Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202561 10 危険 アドビシステムズ - Windows および Mac OS X 上で稼働する Adobe Reader および Acrobat における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-1007 2016-03-15 11:43 2016-03-3 Show GitHub Exploit DB Packet Storm
202562 10 危険 アドビシステムズ - Adobe Digital Editions における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-0954 2016-03-15 11:43 2016-03-8 Show GitHub Exploit DB Packet Storm
202563 7.1 危険 Digium - Asterisk Open Source および Certified Asterisk の chan_sip におけるサービス運用妨害 (DoS) の脆弱性 CWE-16
環境設定
CVE-2016-2316 2016-03-15 11:20 2016-02-3 Show GitHub Exploit DB Packet Storm
202564 5 警告 Moxa Inc. - Moxa ioLogik E2200 デバイスおよび ioAdmin Configuration Utility における関連する平文を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2016-2282 2016-03-15 10:59 2016-03-3 Show GitHub Exploit DB Packet Storm
202565 5 警告 Moxa Inc. - Moxa ioLogik E2200 デバイスおよび ioAdmin Configuration Utility における関連する平文を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2016-2283 2016-03-15 10:26 2016-03-3 Show GitHub Exploit DB Packet Storm
202566 5 警告 Ruby on Rails project - Ruby on Rails の Action Pack の actionpack/lib/action_dispatch/routing/route_set.rb におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-7581 2016-03-14 17:48 2015-08-21 Show GitHub Exploit DB Packet Storm
202567 5 警告 シスコシステムズ - Cisco Advanced Malware Protection のプロキシエンジンにおけるコンテンツの制限を回避される脆弱性 CWE-Other
その他
CVE-2016-1315 2016-03-14 15:53 2016-02-11 Show GitHub Exploit DB Packet Storm
202568 10 危険 アドバンテック株式会社 - Advantech/B+B SmartWorx VESP211-EU および VESP211-232 デバイスのファームウェアの Web インターフェースにおける管理アクションを実行される脆弱性 CWE-Other
その他
CVE-2016-2275 2016-03-14 15:10 2016-02-18 Show GitHub Exploit DB Packet Storm
202569 6.9 警告 シスコシステムズ - Cisco Nexus 2000 Fabric Extender デバイス上で稼動する Cisco NX-OS における権限を取得される脆弱性 CWE-255
CWE-264
CVE-2016-1341 2016-03-14 14:53 2016-02-23 Show GitHub Exploit DB Packet Storm
202570 5 警告 シスコシステムズ - Cisco Web セキュリティ アプライアンスデバイス上で稼動する AsyncOS の HTTPS プロキシ機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-1288 2016-03-14 14:53 2016-03-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
681 5.0 MEDIUM
Network
- - An issue that could allow a dashboard configuration to be viewed from outside of the authorized organization scope has been resolved. This is an instance of CWE-269: Improper Privilege Management, an… New CWE-269
 Improper Privilege Management
CVE-2026-7778 2026-05-5 23:16 2026-05-5 Show GitHub Exploit DB Packet Storm
682 - - - In Eclipse Open9J versions 0.21 to 0.58, a pre-authentication remote attacker can crash JITServer by sending a 32-byte crafted TCP message. New CWE-125
Out-of-bounds Read
CVE-2026-6918 2026-05-5 23:16 2026-05-5 Show GitHub Exploit DB Packet Storm
683 7.5 HIGH
Network
- - The WeePie Cookie Allow plugin for WordPress is vulnerable to SQL Injection via the 'consent' parameter in all versions up to, and including, 3.4.11 due to insufficient escaping on the user supplied … New CWE-89
SQL Injection
CVE-2026-4304 2026-05-5 23:16 2026-05-5 Show GitHub Exploit DB Packet Storm
684 7.2 HIGH
Network
- - OpenSTAManager version 2.10 and earlier contains an arbitrary file upload vulnerability in the module update functionality (modules/aggiornamenti/upload_modules.php) New CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-38751 2026-05-5 23:16 2026-05-5 Show GitHub Exploit DB Packet Storm
685 6.5 MEDIUM
Network
- - Traccar is an open source GPS tracking system. In versions between 6.11.1 and 6.13.0, the CSV export functionality writes position data, including user-controlled device and computed attributes, to C… New CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2026-27644 2026-05-5 23:16 2026-05-5 Show GitHub Exploit DB Packet Storm
686 9.8 CRITICAL
Network
- - vm2 is an open source vm/sandbox for Node.js. In version 3.10.4, vm2 is vulnerable to full sandbox escape with arbitrary code execution. Attacker code inside VM.run() obtains host process object and … New CWE-693
 Protection Mechanism Failure
CVE-2026-26956 2026-05-5 23:16 2026-05-5 Show GitHub Exploit DB Packet Storm
687 4.4 MEDIUM
Local
mercurycom mipc252w_firmware A handling issue in the RTSP service of the Mercury MIPC252W 1.0.5 Build 230306 Rel.79931n allows an authenticated attacker to trigger session termination by repeatedly sending SETUP requests for the… Update CWE-400
 Uncontrolled Resource Consumption
CVE-2026-35901 2026-05-5 22:41 2026-04-28 Show GitHub Exploit DB Packet Storm
688 6.2 MEDIUM
Local
mercurycom mipc252w_firmware The RTSP service of MERCURY IP camera MIPC252W 1.0.5 Build 230306 has an issue handling failed Digest authentication attempts. By repeatedly sending RTSP requests with invalid authentication paramete… Update CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2026-35902 2026-05-5 22:40 2026-04-28 Show GitHub Exploit DB Packet Storm
689 9.8 CRITICAL
Network
mercurycom mipc252w_firmware MERCURY MIPC252W IP camera 1.0.5 Build 230306 Rel.79931n contains an improper authentication vulnerability in the RTSP service. After successful Digest authentication in an initial DESCRIBE request, … Update CWE-287
Improper Authentication
CVE-2026-35903 2026-05-5 22:39 2026-04-28 Show GitHub Exploit DB Packet Storm
690 7.2 HIGH
Network
- - A weakness has been identified in EFM ipTIME C200 up to 1.092. This vulnerability affects the function sub_408F90 of the file /cgi/iux_set.cgi of the component ApplyRestore Endpoint. This manipulatio… New CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7833 2026-05-5 22:16 2026-05-5 Show GitHub Exploit DB Packet Storm