Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198721 7.8 重要
Local
Google - Android の Framework Listener の libsysutils/src/FrameworkListener.cpp における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3921 2016-10-14 17:53 2016-10-3 Show GitHub Exploit DB Packet Storm
198722 5.5 警告
Local
Google - Android のメディアサーバの libstagefright の id3/ID3.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-3920 2016-10-14 17:53 2016-10-3 Show GitHub Exploit DB Packet Storm
198723 5.5 警告
Local
Google - Android の AOSP Mail の email/provider/AttachmentProvider.java における任意の添付ファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-3918 2016-10-14 17:53 2016-10-3 Show GitHub Exploit DB Packet Storm
198724 7.8 重要
Local
Google - Android のフィンガープリントログイン機能における任意のユーザとして認証される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3917 2016-10-14 16:58 2016-10-3 Show GitHub Exploit DB Packet Storm
198725 7.8 重要
Local
Google - Android のカメラサービスの camera/src/camera_metadata.c における権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2016-3916 2016-10-14 16:58 2016-10-3 Show GitHub Exploit DB Packet Storm
198726 7.8 重要
Local
Google - Android のカメラサービスの camera/src/camera_metadata.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3915 2016-10-14 16:58 2016-10-3 Show GitHub Exploit DB Packet Storm
198727 7.8 重要
Local
Google - Android の Telephony の providers/telephony/MmsProvider.java における権限を取得される脆弱性 CWE-362
競合状態
CVE-2016-3914 2016-10-14 16:58 2016-10-3 Show GitHub Exploit DB Packet Storm
198728 7.8 重要
Local
Google - 複数の Nexus および Android One デバイス上で稼動する Android の Qualcomm サウンドドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8951 2016-10-14 16:53 2015-12-23 Show GitHub Exploit DB Packet Storm
198729 5.5 警告
Local
Linux - Android などの製品の ION サブシステムで使用される Linux Kernel における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-8950 2016-10-14 16:53 2015-05-13 Show GitHub Exploit DB Packet Storm
198730 7.8 重要
Local
Google - Android のメディアサーバの media/libmediaplayerservice/MediaPlayerService.cpp における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3913 2016-10-14 16:51 2016-10-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 1, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
181 4.4 MEDIUM
Local
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 1.0.0 to before version 4.14.4, a heap-based out-of-bounds WRITE occurs in GetAlertData, res… New CWE-124
CWE-191
Buffer Underflow
 Integer Underflow (Wrap or Wraparound)
CVE-2026-26204 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
182 6.5 MEDIUM
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.0.0 to before version 4.14.4, Wazuh's server API brute-force protection for POST /security… New CWE-307
CWE-362
CWE-367
mproper Restriction of Excessive Authentication Attempts
Race Condition
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-26206 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
183 6.5 MEDIUM
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.8.0 to before version 4.14.4, a stack-based buffer overflow exists in print_hex_string() i… New CWE-121
CWE-400
Stack-based Buffer Overflow
 Uncontrolled Resource Consumption
CVE-2026-28221 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
184 9.0 CRITICAL
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.4.0 to before version 4.14.4, a path traversal vulnerability in Wazuh's cluster synchroniz… New CWE-22
CWE-73
Path Traversal
 External Control of File Name or Path
CVE-2026-30893 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
185 6.5 MEDIUM
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.0.0 to before version 4.14.4, multiple heap-based out-of-bounds WRITE vulnerabilities exis… New CWE-124
CWE-191
Buffer Underflow
 Integer Underflow (Wrap or Wraparound)
CVE-2026-41499 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
186 9.8 CRITICAL
Network
- - Tenda W308R v2 V5.07.48 contains a cookie session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient session validation. Attackers can send… New CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25316 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
187 9.8 CRITICAL
Network
- - Tenda W3002R/A302/W309R wireless routers version V5.07.64_en contain a cookie session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient se… New CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25317 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
188 9.8 CRITICAL
Network
- - Tenda FH303/A300 firmware V5.07.68_EN contains a session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient cookie validation. Attackers ca… New CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25318 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
189 5.5 MEDIUM
Local
- - ICMPv6 PvD protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service New CWE-674
 Uncontrolled Recursion
CVE-2026-5299 2026-05-1 00:10 2026-04-30 Show GitHub Exploit DB Packet Storm
190 5.5 MEDIUM
Local
- - AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service New CWE-674
 Uncontrolled Recursion
CVE-2026-5401 2026-05-1 00:10 2026-04-30 Show GitHub Exploit DB Packet Storm