - - - Improper input validation in FacAtFunction in Galaxy Watch prior to SMR May-2026 Release 1 allows local attacker to execute arbitrary code with system privilege. New - CVE-2026-21019 2026-05-14 00:33 2026-05-13 Show GitHub Exploit DB Packet Storm