Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203861 5.9 警告
Network
Huawei - 複数の Huawei 製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-5435 2016-06-29 11:30 2016-06-15 Show GitHub Exploit DB Packet Storm
203862 4.7 警告
Network
サイボウズ - サイボウズ ガルーンにおける情報漏えいの脆弱性 CWE-200
情報漏えい
CVE-2016-1193 2016-06-28 16:59 2016-05-30 Show GitHub Exploit DB Packet Storm
203863 4.3 警告
Network
サイボウズ - サイボウズ ガルーンのマルチレポート機能におけるアクセス制限不備の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-1190 2016-06-28 16:59 2016-05-30 Show GitHub Exploit DB Packet Storm
203864 5.4 警告
Network
サイボウズ - サイボウズ ガルーンのポートレット機能におけるアクセス制限不備の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-1189 2016-06-28 16:59 2016-05-30 Show GitHub Exploit DB Packet Storm
203865 4.3 警告
Network
サイボウズ - サイボウズ ガルーンのメール機能におけるアクセス制限不備の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-1188 2016-06-28 16:59 2016-05-30 Show GitHub Exploit DB Packet Storm
203866 6.1 警告
Network
コルネ株式会社 - WordPress 用プラグイン「Welcart e-Commerce」におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-4827 2016-06-28 16:59 2016-06-24 Show GitHub Exploit DB Packet Storm
203867 6.5 警告
Network
コルネ株式会社 - WordPress 用プラグイン「Welcart e-Commerce」におけるセッション管理不備の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-4828 2016-06-28 16:59 2016-06-24 Show GitHub Exploit DB Packet Storm
203868 9.8 緊急
Network
マイクロソフト
日立
- 複数の Microsoft Windows 製品の Web プロキシ自動検出プロトコルの実装におけるネットワークトラフィックをリダイレクトされる脆弱性 CWE-Other
その他
CVE-2016-3236 2016-06-28 16:58 2016-06-14 Show GitHub Exploit DB Packet Storm
203869 8.8 重要
Network
マイクロソフト
日立
- 複数の Microsoft Windows 製品の Web プロキシ自動検出プロトコルの実装における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3213 2016-06-28 16:58 2016-06-14 Show GitHub Exploit DB Packet Storm
203870 7.8 重要
Local
Linux - Linux Kernel の drivers/hid/usbhid/hiddev.c の hiddev_ioctl_usage 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-5829 2016-06-28 16:36 2016-06-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1431 7.8 HIGH
Local
trendmicro apex_one An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the abili… CWE-346
 Origin Validation Error
CVE-2025-71213 2026-05-23 00:05 2026-05-21 Show GitHub Exploit DB Packet Storm
1432 7.5 HIGH
Network
honeywell control_network_module_firmware Honeywell Control Network Module (CNM) contains insertion of sensitive information into an unintended directory. An attacker could exploit this vulnerability through probing system files, potentially… CWE-538
 File and Directory Information Exposure
CVE-2026-5434 2026-05-22 23:38 2026-05-21 Show GitHub Exploit DB Packet Storm
1433 9.1 CRITICAL
Network
honeywell control_network_module_firmware Honeywell Control Network Module (CNM) contains command injection vulnerability in the web interface. An attacker could exploit this vulnerability via command delimiters, potentially resulting in Rem… CWE-77
Command Injection
CVE-2026-5433 2026-05-22 23:38 2026-05-21 Show GitHub Exploit DB Packet Storm
1434 8.1 HIGH
Network
nvidia dgx_os NVIDIA DGX OS contains a vulnerability in the factory provisioning process, where the cloning of a base image causes identical SSH host keys to be deployed across multiple systems. The sharing of cr… CWE-321
 Use of Hard-coded Cryptographic Key
CVE-2026-24218 2026-05-22 23:35 2026-05-21 Show GitHub Exploit DB Packet Storm
1435 7.8 HIGH
Local
trendmicro apex_one An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-34927 but exists in a different… CWE-346
 Origin Validation Error
CVE-2026-34930 2026-05-22 22:39 2026-05-21 Show GitHub Exploit DB Packet Storm
1436 7.8 HIGH
Local
trendmicro apex_one An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-34927 but exists in a different… CWE-346
 Origin Validation Error
CVE-2026-34929 2026-05-22 22:38 2026-05-21 Show GitHub Exploit DB Packet Storm
1437 7.8 HIGH
Local
trendmicro apex_one An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-34927 but exists in a different… CWE-346
 Origin Validation Error
CVE-2026-34928 2026-05-22 22:37 2026-05-21 Show GitHub Exploit DB Packet Storm
1438 7.8 HIGH
Local
trendmicro apex_one An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to … CWE-346
 Origin Validation Error
CVE-2026-34927 2026-05-22 22:31 2026-05-21 Show GitHub Exploit DB Packet Storm
1439 6.7 MEDIUM
Local
trendmicro apex_one A directory traversal vulnerability in the Apex One (on-premise) server could allow a pre-authenticated local attacker to modify a key table on the server to inject malicious code to deploy to agents… CWE-23
 Relative Path Traversal
CVE-2026-34926 2026-05-22 21:47 2026-05-21 Show GitHub Exploit DB Packet Storm
1440 9.8 CRITICAL
Network
apache fory Deserialization of untrusted data in Apache Fory PyFory. PyFory's ReduceSerializer could bypass documented DeserializationPolicy validation hooks during reduce-state restoration and global-name resol… CWE-502
 Deserialization of Untrusted Data
CVE-2026-48207 2026-05-22 21:40 2026-05-22 Show GitHub Exploit DB Packet Storm