Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198411 5.9 警告
Network
日立
OpenSSL Project
ヒューレット・パッカード・エンタープライズ
オラクル
- SSLv2 の暗号通信を解読可能な脆弱性 (DROWN 攻撃) CWE-200
CWE-310
CVE-2016-0800 2016-11-14 17:56 2016-03-1 Show GitHub Exploit DB Packet Storm
198412 7.5 重要
Network
Fedora Project
OpenBSD
- OpenSSH の sshd の auth-passwd.c の auth_password 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-6515 2016-11-14 16:41 2016-07-21 Show GitHub Exploit DB Packet Storm
198413 8.8 重要
Local
NVIDIA - 複数の NVIDIA 製品の GeForce Experience におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-8812 2016-11-14 15:56 2016-10-19 Show GitHub Exploit DB Packet Storm
198414 7.8 重要
Local
NVIDIA - 複数の NVIDIA 製品の GPU ディスプレイドライバにおけるアクセス権を取得される脆弱性 CWE-Other
その他
CVE-2016-7382 2016-11-14 15:56 2016-10-19 Show GitHub Exploit DB Packet Storm
198415 7.8 重要
Local
NVIDIA - 複数の NVIDIA 製品の GFE GameStream および NVTray プラグインにおける悪意のあるコードを実行される脆弱性 CWE-Other
その他
CVE-2016-5852 2016-11-14 15:56 2016-08-11 Show GitHub Exploit DB Packet Storm
198416 6.6 警告
Local
NVIDIA - 複数の NVIDIA 製品の Windows GPU ディスプレイドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-5025 2016-11-14 15:55 2016-08-11 Show GitHub Exploit DB Packet Storm
198417 5.5 警告
Local
NVIDIA - 複数の NVIDIA 製品の Windows GPU ディスプレイドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-4961 2016-11-14 15:55 2016-08-11 Show GitHub Exploit DB Packet Storm
198418 7.3 重要
Local
NVIDIA - 複数の NVIDIA 製品の NVStreamKMS.sys サービスコンポーネントにおける権限昇格の脆弱性 CWE-20
不適切な入力確認
CVE-2016-4960 2016-11-14 15:55 2016-08-11 Show GitHub Exploit DB Packet Storm
198419 7.5 重要
Network
NVIDIA - 複数の NVIDIA 製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-4959 2016-11-14 15:55 2016-08-11 Show GitHub Exploit DB Packet Storm
198420 7.8 重要
Local
NVIDIA - 複数の NVIDIA 製品の GFE GameStream および NVTray プラグインにおける悪意のあるコードを実行される脆弱性 CWE-Other
その他
CVE-2016-3161 2016-11-14 15:55 2016-08-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
961 4.3 MEDIUM
Network
- - A security vulnerability has been detected in Telegram Desktop up to 6.7.5. This vulnerability affects the function RequestButton of the file Telegram/SourceFiles/boxes/url_auth_box.cpp of the compon… Update CWE-404
CWE-476
 Improper Resource Shutdown or Release
 NULL Pointer Dereference
CVE-2026-7701 2026-05-6 05:16 2026-05-4 Show GitHub Exploit DB Packet Storm
962 5.0 MEDIUM
Network
- - A vulnerability was identified in Dolibarr ERP CRM up to 23.0.2. This affects the function _checkValForAPI of the file htdocs/expedition/class/expedition.class.php of the component Shipments API Endp… Update CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-7688 2026-05-6 05:16 2026-05-3 Show GitHub Exploit DB Packet Storm
963 6.3 MEDIUM
Network
- - A flaw has been found in kleneway awesome-cursor-mpc-server up to 2.0.1. Impacted is the function runCodeReviewTool of the file src/tools/codeReview.ts of the component Ccode-Review Tool. Executing a… Update CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7629 2026-05-6 05:16 2026-05-2 Show GitHub Exploit DB Packet Storm
964 6.3 MEDIUM
Network
- - A vulnerability was determined in JeecgBoot up to 3.9.1. Affected by this issue is the function checkPathTraversalBatch of the file FileDownloadUtils.jav of the component LoadFile Endpoint. This mani… Update CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-7603 2026-05-6 05:16 2026-05-2 Show GitHub Exploit DB Packet Storm
965 6.3 MEDIUM
Network
- - A vulnerability was found in mem0ai mem0 up to 1.0.11. This affects the function pickle.load/pickle.dump of the file mem0/vector_stores/faiss.py. Performing a manipulation results in deserialization.… Update CWE-20
CWE-502
 Improper Input Validation 
 Deserialization of Untrusted Data
CVE-2026-7597 2026-05-6 05:16 2026-05-2 Show GitHub Exploit DB Packet Storm
966 8.1 HIGH
Network
- - School App developed by Zyosoft has an Insecure Direct Object Reference vulnerability, allowing authenticated remote attackers to modify a specific parameter to read and modify other users' data. Update CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-7491 2026-05-6 05:16 2026-05-2 Show GitHub Exploit DB Packet Storm
967 8.8 HIGH
Network
- - CTMS developed by Sunnet has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents. Update CWE-89
SQL Injection
CVE-2026-7489 2026-05-6 05:14 2026-05-2 Show GitHub Exploit DB Packet Storm
968 7.2 HIGH
Network
- - CTMS and CPAS developed by Sunnet has an Arbitrary File Upload vulnerability, allowing privileged remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution… Update CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-7490 2026-05-6 05:14 2026-05-2 Show GitHub Exploit DB Packet Storm
969 - - - Incorrect Permission Assignment for Critical Resource vulnerability in ILM Informatique OpenConcerto allows Replace Binaries. This issue affects OpenConcerto: 1.7.5. New CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2026-6499 2026-05-6 05:14 2026-05-4 Show GitHub Exploit DB Packet Storm
970 - - - Plaintext storage of a password vulnerability in ILM Informatique OpenConcerto allows Retrieve Embedded Sensitive Data. This issue affects OpenConcerto: 1.7.5. New CWE-256
Plaintext Storage of a Password 
CVE-2026-6500 2026-05-6 05:14 2026-05-5 Show GitHub Exploit DB Packet Storm