Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203151 5.8 警告
Local
SAP - SAP SAPCAR における任意のファイルのパーミッションを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-5847 2016-08-22 15:33 2016-08-10 Show GitHub Exploit DB Packet Storm
203152 5.5 警告
Local
SAP - SAP SAPCAR におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-5845 2016-08-22 15:33 2016-08-10 Show GitHub Exploit DB Packet Storm
203153 7.8 重要
Local
Debian
Fedora Project
fontconfig project
- fontconfig における任意の free コールを誘発される脆弱性 CWE-Other
その他
CVE-2016-5384 2016-08-19 17:58 2016-08-5 Show GitHub Exploit DB Packet Storm
203154 7.8 重要
Local
LINE株式会社 - LINE PC版(Windows版)における DLL 読み込みに関する脆弱性 CWE-Other
その他
CVE-2016-4831 2016-08-19 17:42 2016-07-8 Show GitHub Exploit DB Packet Storm
203155 6.2 警告
Local
IBM - IBM Tivoli Storage Manager および Tivoli Storage FlashCopy Manager における平文の SQL サーバのパスワードを取得される脆弱性 CWE-200
情報漏えい
CVE-2016-3059 2016-08-19 16:55 2016-07-25 Show GitHub Exploit DB Packet Storm
203156 6.5 警告
Network
IBM - IBM WebSphere Portal 用 Connections Portlets コンポーネントにおけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2016-2989 2016-08-19 16:55 2016-08-2 Show GitHub Exploit DB Packet Storm
203157 3.7
Network
IBM - IBM WebSphere Application Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-2960 2016-08-19 16:55 2016-08-1 Show GitHub Exploit DB Packet Storm
203158 5.4 警告
Network
IBM - IBM WebSphere Portal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-2925 2016-08-19 16:55 2016-07-26 Show GitHub Exploit DB Packet Storm
203159 5.4 警告
Network
IBM - IBM Rational Publishing Engine の Document Builder における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2016-2914 2016-08-19 16:55 2016-08-4 Show GitHub Exploit DB Packet Storm
203160 5.4 警告
Network
IBM - IBM Rational Publishing Engine の Document Builder におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-2912 2016-08-19 16:55 2016-08-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2431 7.3 HIGH
Network
- - A security vulnerability has been detected in yashpokharna2555 StudentManagementSystem cb2f558ddf8d19396de0f92abf2d224d46a0a203. This affects the function confirm_logged_in of the file student_trans.… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-9470 2026-05-27 04:54 2026-05-26 Show GitHub Exploit DB Packet Storm
2432 3.5 LOW
Network
- - A vulnerability was detected in yashpokharna2555 StudentManagementSystem cb2f558ddf8d19396de0f92abf2d224d46a0a203. This impacts an unknown function of the file /student.php. Performing a manipulation… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-9471 2026-05-27 04:54 2026-05-26 Show GitHub Exploit DB Packet Storm
2433 6.3 MEDIUM
Network
- - A flaw has been found in dazeb markdown-downloader up to 3d4394b34b6c99d81af817623af55e3384df5a6a. Affected is the function download_markdown/list_downloaded_files/create_subdirectory of the file src… CWE-22
Path Traversal
CVE-2026-9472 2026-05-27 04:54 2026-05-26 Show GitHub Exploit DB Packet Storm
2434 7.3 HIGH
Network
- - A vulnerability was found in yashpokharna2555 StudentManagementSystem up to cb2f558ddf8d19396de0f92abf2d224d46a0a203. Affected by this issue is the function confirm_logged_in of the file /studentdel.… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-9474 2026-05-27 04:54 2026-05-26 Show GitHub Exploit DB Packet Storm
2435 9.8 CRITICAL
Network
- - A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setAccessDeviceCfg of the file /cgi-bin/cstecgi.cgi of the component Web Management Interf… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-9477 2026-05-27 04:54 2026-05-26 Show GitHub Exploit DB Packet Storm
2436 9.8 CRITICAL
Network
- - A weakness has been identified in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the function setParentalRules of the file /cgi-bin/cstecgi.cgi of the component Web Management Interface. Executing… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-9478 2026-05-27 04:54 2026-05-26 Show GitHub Exploit DB Packet Storm
2437 6.3 MEDIUM
Network
- - A flaw has been found in changmingxie tcc-transaction up to 2.1.0. This issue affects the function Fastjson.parseObject of the component Fastjson AutoType REST API. This manipulation causes deseriali… CWE-20
CWE-502
 Improper Input Validation 
 Deserialization of Untrusted Data
CVE-2026-9497 2026-05-27 04:54 2026-05-26 Show GitHub Exploit DB Packet Storm
2438 6.3 MEDIUM
Network
- - A vulnerability has been found in Dromara lamp-cloud up to 5.6.2. Impacted is the function GroovyClassLoader.parseClass of the component Message Template Handler. Such manipulation of the argument De… CWE-791
CWE-1336
 Incomplete Filtering of Special Elements
 Improper Neutralization of Special Elements Used in a Template Engine
CVE-2026-9498 2026-05-27 04:54 2026-05-26 Show GitHub Exploit DB Packet Storm
2439 3.3 LOW
Local
- - A vulnerability was determined in GNU LibreDWG up to 0.14. The impacted element is the function decompress_R2004_section of the file src/decode.c of the component Dwgread Utility. Executing a manipul… CWE-617
 Reachable Assertion
CVE-2026-9501 2026-05-27 04:54 2026-05-26 Show GitHub Exploit DB Packet Storm
2440 5.3 MEDIUM
Local
- - A vulnerability was identified in GNU LibreDWG up to 0.14. This affects the function decompress_R2004_section of the file src/decode.c of the component Dwgread Utility. The manipulation leads to heap… CWE-119
CWE-122
Incorrect Access of Indexable Resource ('Range Error') 
Heap-based Buffer Overflow
CVE-2026-9502 2026-05-27 04:54 2026-05-26 Show GitHub Exploit DB Packet Storm