Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
199651 6.5 警告
Network
オラクル - Oracle E-Business Suite の Oracle Applications DBA における AD Utilities に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5567 2016-10-27 11:22 2016-10-18 Show GitHub Exploit DB Packet Storm
199652 5.4 警告
Network
オラクル - Oracle Financial Services Applications の Oracle FLEXCUBE Enterprise Limits and Collateral Management における Limits and Collateral に関する脆弱性 CWE-Other
その他
CVE-2016-5569 2016-10-27 11:22 2016-10-18 Show GitHub Exploit DB Packet Storm
199653 5.3 警告
Network
オラクル - Oracle Sun Systems Products Suite の Solaris における Installation に関する脆弱性 CWE-Other
その他
CVE-2016-5566 2016-10-27 11:22 2016-10-18 Show GitHub Exploit DB Packet Storm
199654 6.5 警告
Network
オラクル - Oracle MySQL の MySQL Server における Server: DML に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5609 2016-10-27 11:22 2016-10-18 Show GitHub Exploit DB Packet Storm
199655 4.4 警告
Network
オラクル - Oracle MySQL の MySQL Server における Server: Security: Encryption に関する脆弱性 CWE-200
情報漏えい
CVE-2016-5584 2016-10-27 11:22 2016-10-18 Show GitHub Exploit DB Packet Storm
199656 6.4 警告
Local
オラクル - Oracle Database Server の Kernel PDB における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-5572 2016-10-27 11:22 2016-10-18 Show GitHub Exploit DB Packet Storm
199657 9.8 緊急
Network
Open Dental Software - Open Dental がデータベースのデフォルトパスワードとしてブランクを設定する問題 CWE-255
証明書・パスワード管理
CVE-2016-6531 2016-10-27 09:48 2016-09-6 Show GitHub Exploit DB Packet Storm
199658 4.3 警告
Network
aki-null - 夜フクロウにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-4852 2016-10-27 09:42 2016-08-24 Show GitHub Exploit DB Packet Storm
199659 5.9 警告
Network
OpenSSL Project
日立
ヒューレット・パッカード・エンタープライズ
- OpenSSL の SSLv2 の実装の s2_srvr.c の get_client_master_key 関数における MASTER-KEY 値を決定される脆弱性 CWE-200
情報漏えい
CVE-2016-0703 2016-10-26 18:01 2016-03-1 Show GitHub Exploit DB Packet Storm
199660 9.1 緊急
Network
The PHP Group - PHP の sapi/fpm/fpm/fpm_log.c におけるプロセスメモリから重要な情報を取得される脆弱性 CWE-119
CWE-Other
CVE-2016-5114 2016-10-26 16:44 2016-01-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1381 7.6 HIGH
Network
- - ipl/web is a set of common web components for php projects. Prior to version 0.13.1, the vulnerability allows an attacker to inject malicious Javascript into a victim's browser to run it in the conte… CWE-79
Cross-site Scripting
CVE-2026-42224 2026-05-9 08:16 2026-05-9 Show GitHub Exploit DB Packet Storm
1382 - - - pupnp is an SDK for development of UPnP device and control point applications. Prior to version 1.18.5, pupnp is vulnerable to SRRF port confusion due to port truncation via atoi() cast in parse_uri(… CWE-195
CWE-918
 Signed to Unsigned Conversion Error
Server-Side Request Forgery (SSRF) 
CVE-2026-41682 2026-05-9 08:16 2026-05-9 Show GitHub Exploit DB Packet Storm
1383 7.9 HIGH
Local
- - Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to versions 1.17.15, 1.18.9, and 1.19.3, the output of cilium-bugtool can contain sensitive data when … CWE-200
CWE-312
Information Exposure
 Cleartext Storage of Sensitive Information
CVE-2026-41520 2026-05-9 08:16 2026-05-9 Show GitHub Exploit DB Packet Storm
1384 9.8 CRITICAL
Network
- - ChestnutCMS v1.5.10 has a SQL injection vulnerability. The content parameter of the cms_content tag can be manipulated in the admin backend and injected into a SQL query when the template is rendered. CWE-94
Code Injection
CVE-2026-36458 2026-05-9 08:16 2026-05-8 Show GitHub Exploit DB Packet Storm
1385 - - - Uncontrolled Resource Consumption vulnerability in ericmj decimal allows unauthenticated remote Denial of Service. The decimal library does not bound the exponent on parsed input. Storing a decimal … CWE-400
 Uncontrolled Resource Consumption
CVE-2026-32686 2026-05-9 08:16 2026-05-8 Show GitHub Exploit DB Packet Storm
1386 9.8 CRITICAL
Network
- - The Optoma CinemaX P2 projector (firmware TVOS-04.24.010.04.01, Android 8.0.0) exposes an HTTP API on TCP port 2345 that allows full unauthenticated remote control of the device. The API supports bot… CWE-285
Improper Authorization
CVE-2026-30496 2026-05-9 08:16 2026-05-7 Show GitHub Exploit DB Packet Storm
1387 8.8 HIGH
Adjacent
- - The Optoma CinemaX P2 projector (firmware TVOS-04.24.010.04.01, Android 8.0.0) exposes Android Debug Bridge (ADB) on TCP port 5555 over the network without requiring authentication. The device is con… CWE-285
Improper Authorization
CVE-2026-30495 2026-05-9 08:16 2026-05-7 Show GitHub Exploit DB Packet Storm
1388 6.1 MEDIUM
Network
- - Sidekiq-cron thru 2.3.1, an open-source scheduling add-on for Sidekiq, is vulnerable to a cross-site scripting (xss) vulnerability via crafted URL being rended from cron.erb. CWE-79
Cross-site Scripting
CVE-2025-67202 2026-05-9 08:16 2026-05-8 Show GitHub Exploit DB Packet Storm
1389 9.8 CRITICAL
Network
- - NPM package next-npm-version1.0.1 is vulnerable to Command injection. CWE-94
Code Injection
CVE-2025-63706 2026-05-9 08:16 2026-05-8 Show GitHub Exploit DB Packet Storm
1390 9.8 CRITICAL
Network
- - npm package parse-ini v1.0.6 is vulnerable to Prototype Pollution in index.js(). CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2025-63703 2026-05-9 08:16 2026-05-8 Show GitHub Exploit DB Packet Storm