Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198271 7.8 重要
Local
FFmpeg - FFmpeg の libavutil/intmath.h の ff_log2_16bit_c 関数における境界外メモリ読み取りを実行される脆弱性 CWE-125
境界外読み取り
CVE-2016-7450 2017-01-5 16:53 2016-10-8 Show GitHub Exploit DB Packet Storm
198272 5.5 警告
Local
FFmpeg - FFmpeg の libavformat/avidec.c の avi_read_nikon 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-7122 2017-01-5 16:53 2016-10-8 Show GitHub Exploit DB Packet Storm
198273 5.5 警告
Local
FFmpeg - FFmpeg の libavformat/swfdec.c の zlib_refill 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-6881 2017-01-5 16:53 2016-09-26 Show GitHub Exploit DB Packet Storm
198274 7.8 重要
Local
FFmpeg - FFmpeg の libavcodec/rawdec.c の raw_decode 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-6671 2017-01-5 16:53 2016-08-12 Show GitHub Exploit DB Packet Storm
198275 7.5 重要
Network
NetApp - NetApp Snap Creator Framework における重要な情報を公開される脆弱性 CWE-200
情報漏えい
CVE-2016-7172 2017-01-5 15:32 2016-12-20 Show GitHub Exploit DB Packet Storm
198276 8.8 重要
Network
python-openxml - python-docx における XML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2016-5851 2017-01-5 15:27 2016-06-22 Show GitHub Exploit DB Packet Storm
198277 7.5 重要
Network
BMC Software - BMC Remedy の Remedy AR System Server における任意のパスワードをリセットされる脆弱性 CWE-640
パスワードを忘れた場合の脆弱なパスワードリカバリの仕組み
CVE-2016-2349 2017-01-5 15:23 2016-12-21 Show GitHub Exploit DB Packet Storm
198278 7.8 重要
Local
インテル - Windows 上で稼動するインテル グラフィックス・ドライバーの igdkmd64 モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-5647 2017-01-5 14:18 2016-07-11 Show GitHub Exploit DB Packet Storm
198279 5.5 警告
Local
Google - Samsung Galaxy S6 Edge デバイス上で稼動する Android におけるユーザ通知のテキストを取得される脆弱性 CWE-200
情報漏えい
CVE-2016-6910 2017-01-4 18:11 2016-12-23 Show GitHub Exploit DB Packet Storm
198280 5.4 警告
Network
Rapid7 - Rapid7 Nexpose ユーザインターフェースのタグ作成ページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-9757 2017-01-4 17:54 2016-12-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1271 7.1 HIGH
Adjacent
- - openxc/isotp-c thru commit 5a5d19245f65189202719321facd49ce6f5d46ac (2021-08-09) contains an out-of-bounds read in the ISO-TP Single Frame receive handler, where the 4-bit payload length nibble is us… CWE-125
Out-of-bounds Read
CVE-2026-37535 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
1272 8.8 HIGH
Adjacent
- - miaofng/uds-c commit e506334e270d77b20c0bc259ac6c7d8c9b702b7a (2016-10-05) contains a stack buffer overflow in send_diagnostic_request. A 6-byte stack buffer (MAX_DIAGNOSTIC_PAYLOAD_SIZE=6) receives … CWE-121
Stack-based Buffer Overflow
CVE-2026-37536 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
1273 8.1 HIGH
Adjacent
- - collin80/Open-SAE-J1939 thru commit 744024d4306bc387857dfce439558336806acb06 (2023-03-08) contains an integer underflow leading to out-of-bounds write in Transport Protocol Data Transfer handling. At… CWE-190
 Integer Overflow or Wraparound
CVE-2026-37537 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
1274 7.5 HIGH
Network
- - Buffer overflow vulnerability in socketcand 0.4.2 in file socketcand.c in function main allows attackers to cause a denial of service or other unspecified impacts via crafted bus_name. CWE-121
Stack-based Buffer Overflow
CVE-2026-37538 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
1275 8.4 HIGH
Local
- - OpenAMP v2025.10.0 ELF loader contains an integer overflow vulnerability in firmware image parsing. In elf_loader.c, it performs multiplication of two attacker-controlled 16-bit values from the ELF h… CWE-190
 Integer Overflow or Wraparound
CVE-2026-37540 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
1276 7.8 HIGH
Local
- - An issue in the component DirectIo64.sys of PassMark BurnInTest v11.0 Build 1011, OSForensics v11.1 Build 1007, and PerformanceTest v11.1 Build 1004 allows attackers to access kernel memory and escal… CWE-20
CWE-269
 Improper Input Validation 
 Improper Privilege Management
CVE-2025-52347 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
1277 8.1 HIGH
Network
- - phpBB before 3.3.16 is vulnerable to Host Header Injection that can lead to password rest link poisoning. When force_server_vars is disabled, the servers hostname may be extracted from the HTTP Host … CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2026-29199 2026-05-8 00:53 2026-05-4 Show GitHub Exploit DB Packet Storm
1278 7.8 HIGH
Local
- - An issue in Lymphatus caesium-image-compressor All versions up to and including commit 02da2c6 allows a local attacker to execute arbitrary code via the shutdownMachine and putMachineToSleep function… CWE-77
CWE-94
Command Injection
Code Injection
CVE-2026-36365 2026-05-8 00:53 2026-05-5 Show GitHub Exploit DB Packet Storm
1279 6.5 MEDIUM
Network
- - Missing input validation in the MP_REACH_NLRI component of FRRouting (FRR) stable/10.0 to stable/10.6 allows authenticated attackers to cause a Denial of Service (DoS) via supplying a crafted UPDATE … CWE-20
 Improper Input Validation 
CVE-2026-37458 2026-05-8 00:53 2026-05-5 Show GitHub Exploit DB Packet Storm
1280 7.5 HIGH
Network
- - An out-of-bounds read in the ParseIP6Extended function (/bgp/bgp.go) of gobgp v4.3.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message. CWE-125
Out-of-bounds Read
CVE-2026-37461 2026-05-8 00:53 2026-05-5 Show GitHub Exploit DB Packet Storm