Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
200651 4.3 警告 Wireshark - Wireshark の X.509AF ディセクタの epan/dissectors/packet-x509af.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-2524 2016-03-2 15:13 2016-02-26 Show GitHub Exploit DB Packet Storm
200652 7.1 危険 Wireshark - Wireshark の DNP3 ディセクタの epan/dissectors/packet-dnp.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-2523 2016-03-2 15:13 2016-02-26 Show GitHub Exploit DB Packet Storm
200653 4.3 警告 Wireshark - Wireshark の ASN.1 BER ディセクタの epan/dissectors/packet-ber.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-2522 2016-03-2 15:13 2016-02-26 Show GitHub Exploit DB Packet Storm
200654 6.8 警告 SAP
Trimble
- SAP 3D Visual Enterprise Viewer における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2016-2536 2016-03-2 15:02 2016-02-26 Show GitHub Exploit DB Packet Storm
200655 6.3 警告 (複数のベンダ) - コンテンツデリバリネットワーク (CDN) に対するサービス運用妨害 (DoS) の問題 (Forwarding Loop 攻撃) CWE-Other
その他
- 2016-03-2 14:04 2016-02-29 Show GitHub Exploit DB Packet Storm
200656 7.2 危険 Linux - Linux Kernel の KEYS サブシステムにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8539 2016-03-2 12:21 2015-11-25 Show GitHub Exploit DB Packet Storm
200657 4.9 警告 Linux - Linux Kernel の drivers/usb/serial/visor.c の clie_5_attach 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-7566 2016-03-2 12:21 2015-09-29 Show GitHub Exploit DB Packet Storm
200658 4.9 警告 Linux - Linux Kernel の security/keys/keyctl.c の keyctl_read_key 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
CWE-Other
CVE-2015-7550 2016-03-2 12:21 2015-12-18 Show GitHub Exploit DB Packet Storm
200659 4.9 警告 Linux - Linux Kernel の arch/x86/kvm/x86.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-7513 2016-03-2 12:21 2015-11-19 Show GitHub Exploit DB Packet Storm
200660 10 危険 Google - Google Chrome における Blink の同一生成元ポリシーおよびサンドボックス保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-1629 2016-03-2 12:01 2016-02-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 19, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
301 7.2 HIGH
Network
- - Serendipity is a PHP-powered weblog engine. In versions 2.6-beta2 and below, the email sending functionality in include/functions.inc.php inserts $_SERVER['HTTP_HOST'] directly into the Message-ID SM… New CWE-113
HTTP Response Splitting
CVE-2026-39971 2026-04-18 00:38 2026-04-15 Show GitHub Exploit DB Packet Storm
302 5.5 MEDIUM
Local
- - Sigstore Timestamp Authority is a service for issuing RFC 3161 timestamps. Versions 2.0.5 and below contain an authorization bypass vulnerability in the VerifyTimestampResponse function. VerifyTimest… New CWE-295
Improper Certificate Validation 
CVE-2026-39984 2026-04-18 00:38 2026-04-15 Show GitHub Exploit DB Packet Storm
303 7.1 HIGH
Network
- - Zarf is an Airgap Native Packager Manager for Kubernetes. Versions 0.23.0 through 0.74.1 contain an arbitrary file write vulnerability in the zarf package inspect sbom and zarf package inspect docume… New CWE-22
Path Traversal
CVE-2026-40090 2026-04-18 00:38 2026-04-15 Show GitHub Exploit DB Packet Storm
304 - - - Use of a Broken or Risky Cryptographic Algorithm vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcprov on all (core modules). This vulnerability is associated with program files G3413CTRBl… New CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2025-14813 2026-04-18 00:38 2026-04-15 Show GitHub Exploit DB Packet Storm
305 - - - Improper neutralization of special elements used in an LDAP query ('LDAP injection') vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcprov on all (prov modules). This vulnerability is asso… New CWE-90
LDAP Injection
CVE-2026-0636 2026-04-18 00:38 2026-04-15 Show GitHub Exploit DB Packet Storm
306 - - - Impact@fastify/express v4.0.4 and earlier fails to normalize URLs before passing them to Express middleware when Fastify router normalization options are enabled. This allows complete bypass of path-… New CWE-436
 Interpretation Conflict
CVE-2026-33808 2026-04-18 00:38 2026-04-15 Show GitHub Exploit DB Packet Storm
307 - - - Allocation of resources without limits or throttling vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcpg on all (pg modules).This issue affects BC-JAVA: before 1.84. Unbounded PGP AEAD ch… New CWE-400
CWE-770
 Uncontrolled Resource Consumption
 Allocation of Resources Without Limits or Throttling
CVE-2026-3505 2026-04-18 00:38 2026-04-15 Show GitHub Exploit DB Packet Storm
308 - - - immich is a high performance self-hosted photo and video management solution. Versions prior to 2.7.3 contain an open redirect vulnerability in the shared album functionality, where the album name is… New CWE-79
CWE-601
Cross-site Scripting
Open Redirect
CVE-2026-40096 2026-04-18 00:38 2026-04-15 Show GitHub Exploit DB Packet Storm
309 9.1 CRITICAL
Network
- - @fastify/express v4.0.4 and earlier contains a path handling bug in the onRegister function that causes middleware paths to be doubled when inherited by child plugins. When a child plugin is register… New CWE-436
 Interpretation Conflict
CVE-2026-33807 2026-04-18 00:38 2026-04-15 Show GitHub Exploit DB Packet Storm
310 - - - : Use of a Broken or Risky Cryptographic Algorithm vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcpkix on all (pkix modules). PKIX draft CompositeVerifier accepts empty signature seque… New CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2026-5588 2026-04-18 00:38 2026-04-15 Show GitHub Exploit DB Packet Storm