Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201171 5 警告
Network
マイクロソフト - Microsoft Internet Explorer 10 および 11 におけるサンドボックス保護メカニズムを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2016-3292 2016-09-15 11:39 2016-09-13 Show GitHub Exploit DB Packet Storm
201172 5.3 警告
Network
日立 - JP1/Automatic Job Management System 3 における脆弱性 CWE-noinfo
情報不足
- 2016-09-14 18:15 2015-12-7 Show GitHub Exploit DB Packet Storm
201173 3.4
Network
日立 - Hitachi Command Suite製品における外部のファイルをブラウザにロードできる脆弱性 CWE-noinfo
情報不足
- 2016-09-14 18:15 2016-02-19 Show GitHub Exploit DB Packet Storm
201174 3.1
Network
日立 - Hitachi Command Suite 製品における情報露出の脆弱性 CWE-noinfo
情報不足
- 2016-09-14 18:15 2016-07-11 Show GitHub Exploit DB Packet Storm
201175 6.5 警告
Network
IBM - IBM WebSphere Portal におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-5954 2016-09-14 17:58 2016-09-8 Show GitHub Exploit DB Packet Storm
201176 5.4 警告
Network
IBM - IBM Rational Team Concert および Rational Collaborative Lifecycle Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0331 2016-09-14 17:58 2016-09-5 Show GitHub Exploit DB Packet Storm
201177 5.5 警告
Local
Google - Android の Telephony におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3898 2016-09-14 17:51 2016-09-6 Show GitHub Exploit DB Packet Storm
201178 5.5 警告
Local
Google - Android の Wi-Fi の net/wifi/WifiEnterpriseConfig.java の WifiEnterpriseConfig クラスにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-3897 2016-09-14 17:51 2016-09-6 Show GitHub Exploit DB Packet Storm
201179 5.5 警告
Local
Google - Android の AOSP Mail における重要な EmailAccountCacheProvider 情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-3896 2016-09-14 17:51 2016-09-6 Show GitHub Exploit DB Packet Storm
201180 5.5 警告
Local
Google - Android のメディアサーバの libs/ui/Region.cpp の Region::unflatten 関数における整数オーバーフローの脆弱性 CWE-200
CWE-Other
CVE-2016-3895 2016-09-14 17:41 2016-09-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1161 5.5 MEDIUM
Local
- - Buffer Overflow vulnerability in Ardupiot Copter Latest commit 92693e023793133e49a035daf37c14433e484778 allows a local attacker to cause a denial of service via the AP_MSP::loop, AP_MSP, AP_MSP.cpp c… New CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2024-51394 2026-05-14 03:16 2026-05-14 Show GitHub Exploit DB Packet Storm
1162 5.0 MEDIUM
Network
- - mosparo is the modern solution to protect your online forms from spam. Prior to 1.4.13, the automatic rule package source URL feature allows a project member with the editor role to store an attacker… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-41195 2026-05-14 03:15 2026-05-13 Show GitHub Exploit DB Packet Storm
1163 - - - django-s3file is a lightweight file upload input for Django and Amazon S3. Prior to 7.0.2, S3FileMiddleware is vulnerable to relative path traversal attacks, where an attacker can use a modified requ… New CWE-22
CWE-26
Path Traversal
 Path Traversal: '/dir/../filename'
CVE-2026-42196 2026-05-14 03:15 2026-05-13 Show GitHub Exploit DB Packet Storm
1164 7.5 HIGH
Network
- - Snappier is a high performance C# implementation of the Snappy compression algorithm. Prior to 1.3.1, Snappier.SnappyStream enters an uncatchable infinite loop when decompressing a malformed framed-f… New CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-44302 2026-05-14 03:15 2026-05-13 Show GitHub Exploit DB Packet Storm
1165 - - - Mako is a template library written in Python. Prior to 1.3.12, on Windows, a URI using backslash traversal (e.g. \..\..\ secret.txt) bypasses the directory traversal check in Template.__init__ and th… New CWE-22
Path Traversal
CVE-2026-44307 2026-05-14 03:15 2026-05-13 Show GitHub Exploit DB Packet Storm
1166 5.3 MEDIUM
Network
- - GoJobs is a REST API for a Job Board platform. The application exposes a job retrieval endpoint that allows unauthenticated users to access job details by directly manipulating object identifiers. Th… New CWE-284
CWE-639
Improper Access Control
 Authorization Bypass Through User-Controlled Key
CVE-2026-44341 2026-05-14 03:15 2026-05-13 Show GitHub Exploit DB Packet Storm
1167 - - - Hugo is a static site generator. From 0.43 to before 0.161.0, when building a Hugo site that uses Node-based asset pipelines (PostCSS, Babel, TailwindCSS), Hugo invoked the configured Node tools with… New CWE-22
Path Traversal
CVE-2026-44301 2026-05-14 03:14 2026-05-13 Show GitHub Exploit DB Packet Storm
1168 6.1 MEDIUM
Network
- - Kyverno is a policy engine designed for cloud native platform engineering teams. Prior to 2.5.2, Vue 3's v-html directive is the framework-documented mechanism for injecting raw HTML, and it intentio… New CWE-79
Cross-site Scripting
CVE-2026-44245 2026-05-14 03:14 2026-05-13 Show GitHub Exploit DB Packet Storm
1169 6.3 MEDIUM
Network
- - A command injection vulnerability was discovered in TeamViewer DEX Platform On-Premises (former 1E DEX Platform On-Premises) prior to version 9.2. Improper input validation allows authenticated users… New CWE-20
 Improper Input Validation 
CVE-2026-2695 2026-05-14 03:10 2026-05-14 Show GitHub Exploit DB Packet Storm
1170 7.5 HIGH
Network
phpoffice phpspreadsheet PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet files. Prior to 1.30.4, 2.1.16, 2.4.5, 3.10.5, and 5.7.0, the SpreadsheetML XML reader (Reader\Xml) does not validate the ss:I… New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-40863 2026-05-14 03:01 2026-05-13 Show GitHub Exploit DB Packet Storm