Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202331 8.3 危険 アップル
Google
- Android のカーネルの Broadcom Wi-Fi ドライバにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-0802 2016-03-29 15:41 2016-02-1 Show GitHub Exploit DB Packet Storm
202332 8.3 危険 アップル
Google
- Android のカーネルの Broadcom Wi-Fi ドライバにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-0801 2016-03-29 15:41 2016-02-1 Show GitHub Exploit DB Packet Storm
202333 10 危険 アップル
nghttp2 project
- nghttp2 のアイドル状態のストリーム処理における脆弱性 CWE-119
バッファエラー
CVE-2015-8659 2016-03-29 15:41 2015-12-23 Show GitHub Exploit DB Packet Storm
202334 5.8 警告 アップル
xmlsoft.org
Canonical
レッドハット
- libxml2 の HTML パーサの push インターフェースの SAX2.c の xmlSAX2TextNode 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-8242 2016-03-29 15:41 2015-11-20 Show GitHub Exploit DB Packet Storm
202335 7.5 危険 アップル
PNG Development Group
- libpng の pngrutil.c 内の png_read_IDAT_data 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-0973 2016-03-29 15:40 2015-01-9 Show GitHub Exploit DB Packet Storm
202336 10 危険 アップル
PNG Development Group
- libpng の png_combine_row 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-9495 2016-03-29 15:40 2014-12-22 Show GitHub Exploit DB Packet Storm
202337 4.7 警告
Network
Huseyin Berberoglu - WordPress 用プラグイン WP Favorite Posts におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-1160 2016-03-29 15:39 2016-03-24 Show GitHub Exploit DB Packet Storm
202338 4 警告 アップル
Apache Software Foundation
- Apache Subversion の svn_repos_trace_node_locations 関数における重要なパス情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-3187 2016-03-29 15:39 2015-08-7 Show GitHub Exploit DB Packet Storm
202339 5 警告 アップル
Apache Software Foundation
- Apache Subversion の mod_authz_svn における隠しファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2015-3184 2016-03-29 15:39 2015-08-7 Show GitHub Exploit DB Packet Storm
202340 2.9 注意 Belden Inc. - Hirschmann Classic Platform スイッチの管理者パスワードが SNMP コミュニティ名を通じて漏えいする問題 CWE-200
CWE-Other
CVE-2016-2509 2016-03-29 15:14 2016-02-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
571 7.8 HIGH
Local
- - RDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution CWE-122
Heap-based Buffer Overflow
CVE-2026-5405 2026-05-2 00:27 2026-05-1 Show GitHub Exploit DB Packet Storm
572 7.0 HIGH
Local
- - Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution CWE-22
Path Traversal
CVE-2026-5656 2026-05-2 00:27 2026-05-1 Show GitHub Exploit DB Packet Storm
573 - - - Insufficient Verification of Data Authenticity vulnerability in hexpm hex (Hex.RemoteConverger module) allows dependency integrity bypass via unverified lockfile checksums. Hex stores checksums for … CWE-354
CWE-494
 Improper Validation of Integrity Check Value
 Download of Code Without Integrity Check
CVE-2026-32148 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
574 7.2 HIGH
Network
- - Improper neutralization of inputs used in an OS command in the FSx Windows File Server volume mounting component in Amazon ECS Agent on Windows before version 1.103.0 might allow a remote authenticat… CWE-78
OS Command 
CVE-2026-7461 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
575 3.5 LOW
Network
- - A weakness has been identified in LinkStackOrg LinkStack up to 4.8.6. Impacted is the function editPage of the file app/Http/Controllers/UserController.php. Executing a manipulation of the argument p… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-7501 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
576 5.4 MEDIUM
Network
- - A security vulnerability has been detected in LinkStackOrg LinkStack up to 4.8.6. The affected element is the function saveLink of the file app/Http/Controllers/UserController.php of the component Ma… CWE-285
CWE-639
Improper Authorization
 Authorization Bypass Through User-Controlled Key
CVE-2026-7502 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
577 8.8 HIGH
Network
- - A vulnerability was detected in code-projects for Plugin 4.1.2cu.5137. The impacted element is the function setWiFiMultipleConfig in the library /lib/cste_modules/wireless.so of the file /cgi-bin/cst… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7503 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
578 7.3 HIGH
Network
- - A flaw has been found in nextlevelbuilder GoClaw and GoClaw Lite up to 3.8.5. This affects an unknown function of the component RPC Handler. This manipulation causes improper authorization. The attac… CWE-266
CWE-285
 Incorrect Privilege Assignment
Improper Authorization
CVE-2026-7505 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
579 7.3 HIGH
Network
- - A vulnerability has been found in SourceCodester Hotel Management System 1.0. This impacts an unknown function of the file /index.php/reservation/check. Such manipulation of the argument room_type le… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-7506 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
580 6.3 MEDIUM
Network
- - A vulnerability was determined in OWAP DefectDojo up to 2.55.4. Affected by this vulnerability is an unknown functionality of the component Benchmark/Engagement/Product/Survey. Executing a manipulati… CWE-285
CWE-639
Improper Authorization
 Authorization Bypass Through User-Controlled Key
CVE-2026-7510 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm