Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
197521 7.8 重要
Local
ImageMagick - ImageMagick の magick/profile.c におけるメモリ二重解放の脆弱性 CWE-415
二重解放
CVE-2017-5506 2017-04-24 16:29 2017-01-13 Show GitHub Exploit DB Packet Storm
197522 7.5 重要
Network
ImageMagick - ImageMagick におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-10146 2017-04-24 16:29 2016-12-11 Show GitHub Exploit DB Packet Storm
197523 9.8 緊急
Network
ImageMagick - ImageMagick の coders/wpg.c における脆弱性 CWE-189
数値処理の問題
CVE-2016-10145 2017-04-24 16:29 2016-12-25 Show GitHub Exploit DB Packet Storm
197524 9.8 緊急
Network
ImageMagick - ImageMagick の coders/wpg.c における脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-10144 2017-04-24 16:29 2016-12-25 Show GitHub Exploit DB Packet Storm
197525 7.8 重要
Local
アップル - Apple Mac OS X および Mac OS X Server におけるシステム権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2010-1821 2017-04-24 16:20 2010-06-15 Show GitHub Exploit DB Packet Storm
197526 7.8 重要
Local
アップル - Apple Mac OS X および Mac OS X Server の ImageIO におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1816 2017-04-24 16:20 2010-06-15 Show GitHub Exploit DB Packet Storm
197527 9.8 緊急
Network
Web-Dorado - WordPress 用 Spider Event Calendar プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-7719 2017-04-24 15:59 2017-04-6 Show GitHub Exploit DB Packet Storm
197528 6.5 警告
Network
Google - Google Chrome における認証情報を検証する前に TLS セッションをキャッシュされる脆弱性 CWE-295
不正な証明書検証
CVE-2013-6662 2017-04-24 15:59 2013-10-8 Show GitHub Exploit DB Packet Storm
197529 3.5
Network
サイボウズ - サイボウズ Office における意図しないファイルをダウンロードさせられる脆弱性 CWE-Other
その他
CVE-2016-4874 2017-04-24 15:12 2016-10-3 Show GitHub Exploit DB Packet Storm
197530 4.3 警告
Network
サイボウズ - サイボウズ Office のプロジェクト機能における操作制限不備の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-4873 2017-04-24 15:12 2016-10-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2611 - - - The acer_cgi.log file in the device firmware is accessible without authentication via the web interface. This file contains cleartext login credentials (for web and Telnet), leading to unauthorized s… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2026-49200 2026-05-29 23:46 2026-05-29 Show GitHub Exploit DB Packet Storm
2612 - - - The upload.cgi binary, responsible for processing device backups, contains a hardcoded AES encryption key. This allows an attacker to decrypt, modify, and re-encrypt system backups, facilitating pers… CWE-798
 Use of Hard-coded Credentials
CVE-2026-49201 2026-05-29 23:46 2026-05-29 Show GitHub Exploit DB Packet Storm
2613 7.5 HIGH
Network
- - Music Player Daemon (MPD) before version 0.24.11 contains a path traversal vulnerability in LocalStorage::MapFSOrThrow and LocalStorage::MapUTF8 within the local storage plugin, where the on-disk pat… CWE-22
Path Traversal
CVE-2026-49128 2026-05-29 23:16 2026-05-29 Show GitHub Exploit DB Packet Storm
2614 8.2 HIGH
Network
- - phpMyFAQ before 4.1.3 contains an authentication bypass vulnerability in the password reset endpoint that allows unauthenticated attackers to reset any user account password without token verificatio… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2026-35675 2026-05-29 23:16 2026-05-29 Show GitHub Exploit DB Packet Storm
2615 6.5 MEDIUM
Network
apache ignite Relative Path Traversal vulnerability in Apache Ignite REST API. Authenticated REST API users can read any file on the server with "cmd=log" command and a log path crafted in a certain way. This iss… CWE-23
 Relative Path Traversal
CVE-2025-48977 2026-05-29 23:11 2026-05-28 Show GitHub Exploit DB Packet Storm
2616 9.8 CRITICAL
Network
inhandnetworks ir315_firmware
ir302_firmware
ir615_firmware
ir305_firmware
A command injection vulnerability exists in the Admin Access feature of InHand Networks IR302 firmware V3.5.108, IR305 firmware V1.0.118, IR315 firmware V1.0.118, IR615 firmware V1.0.118, and earlier… CWE-77
Command Injection
CVE-2026-38702 2026-05-29 23:09 2026-05-29 Show GitHub Exploit DB Packet Storm
2617 9.8 CRITICAL
Network
inhandnetworks ir315_firmware
ir302_firmware
ir615_firmware
ir305_firmware
A command injection vulnerability exists in the ZeroTier VPN feature of InHand Networks IR302 firmware V3.5.108, IR305 firmware V1.0.118, IR315 firmware V1.0.118, IR615 firmware V1.0.118, and earlier… CWE-77
Command Injection
CVE-2026-38703 2026-05-29 23:09 2026-05-29 Show GitHub Exploit DB Packet Storm
2618 9.8 CRITICAL
Network
inhandnetworks ir315_firmware
ir302_firmware
ir615_firmware
ir305_firmware
A command injection vulnerability exists in the IPSec VPN feature of InHand Networks IR302 firmware V3.5.108, IR305 firmware V1.0.118, IR315 firmware V1.0.118, IR615 firmware V1.0.118, and earlier ve… CWE-77
Command Injection
CVE-2026-38707 2026-05-29 23:08 2026-05-29 Show GitHub Exploit DB Packet Storm
2619 9.8 CRITICAL
Network
inhandnetworks ir315_firmware
ir302_firmware
ir615_firmware
ir305_firmware
A command injection vulnerability exists in the WireGuard VPN feature of InHand Networks IR302 firmware V3.5.108, IR305 firmware V1.0.118, IR315 firmware V1.0.118, IR615 firmware V1.0.118, and earlie… CWE-77
Command Injection
CVE-2026-38704 2026-05-29 23:08 2026-05-29 Show GitHub Exploit DB Packet Storm
2620 8.6 HIGH
Network
- - Music Player Daemon (MPD) before version 0.24.11 contains a stack buffer overflow vulnerability in the pcm_unpack_24be function in src/pcm/Pack.cxx that allows unauthenticated attackers to corrupt st… CWE-193
 Off-by-one Error
CVE-2026-49127 2026-05-29 23:07 2026-05-29 Show GitHub Exploit DB Packet Storm