Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201891 6.1 警告
Network
有限会社エポック - Web Mailing List におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-1211 2016-06-8 17:57 2016-05-19 Show GitHub Exploit DB Packet Storm
201892 6.5 警告
Network
レッドハット - Red Hat Gluster Storage で使用される Red Hat gluster-swift パッケージにおける max_meta_count の制限を回避される脆弱性 CWE-Other
その他
CVE-2014-8177 2016-06-8 16:48 2014-10-10 Show GitHub Exploit DB Packet Storm
201893 7.8 重要
Local
シスコシステムズ - Cisco Prime Network Analysis Module および Prime Virtual Network Analysis Module における root のアクセス権を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2016-1390 2016-06-8 16:05 2016-06-1 Show GitHub Exploit DB Packet Storm
201894 7.5 重要
Network
Lenovo - Lenovo Accelerator Application の UpdateAgent における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-3944 2016-06-8 16:01 2016-05-31 Show GitHub Exploit DB Packet Storm
201895 5.5 警告
Local
Xen プロジェクト - Xen の libxl デバイスハンドリングにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-4963 2016-06-8 15:56 2016-06-2 Show GitHub Exploit DB Packet Storm
201896 7.8 重要
Local
Ansible
Fedora Project
- Ansible の lxc_container モジュールの create_script 関数における任意のファイルに書き込まれる脆弱性 CWE-20
不適切な入力確認
CVE-2016-3096 2016-06-8 15:41 2016-04-15 Show GitHub Exploit DB Packet Storm
201897 7.5 重要
Network
Debian
Canonical
Igor Sysoev
- nginx の os/unix/ngx_files.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-4450 2016-06-8 14:53 2016-05-31 Show GitHub Exploit DB Packet Storm
201898 9.8 緊急
Network
Debian
Zend Technologies Ltd.
- Zend Framework の PDO アダプタにおける任意の SQL コマンドを実行される脆弱性 CWE-89
SQLインジェクション
CVE-2015-7695 2016-06-8 13:51 2015-09-15 Show GitHub Exploit DB Packet Storm
201899 7.8 重要
Local
Debian
Canonical
Spice Project
レッドハット
- SPICE におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-5260 2016-06-8 12:26 2015-10-6 Show GitHub Exploit DB Packet Storm
201900 9.8 緊急
Network
Debian
FreeType Project
- FreeType の複数の関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-9746 2016-06-8 12:08 2014-01-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
971 - - - Improper restriction of XML external entity reference vulnerability in ILM Informatique jOpenDocument allows Data Serialization External Entities Blowup. This issue affects jOpenDocument: 1.5. Update CWE-611
XXE
CVE-2026-6501 2026-05-6 05:14 2026-05-5 Show GitHub Exploit DB Packet Storm
972 8.8 HIGH
Adjacent
google android In adbd_tls_verify_cert of auth.cpp, there is a possible bypass of wireless ADB mutual authentication due to a logic error in the code. This could lead to remote (proximal/adjacent) code execution as… Update CWE-303
 Incorrect Implementation of Authentication Algorithm
CVE-2026-0073 2026-05-6 04:54 2026-05-5 Show GitHub Exploit DB Packet Storm
973 9.8 CRITICAL
Network
- - Arelle before 2.39.10 contains an unauthenticated remote code execution vulnerability in the /rest/configure REST endpoint that accepts a plugins query parameter and forwards it to the plugin manager… Update CWE-306
Missing Authentication for Critical Function
CVE-2026-42796 2026-05-6 04:50 2026-05-5 Show GitHub Exploit DB Packet Storm
974 7.1 HIGH
Local
- - Detect-It-Easy prior to 3.21 contains a path traversal vulnerability that allows attackers to write arbitrary files to the filesystem by crafting malicious archive entries with relative traversal seq… Update CWE-23
 Relative Path Traversal
CVE-2026-43616 2026-05-6 04:50 2026-05-5 Show GitHub Exploit DB Packet Storm
975 7.5 HIGH
Network
- - Easy PayPal Events & Tickets plugin for WordPress version 1.3 and earlier contain a hardcoded authentication bypass vulnerability in the QR code scanning functionality that allows unauthenticated rem… Update CWE-798
 Use of Hard-coded Credentials
CVE-2026-32834 2026-05-6 04:47 2026-05-5 Show GitHub Exploit DB Packet Storm
976 7.5 HIGH
Network
- - Easy PayPal Events & Tickets plugin for WordPress versions 1.3 and earlier contain an information disclosure vulnerability in the QR code scanning endpoint that allows unauthenticated attackers to en… Update CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-41471 2026-05-6 04:47 2026-05-5 Show GitHub Exploit DB Packet Storm
977 7.5 HIGH
Network
- - Conditional Fields for Contact Form 7 WordPress plugin through version 2.6.7 contains an uncontrolled resource consumption vulnerability in the Wpcf7cfMailParser class where the hide_hidden_mail_fiel… New CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2026-25863 2026-05-6 04:47 2026-05-5 Show GitHub Exploit DB Packet Storm
978 7.7 HIGH
Network
- - In Argo CD 3.2.0 before 3.2.11 and 3.3.0 before 3.3.9, ServerSideDiff allows reading cleartext Kubernetes Secret data. Update CWE-212
 Improper Removal of Sensitive Information Before Storage or Transfer
CVE-2026-43824 2026-05-6 04:47 2026-05-2 Show GitHub Exploit DB Packet Storm
979 7.5 HIGH
Network
- - An issue in Assimp v.6.0.2 allows a remote attacker to cause a denial of service via the FBXConverter.cpp and ConvertMeshMultiMaterial() method Update CWE-400
CWE-770
 Uncontrolled Resource Consumption
 Allocation of Resources Without Limits or Throttling
CVE-2025-70069 2026-05-6 04:47 2026-05-4 Show GitHub Exploit DB Packet Storm
980 6.5 MEDIUM
Network
- - An issue in Assimp v.6.0.2 allows a remote attacker to cause a denial of service via the FBXMeshGeometry.cpp, MeshGeometry::MeshGeometry() Update CWE-476
 NULL Pointer Dereference
CVE-2025-70070 2026-05-6 04:47 2026-05-5 Show GitHub Exploit DB Packet Storm