Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198061 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player の ActionScript FileReference クラスにおける任意のコードを実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-2936 2017-01-13 16:50 2017-01-10 Show GitHub Exploit DB Packet Storm
198062 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player におけるヒープバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-2935 2017-01-13 16:50 2017-01-10 Show GitHub Exploit DB Packet Storm
198063 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player におけるヒープバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-2934 2017-01-13 16:50 2017-01-10 Show GitHub Exploit DB Packet Storm
198064 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player におけるヒープバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-2933 2017-01-13 16:50 2017-01-10 Show GitHub Exploit DB Packet Storm
198065 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player の ActionScript MovieClip クラスにおける任意のコードを実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-2932 2017-01-13 16:50 2017-01-10 Show GitHub Exploit DB Packet Storm
198066 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2017-2931 2017-01-13 16:50 2017-01-10 Show GitHub Exploit DB Packet Storm
198067 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2017-2930 2017-01-13 16:50 2017-01-10 Show GitHub Exploit DB Packet Storm
198068 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2017-2928 2017-01-13 16:50 2017-01-10 Show GitHub Exploit DB Packet Storm
198069 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player におけるヒープバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-2927 2017-01-13 16:50 2017-01-10 Show GitHub Exploit DB Packet Storm
198070 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2017-2926 2017-01-13 16:50 2017-01-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1031 4.7 MEDIUM
Network
- - ISPConfig 3.3.0 is vulnerable to Cross Site Scripting (XSS) via the system status webpage. CWE-79
Cross-site Scripting
CVE-2025-52206 2026-05-8 00:53 2026-05-6 Show GitHub Exploit DB Packet Storm
1032 5.3 MEDIUM
Network
- - An issue was discovered in OpenStack Horizon 25.6 and 25.7 before 25.7.3. There is a write operation to the session storage backend before authentication and thus storage can be exhausted by unauthen… CWE-696
 Incorrect Behavior Order
CVE-2026-43002 2026-05-8 00:53 2026-05-6 Show GitHub Exploit DB Packet Storm
1033 7.7 HIGH
Network
- - An issue was discovered in idrac in OpenStack Ironic before 35.0.1. During import, a user invoking molds can request authorization to be sent to a remote endpoint. The credential forwarded is a time-… CWE-669
 Incorrect Resource Transfer Between Spheres
CVE-2026-42997 2026-05-8 00:53 2026-05-6 Show GitHub Exploit DB Packet Storm
1034 7.5 HIGH
Network
- - Bitcoin Core through 28.x has a security issue, the details of which are not disclosed. The earliest affected version is 0.14. CWE-284
Improper Access Control
CVE-2024-52911 2026-05-8 00:53 2026-05-6 Show GitHub Exploit DB Packet Storm
1035 8.1 HIGH
Network
- - In ProFTPD through 1.3.9a before 7666224, a SQL injection vulnerability in sqltab_fetch_clients_cb() in contrib/mod_wrap2_sql.c allows a remote attacker to inject arbitrary SQL commands via a crafted… CWE-89
SQL Injection
CVE-2026-44331 2026-05-8 00:53 2026-05-6 Show GitHub Exploit DB Packet Storm
1036 - - - lxc is a Linux container runtime. In the setuid helper lxc-user-nic, the delete path contains a logic flaw in the find_line() function that allows an unprivileged user to delete OVS-attached network … CWE-863
 Incorrect Authorization
CVE-2026-39402 2026-05-8 00:53 2026-05-6 Show GitHub Exploit DB Packet Storm
1037 3.4 LOW
Adjacent
- - In Paramiko through 4.0.0 before a448945, rsakey.py allows the SHA-1 algorithm. CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2026-44405 2026-05-8 00:53 2026-05-6 Show GitHub Exploit DB Packet Storm
1038 - - - A SQL injection vulnerability in `FilterEngine.create_sqla_query()` allows any authenticated Rucio user to execute arbitrary SQL against the backend database through the DID search endpoint (`GET /di… CWE-89
SQL Injection
CVE-2026-29080 2026-05-8 00:53 2026-05-7 Show GitHub Exploit DB Packet Storm
1039 8.8 HIGH
Adjacent
- - gopls by default communicates via pipe. However, -port and -listen flags are supported as means of debugging. If -listen is given a value without an explicit host (e.g. :8080), or -port is used, gopl… CWE-1327
 Binding to an Unrestricted IP Address
CVE-2026-42503 2026-05-8 00:53 2026-05-7 Show GitHub Exploit DB Packet Storm
1040 - - - ### Summary A SQL injection vulnerability exists in Rucio versions 1.30.0 and later before 35.8.5, 38.5.5, 39.4.2, and 40.1.1, in `FilterEngine.create_postgres_query()`. This allows any authenticate… CWE-89
SQL Injection
CVE-2026-29090 2026-05-8 00:53 2026-05-7 Show GitHub Exploit DB Packet Storm