Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202861 9.8 緊急
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における ASLR 保護メカニズムを回避される脆弱性 CWE-Other
その他
CVE-2016-1006 2016-04-19 10:36 2016-04-7 Show GitHub Exploit DB Packet Storm
202862 5.3 警告
Network
Drupal
Debian
- Drupal の User モジュールの "have you forgotten your password" のリンクにおける重要なユーザ名情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-3170 2016-04-18 18:07 2016-02-24 Show GitHub Exploit DB Packet Storm
202863 6.4 警告
Network
Drupal
Debian
- Drupal の System モジュールにおけるサイト管理者の認証をハイジャックされる脆弱性 CWE-Other
その他
CVE-2016-3168 2016-04-18 18:07 2016-02-24 Show GitHub Exploit DB Packet Storm
202864 7.3 重要
Network
Prepopulate project - Drupal 用 Prepopulate モジュールの _prepopulate_request_walk 関数における特定のフィールドの型を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3188 2016-04-18 17:56 2016-03-2 Show GitHub Exploit DB Packet Storm
202865 7.3 重要
Network
Prepopulate project - Drupal 用 Prepopulate モジュールにおける REQUEST スーパーグローバル変数の配列を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3187 2016-04-18 17:56 2016-03-2 Show GitHub Exploit DB Packet Storm
202866 7.5 重要
Network
Apache Software Foundation - Apache Jetspeed の User Manager サービスにおけるユーザを追加される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2171 2016-04-18 17:37 2016-03-28 Show GitHub Exploit DB Packet Storm
202867 9.8 緊急
Network
Apache Software Foundation - Apache OFBiz における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-2170 2016-04-18 17:37 2016-04-5 Show GitHub Exploit DB Packet Storm
202868 6.5 警告
Network
Apache Software Foundation - Apache Qpid Proton の複数のクラスにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-2166 2016-04-18 17:37 2016-03-9 Show GitHub Exploit DB Packet Storm
202869 7.5 重要
Network
Apache Software Foundation - Apache OpenMeetings の FileService.importFileByInternalUserId および FileService.importFile SOAP API メソッドにおける任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-2164 2016-04-18 17:37 2016-03-25 Show GitHub Exploit DB Packet Storm
202870 6.1 警告
Network
Apache Software Foundation - Apache OpenMeetings におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-2163 2016-04-18 17:37 2016-03-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
691 7.7 HIGH
Network
openclaw openclaw OpenClaw before 2026.4.5 contains a server-side request forgery vulnerability in the CDP /json/version WebSocket endpoint that allows attackers to pivot to untrusted second-hop targets. The webSocket… New CWE-601
CWE-918
Open Redirect
Server-Side Request Forgery (SSRF) 
CVE-2026-43576 2026-05-8 02:04 2026-05-7 Show GitHub Exploit DB Packet Storm
692 9.8 CRITICAL
Network
openclaw openclaw OpenClaw versions 2026.2.21 before 2026.4.10 contain an authentication bypass vulnerability in the sandbox noVNC helper route that exposes interactive browser session credentials. Attackers can acces… New CWE-862
 Missing Authorization
CVE-2026-43575 2026-05-8 02:03 2026-05-7 Show GitHub Exploit DB Packet Storm
693 6.5 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.4.12 contains an improper authorization vulnerability in helper-backed channels where empty resolved approver lists are interpreted as explicit approval authorization. Attackers … Update CWE-183
 Permissive List of Allowed Inputs
CVE-2026-43574 2026-05-8 02:03 2026-05-5 Show GitHub Exploit DB Packet Storm
694 7.7 HIGH
Network
openclaw openclaw OpenClaw before 2026.4.10 contains a server-side request forgery policy bypass vulnerability in existing-session browser interaction routes. Attackers can bypass SSRF navigation guards to interact wi… Update CWE-862
CWE-918
 Missing Authorization
Server-Side Request Forgery (SSRF) 
CVE-2026-43573 2026-05-8 02:03 2026-05-5 Show GitHub Exploit DB Packet Storm
695 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_subset: Fix net_device lifecycle with device_move The net_device is allocated during function instance creation an… Update NVD-CWE-noinfo
CVE-2026-31723 2026-05-8 02:03 2026-05-2 Show GitHub Exploit DB Packet Storm
696 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_eem: Fix net_device lifecycle with device_move The net_device is allocated during function instance creation and r… Update NVD-CWE-noinfo
CVE-2026-31724 2026-05-8 02:00 2026-05-2 Show GitHub Exploit DB Packet Storm
697 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_ecm: Fix net_device lifecycle with device_move The net_device is allocated during function instance creation and r… Update NVD-CWE-noinfo
CVE-2026-31725 2026-05-8 01:58 2026-05-2 Show GitHub Exploit DB Packet Storm
698 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_ppe: avoid NULL deref when gmac0 is disabled If the gmac0 is disabled, the precheck for a valid ingress device… Update CWE-476
 NULL Pointer Dereference
CVE-2026-31736 2026-05-8 01:53 2026-05-2 Show GitHub Exploit DB Packet Storm
699 8.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: iommupt: Fix short gather if the unmap goes into a large mapping unmap has the odd behavior that it can unmap more than requested… Update NVD-CWE-noinfo
CVE-2026-31735 2026-05-8 01:52 2026-05-2 Show GitHub Exploit DB Packet Storm
700 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: sched_ext: Fix is_bpf_migration_disabled() false negative on non-PREEMPT_RCU Since commit 8e4f0b1ebcf2 ("bpf: use rcu_read_lock_d… Update NVD-CWE-noinfo
CVE-2026-31734 2026-05-8 01:50 2026-05-2 Show GitHub Exploit DB Packet Storm