Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
197811 6.5 警告
Network
w3m project - Tatsuya Kinoshita w3m フォークにおけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-9440 2016-12-14 16:25 2016-08-24 Show GitHub Exploit DB Packet Storm
197812 6.5 警告
Network
w3m project - Tatsuya Kinoshita w3m フォークにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-9439 2016-12-14 16:25 2016-11-15 Show GitHub Exploit DB Packet Storm
197813 6.5 警告
Network
w3m project - Tatsuya Kinoshita w3m フォークにおけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-9438 2016-12-14 16:25 2016-08-18 Show GitHub Exploit DB Packet Storm
197814 6.5 警告
Network
w3m project - Tatsuya Kinoshita w3m フォークにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-9437 2016-12-14 16:25 2016-08-18 Show GitHub Exploit DB Packet Storm
197815 6.5 警告
Network
w3m project - Tatsuya Kinoshita w3m フォークにおけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-9434 2016-12-14 16:25 2016-08-17 Show GitHub Exploit DB Packet Storm
197816 6.5 警告
Network
w3m project - Tatsuya Kinoshita w3m フォークにおけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-9433 2016-12-14 16:25 2016-08-17 Show GitHub Exploit DB Packet Storm
197817 6.5 警告
Network
w3m project - Tatsuya Kinoshita w3m フォークにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-9432 2016-12-14 16:25 2016-08-17 Show GitHub Exploit DB Packet Storm
197818 6.5 警告
Network
w3m project - Tatsuya Kinoshita w3m フォークにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-9431 2016-12-14 16:16 2016-08-15 Show GitHub Exploit DB Packet Storm
197819 8.8 重要
Network
w3m project - Tatsuya Kinoshita w3m フォークの addMultirowsForm 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-9428 2016-12-14 16:16 2016-08-29 Show GitHub Exploit DB Packet Storm
197820 8.8 重要
Network
w3m project - Tatsuya Kinoshita w3m フォークの renderTable 関数における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2016-9426 2016-12-14 16:16 2016-08-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
131 8.1 HIGH
Adjacent
- - BusyBox before commit 42202bf contains a heap buffer overflow vulnerability in the DHCPv6 client (udhcpc6) DNS_SERVERS option handler in networking/udhcp/d6_dhcpc.c that allows network-adjacent attac… New CWE-122
Heap-based Buffer Overflow
CVE-2026-29004 2026-05-6 23:16 2026-05-5 Show GitHub Exploit DB Packet Storm
132 4.7 MEDIUM
Network
- - Vulnerability in the Oracle Macoron Tool product of Oracle Open Source Projects. The supported versions that is affected is v0.22.0. Easily exploitable vulnerability allows unauthenticated attacker w… New - CVE-2026-35253 2026-05-6 22:26 2026-05-6 Show GitHub Exploit DB Packet Storm
133 6.5 MEDIUM
Network
- - Dify before version 1.14.0 contains an authorization bypass vulnerability that allows authenticated users to read the full contents of files uploaded by other users within the same tenant by supplyin… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-41950 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
134 - - - Pi-hole FTL is the core engine of the Pi-hole network-level advertisement and tracker blocker. In versions before 6.6.1, the `dns.interface` configuration field in Pi-hole FTL accepted newline charac… New CWE-93
CRLF Injection
CVE-2026-39849 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
135 - - - Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, a Time-of-Check-to-Time-of-Use (TOCTOU) race condition exists during addon installation.… New CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-34596 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
136 - - - Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, SbieIniServer::HashPassword converts a SHA-1 digest to hexadecimal incorrectly. The high… New CWE-328
 Use of Weak Hash
CVE-2026-34527 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
137 - - - Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, an INI injection vulnerability allows any standard local user to bypass configuration re… New CWE-93
CRLF Injection
CVE-2026-34458 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
138 - - - CoreDNS is a DNS server that chains plugins. In versions prior to 1.14.3, the tsig plugin can be bypassed on non-plain-DNS transports (DoT, DoH, DoH3, DoQ, and gRPC) because it trusts the transport w… New CWE-303
 Incorrect Implementation of Authentication Algorithm
CVE-2026-33190 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
139 - - - Vaultwarden is a Bitwarden-compatible server written in Rust. In versions 1.35.4 and earlier, the WebAuthn authentication flow in `validate_webauthn_login()` updates persistent credential metadata (1… New CWE-345
 Insufficient Verification of Data Authenticity
CVE-2026-31835 2026-05-6 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
140 5.4 MEDIUM
Network
- - Traccar is an open source GPS tracking system. In org.traccar:traccar versions starting at 6.11.1 before 6.13.0, the KML and GPX export functionality writes device names to XML output without proper … New CWE-91
Blind XPath Injection
CVE-2026-27693 2026-05-6 22:16 2026-05-5 Show GitHub Exploit DB Packet Storm