Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
197351 7.5 重要
Network
Debian
FlightGear
Fedora Project
- FlightGear のルートマネージャにおける任意のファイルに書き込まれる脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-9956 2017-03-14 16:10 2016-12-28 Show GitHub Exploit DB Packet Storm
197352 6.8 警告
Network
シスコシステムズ - Cisco Industrial Ethernet 2000 シリーズスイッチの CIP 機能の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2017-3812 2017-03-14 16:02 2017-02-1 Show GitHub Exploit DB Packet Storm
197353 7.5 重要
Network
Artifex Software - Artifex Software, Inc MuPDF の pdf-op-run.c の pdf_run_xobject 関数における NULL ポインタデリファレンスを引き起こされる脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2017-5991 2017-03-14 15:47 2017-02-10 Show GitHub Exploit DB Packet Storm
197354 8.8 重要
Network
トレンドマイクロ - Trend Micro Interscan Web Security Virtual Appliance の com.trend.iwss.gui.servlet.updateaccountadministration における権限を昇格される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-9315 2017-03-14 15:41 2016-11-14 Show GitHub Exploit DB Packet Storm
197355 6.6 警告
Network
Puppet - Puppet 用 mcollective-puppet-agent プラグインにおける任意のコードを実行される脆弱性 CWE-254
セキュリティ機能
CVE-2015-7331 2017-03-14 15:39 2015-09-23 Show GitHub Exploit DB Packet Storm
197356 9.8 緊急
Network
NetApp - NetApp OnCommand Unified Manager for Clustered Data ONTAP における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2016-6667 2017-03-14 15:18 2016-10-17 Show GitHub Exploit DB Packet Storm
197357 5.9 警告
Network
NetApp - NetApp Data ONTAP における HTTP アクセス用に構成されたボリュームに関する情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-6495 2017-03-14 15:18 2016-09-29 Show GitHub Exploit DB Packet Storm
197358 9.8 緊急
Network
NetApp - NetApp Virtual Storage Console for VMware vSphere における中間者攻撃を実行される脆弱性 CWE-noinfo
情報不足
CVE-2016-5711 2017-03-14 15:18 2016-11-8 Show GitHub Exploit DB Packet Storm
197359 7.5 重要
Network
NetApp - NetApp Clustered Data ONTAP における SMB 共有情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-4341 2017-03-14 15:18 2016-10-28 Show GitHub Exploit DB Packet Storm
197360 7.5 重要
Network
NetApp - NetApp OnCommand System Manager の複数の関数における任意の API の呼び出しを実行される脆弱性 CWE-116
不適切なエンコード、または出力のエスケープ
CVE-2016-3063 2017-03-14 15:18 2016-03-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1161 9.1 CRITICAL
Network
- - fast-jwt provides fast JSON Web Token (JWT) implementation. Prior to 6.2.4, a critical authentication-bypass vulnerability in fast-jwt's async key-resolver flow allows any unauthenticated attacker to… CWE-287
CWE-326
CWE-1391
Improper Authentication
Inadequate Encryption Strength
 Use of Weak Credentials
CVE-2026-44351 2026-05-15 02:19 2026-05-14 Show GitHub Exploit DB Packet Storm
1162 9.0 CRITICAL
Network
- - vCluster Platform provides a Kubernetes platform for managing virtual clusters, multi-tenancy, and cluster sharing. Prior to 4.4.3, 4.5.5, 4.6.2, 4.7.1, and 4.8.0, there is a Stored XSS attack vulner… CWE-79
Cross-site Scripting
CVE-2026-42457 2026-05-15 02:19 2026-05-15 Show GitHub Exploit DB Packet Storm
1163 8.8 HIGH
Network
- - RMCP is an official Rust SDK for the Model Context Protocol. Prior to version 1.4.0, the rmcp crate's Streamable HTTP server transport (crates/rmcp/src/transport/streamable_http_server/) did not vali… CWE-346
CWE-350
 Origin Validation Error
 Reliance on Reverse DNS Resolution for a Security-Critical Action
CVE-2026-42559 2026-05-15 02:19 2026-05-15 Show GitHub Exploit DB Packet Storm
1164 7.8 HIGH
Local
- - gitoxide is an implementation of git written in Rust. Prior to 0.21.1, a malicious tree can be constructed that will, when checked out with gitoxide, permit writing an attacker-controlled symlink int… CWE-59
Link Following
CVE-2026-44471 2026-05-15 02:18 2026-05-14 Show GitHub Exploit DB Packet Storm
1165 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-3258. Reason: This candidate is a reservation duplicate of CVE-2026-3258. Notes: All CVE users should reference CV… - CVE-2026-7805 2026-05-15 02:16 2026-05-15 Show GitHub Exploit DB Packet Storm
1166 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can attach pages from a pipe directly to an skb. TCP marks… CWE-123
 Write-what-where Condition
CVE-2026-43284 2026-05-15 02:16 2026-05-8 Show GitHub Exploit DB Packet Storm
1167 8.8 HIGH
Network
sentry sentry Sentry 8.2.0 contains a remote code execution vulnerability that allows authenticated superusers to execute arbitrary commands by injecting malicious pickle-serialized objects through the audit log e… CWE-94
Code Injection
CVE-2021-47935 2026-05-15 02:16 2026-05-10 Show GitHub Exploit DB Packet Storm
1168 8.7 HIGH
Network
- - Exposure of the QKEY (used as input into the ‘OTA-Quantum’ device registration process) and internal system keys via an unauthenticated and unencrypted HTTP GET method in the Arqit Symmetric Key Ag… CWE-749
 Exposed Dangerous Method or Function
CVE-2026-33583 2026-05-15 02:07 2026-05-14 Show GitHub Exploit DB Packet Storm
1169 - - - Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in ninenines cowlib allows unauthenticated remote denial of service via memory exhaustion. cow_spdy:inflate/2 in cowlib… CWE-409
 Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2026-43970 2026-05-15 02:07 2026-05-14 Show GitHub Exploit DB Packet Storm
1170 - - - Allocation of Resources Without Limits or Throttling vulnerability in ninenines cowboy allows denial of service via unbounded buffer accumulation in multipart header parsing. cowboy_req:read_part/3 … CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-8466 2026-05-15 02:07 2026-05-14 Show GitHub Exploit DB Packet Storm