Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198121 9.6 緊急
Network
日立
オラクル
- Oracle Java SE における AWT に関する脆弱性 CWE-Other
その他
CVE-2016-5568 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
198122 9.6 緊急
Network
日立
オラクル
- Oracle Java SE における 2D に関する脆弱性 CWE-Other
その他
CVE-2016-5556 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
198123 4.3 警告
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における JMX に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5554 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
198124 3.1
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における Libraries に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5542 2016-11-9 16:40 2016-10-18 Show GitHub Exploit DB Packet Storm
198125 2.6 注意 日本電気
Apache Software Foundation
オラクル
- Apache Tomcat の AsyncContextImpl.java における重要なリクエスト情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-2071 2016-11-9 16:39 2013-05-9 Show GitHub Exploit DB Packet Storm
198126 8.1 重要
Network
レッドハット
日本電気
Fedora Project
The Go Project
- Go の net/http パッケージにおける任意のプロキシサーバに CGI アプリケーションのアウトバウンド HTTP トラフィックをリダイレクトされる脆弱性 CWE-Other
CWE-Other
CVE-2016-5386 2016-11-9 16:35 2016-07-18 Show GitHub Exploit DB Packet Storm
198127 - - Claybird
寺尾 進
日本電気
Micco
アップル
Schezo
Lunascape
pon software
フェンリル株式会社
- Windows プログラムの DLL 読み込みに脆弱性 - - 2016-11-9 16:25 2010-08-26 Show GitHub Exploit DB Packet Storm
198128 2.6 注意 日本電気
OpenSSL Project
オラクル
- OpenSSL の s3_srvr.c の ssl3_get_client_key_exchange 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-1787 2016-11-9 15:45 2015-03-19 Show GitHub Exploit DB Packet Storm
198129 5 警告 アップル
日本電気
OpenSSL Project
日立
オラクル
- OpenSSL の SSLv2 の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-0293 2016-11-9 15:45 2015-03-19 Show GitHub Exploit DB Packet Storm
198130 7.5 危険 日本電気
OpenSSL Project
日立
オラクル
- OpenSSL の base64-decoding の実装の crypto/evp/encode.c における整数アンダーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-0292 2016-11-9 15:45 2015-03-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
61 9.8 CRITICAL
Network
- - D-Link DIR-456U Hardware Revision A1 (End-of-Life, EOL) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /etc/init0.d/S80telnetd.sh with the username "Alphanetworks… New CWE-798
 Use of Hard-coded Credentials
CVE-2026-42376 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm
62 9.8 CRITICAL
Network
- - D-Link DIR-600L Hardware Revision A1 (End-of-Life) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /bin/telnetd.sh with the username "Alphanetworks" and the static… New CWE-798
 Use of Hard-coded Credentials
CVE-2026-42375 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm
63 9.8 CRITICAL
Network
- - D-Link DIR-600L Hardware Revision B1 (End-of-Life) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /bin/telnetd.sh with the username "Alphanetworks" and the static… New CWE-798
 Use of Hard-coded Credentials
CVE-2026-42374 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm
64 9.8 CRITICAL
Network
- - D-Link DIR-605L Hardware Revision B2 (End-of-Life, EOL) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /bin/telnetd.sh with the username "Alphanetworks" and the s… New CWE-798
 Use of Hard-coded Credentials
CVE-2026-42373 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm
65 8.8 HIGH
Adjacent
- - D-Link DIR-605L Hardware Revision A1 (End-of-Life, EOL) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /bin/telnetd.sh with the username "Alphanetworks" and the s… New CWE-798
 Use of Hard-coded Credentials
CVE-2026-42372 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm
66 9.6 CRITICAL
Network
- - Notesnook is a note-taking app focused on user privacy & ease of use. Prior to Notesnook Web/Desktop version 3.3.15 and prior to Notesnook iOS/Android version 3.3.20, a stored XSS vulnerability in th… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-42090 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm
67 4.6 MEDIUM
Network
- - PPTAgent is an agentic framework for reflective PowerPoint generation. Prior to commit 418491a, there is an arbitrary file write vulnerability via `save_generated_slides`. This issue has been patched… New CWE-22
Path Traversal
CVE-2026-42080 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm
68 8.6 HIGH
Local
- - PPTAgent is an agentic framework for reflective PowerPoint generation. Prior to commit 418491a, PPTAgent is vulnerable to arbitrary code execution via Python eval() of LLM-generated code with builtin… New CWE-95
Eval Injection
CVE-2026-42079 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm
69 4.6 MEDIUM
Network
- - PPTAgent is an agentic framework for reflective PowerPoint generation. Prior to commit 418491a, PPTAgent is vulnerable to arbitrary file write and directory creation via markdown_table_to_image. This… New CWE-22
Path Traversal
CVE-2026-42078 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm
70 5.2 MEDIUM
Local
- - Evolver is a GEP-powered self-evolving engine for AI agents. Prior to version 1.69.3, a prototype pollution vulnerability in the mailbox store module allows attackers to modify the behavior of all Ja… New CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2026-42077 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm