Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198351 5.5 警告
Local
wolfSSL Inc. - wolfSSL の ECC の C ソフトウェアの実装における RSA 鍵を取得される脆弱性 CWE-310
暗号の問題
CVE-2016-7438 2016-12-22 18:12 2016-09-26 Show GitHub Exploit DB Packet Storm
198352 9.1 緊急
Network
pcre.org
IBM
- PCRE の pcre_compile.c の find_fixedlength 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
CWE-200
CVE-2015-5073 2016-12-22 17:39 2015-11-23 Show GitHub Exploit DB Packet Storm
198353 7.5 重要
Network
pcre.org
IBM
- PCRE および PCRE2 におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-3217 2016-12-22 17:39 2015-06-9 Show GitHub Exploit DB Packet Storm
198354 9.8 緊急
Network
pcre.org - PCRE および PCRE2 におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-3210 2016-12-22 17:39 2015-05-29 Show GitHub Exploit DB Packet Storm
198355 9.1 緊急
Network
ImageMagick - ImageMagick の MagickCore/enhance.c におけるバッファオーバーフローの脆弱性 CWE-125
境界外読み取り
CVE-2016-6520 2016-12-22 17:35 2016-08-6 Show GitHub Exploit DB Packet Storm
198356 7.5 重要
Network
ImageMagick
オラクル
- ImageMagick の MagickCore/property.c における重要なメモリ情報を取得される脆弱性 CWE-125
境界外読み取り
CVE-2016-5842 2016-12-22 17:35 2016-06-23 Show GitHub Exploit DB Packet Storm
198357 9.8 緊急
Network
ImageMagick
オラクル
- ImageMagick の MagickCore/profile.c における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2016-5841 2016-12-22 17:35 2016-06-23 Show GitHub Exploit DB Packet Storm
198358 6.1 警告
Network
NHN Japan - nGrinder におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-5060 2016-12-22 16:29 2016-05-24 Show GitHub Exploit DB Packet Storm
198359 7.8 重要
Local
マイクロソフト - Microsoft Auto Updater for Mac における権限昇格の脆弱性 CWE-426
信頼性のない検索パス
CVE-2016-7300 2016-12-22 14:48 2016-12-13 Show GitHub Exploit DB Packet Storm
198360 7.8 重要
Local
マイクロソフト - 複数の Microsoft Office 製品における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7298 2016-12-22 14:48 2016-12-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1251 9.1 CRITICAL
Network
apache wicket Missing invocation of Servlet http web request method changeSessionId after session binding can be exploited for a session fixation attack in Apache Wicket. This issue affects Apache Wicket: from 8.… CWE-384
 Session Fixation
CVE-2026-40010 2026-05-7 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
1252 - - - Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, NamedPipeServer::OpenHandler copies the server field from NAMED_PIPE_OPEN_REQ into a fix… CWE-121
CWE-170
Stack-based Buffer Overflow
 Improper Null Termination
CVE-2026-34464 2026-05-7 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
1253 - - - Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, several ProcessServer handlers (KillAllHandler, SuspendAllHandler, and RunSandboxedHandl… CWE-121
CWE-170
Stack-based Buffer Overflow
 Improper Null Termination
CVE-2026-34462 2026-05-7 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
1254 - - - Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, the SbieIniServer RunSbieCtrl handler contains a stack buffer overflow. The MSGID_SBIE_I… CWE-121
Stack-based Buffer Overflow
CVE-2026-34461 2026-05-7 22:16 2026-05-6 Show GitHub Exploit DB Packet Storm
1255 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: cifs: some missing initializations on replay In several places in the code, we have a label to signify the start of the code wher… CWE-908
 Use of Uninitialized Resource
CVE-2026-31693 2026-05-7 21:49 2026-04-30 Show GitHub Exploit DB Packet Storm
1256 6.7 MEDIUM
Local
mediatek mt6768_firmware
mt6789_firmware
mt6877_firmware
mt6899_firmware
mt6989_firmware
mt6991_firmware
mt6993_firmware
mt8196_firmware
mt8367_firmware
mt8766_firmware
mt8768_fi…
In geniezone, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privileg… CWE-125
Out-of-bounds Read
CVE-2026-20447 2026-05-7 21:43 2026-05-4 Show GitHub Exploit DB Packet Storm
1257 6.7 MEDIUM
Local
mediatek mt6765_firmware
mt6768_firmware
mt6789_firmware
mt6877_firmware
mt6897_firmware
mt6899_firmware
mt6989_firmware
mt6991_firmware
mt6993_firmware
mt8367_firmware
mt8766_fi…
In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege if a malicious actor has already obtained the System priv… CWE-280
Improper Handling of Insufficient Permissions or Privileges 
CVE-2026-20448 2026-05-7 21:43 2026-05-4 Show GitHub Exploit DB Packet Storm
1258 6.5 MEDIUM
Adjacent
mediatek mt6763_firmware
mt6765_firmware
mt6767_firmware
mt6768_firmware
mt6769_firmware
mt6771_firmware
mt6779_firmware
mt6781_firmware
mt6783_firmware
mt6785_firmware
mt6789_fi…
In Modem, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with n… CWE-120
Classic Buffer Overflow
CVE-2026-20449 2026-05-7 21:43 2026-05-4 Show GitHub Exploit DB Packet Storm
1259 6.5 MEDIUM
Adjacent
mediatek mt2735_firmware
mt2737_firmware
mt6833_firmware
mt6835_firmware
mt6853_firmware
mt6855_firmware
mt6858_firmware
mt6873_firmware
mt6875_firmware
mt6877_firmware
mt6878_fi…
In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with… CWE-617
 Reachable Assertion
CVE-2026-20450 2026-05-7 21:42 2026-05-4 Show GitHub Exploit DB Packet Storm
1260 6.7 MEDIUM
Local
mediatek mt8115_firmware
mt8186_firmware
mt8188_firmware
mt8196_firmware
mt8365_firmware
mt8367_firmware
mt8370_firmware
mt8371_firmware
mt8390_firmware
mt8391_firmware
mt8395_fi…
In slbc, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interacti… CWE-843
Type Confusion
CVE-2026-20451 2026-05-7 21:42 2026-05-4 Show GitHub Exploit DB Packet Storm