Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204061 7.5 重要
Network
Moxa Inc. - 複数の Moxa MiiNePort デバイス製品のファームウェアにおけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2016-2286 2016-06-2 15:00 2016-05-24 Show GitHub Exploit DB Packet Storm
204062 7.5 重要
Network
Moxa Inc. - Moxa Secure Router EDR-G903 デバイスにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-0879 2016-06-2 15:00 2016-05-17 Show GitHub Exploit DB Packet Storm
204063 7.5 重要
Network
Moxa Inc. - Moxa Secure Router EDR-G903 デバイスにおける平文のパスワードを取得される脆弱性 CWE-200
情報漏えい
CVE-2016-0876 2016-06-2 15:00 2016-05-17 Show GitHub Exploit DB Packet Storm
204064 7.8 重要
Local
アドビシステムズ - Adobe Connect のアドインインストーラにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-4118 2016-06-2 14:42 2016-05-23 Show GitHub Exploit DB Packet Storm
204065 6.5 警告
Network
Black Box Network Services. - Black Box AlertWerks ServSensor 製品のファームウェアにおける管理者およびユーザのパスワードを取得される脆弱性 CWE-200
CWE-255
CVE-2016-2311 2016-06-2 14:31 2016-05-26 Show GitHub Exploit DB Packet Storm
204066 7.5 重要
Network
Environmental Systems Corporation - Environmental Systems Corporation 8832 Data Controller おけるアクセス制限を回避される脆弱性 CWE-Other
その他
CVE-2016-4502 2016-06-2 14:25 2016-05-26 Show GitHub Exploit DB Packet Storm
204067 9.1 緊急
Network
Environmental Systems Corporation - Environmental Systems Corporation 8832 Data Controller おける認証を回避される脆弱性 CWE-Other
その他
CVE-2016-4501 2016-06-2 14:25 2016-05-26 Show GitHub Exploit DB Packet Storm
204068 5.5 警告
Local
ヒューレット・パッカード・エンタープライズ - HPE RESTful Interface Tool における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-2023 2016-06-2 14:03 2016-05-17 Show GitHub Exploit DB Packet Storm
204069 5.9 警告
Network
DELL EMC (旧 EMC Corporation) - EMC Isilon OneFS および IsilonSD Edge OneFS における SMB クライアントになりすまされる脆弱性 CWE-Other
その他
CVE-2016-0907 2016-06-2 13:49 2016-05-26 Show GitHub Exploit DB Packet Storm
204070 8 重要
Network
Resource Data Management Ltd - Resource Data Management Intuitive 650 TDB Controller デバイスにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-4506 2016-06-2 12:26 2016-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
731 7.1 HIGH
Network
- - AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Versions 0.6.36 through 0.6.50 are vulnerable to Authenticated Session Hijac… New CWE-862
 Missing Authorization
CVE-2026-30950 2026-05-20 00:16 2026-05-19 Show GitHub Exploit DB Packet Storm
732 7.2 HIGH
Network
- - FacturaScripts is an open source accounting and invoicing software. Versions 2026 and below contain a critical vulnerability in the Plugins::add() function. The system fails to properly validate the … New CWE-20
CWE-434
 Improper Input Validation 
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-27891 2026-05-20 00:16 2026-05-19 Show GitHub Exploit DB Packet Storm
733 9.1 CRITICAL
Network
- - Incorrect access control in the /uci/get/ endpoint of NOVUS AirGate 4G firmware v1.1.16 allows unauthenticated attackers to obtain administrator credentials via a crafted POST request. Update CWE-284
Improper Access Control
CVE-2023-24215 2026-05-20 00:16 2026-05-19 Show GitHub Exploit DB Packet Storm
734 5.5 MEDIUM
Local
freedesktop gst-plugins-good An issue was discovered in GStreamer gst-plugins-good before 1.28.2. When parsing MP4 audio tracks, the isomp4 plugin's qtdemux_parse_trak function does not sufficiently validate atom data before per… Update CWE-369
 Divide By Zero
CVE-2026-46469 2026-05-20 00:15 2026-05-15 Show GitHub Exploit DB Packet Storm
735 7.8 HIGH
Local
vercel turborepo_language_server_protocol Turborepo is a high-performance build system for JavaScript and TypeScript codebases. Prior to 2.9.14000, the Turborepo LSP VS Code extension could execute shell commands derived from workspace-contr… Update CWE-77
Command Injection
CVE-2026-46508 2026-05-20 00:12 2026-05-16 Show GitHub Exploit DB Packet Storm
736 6.1 MEDIUM
Network
microsoft edge_chromium Microsoft Edge (Chromium-based) Spoofing Vulnerability Update CWE-79
Cross-site Scripting
CVE-2026-45494 2026-05-20 00:06 2026-05-19 Show GitHub Exploit DB Packet Storm
737 - - - FreePBX is an open source IP PBX. In versions below 16.0.71 and 17.0.6, the backup module does not properly sanitize data during restore operations, potentially leading to compromise if the backup co… New CWE-502
 Deserialization of Untrusted Data
CVE-2026-26978 2026-05-20 00:04 2026-05-19 Show GitHub Exploit DB Packet Storm
738 6.5 MEDIUM
Network
- - BigBlueButton is an open-source virtual classroom. In versions prior to 3.0.19, the recording playback (presentation format) was not sanitizing user's input in public chat. This allowed for a malicio… New CWE-79
Cross-site Scripting
CVE-2026-27737 2026-05-20 00:04 2026-05-19 Show GitHub Exploit DB Packet Storm
739 - - - Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.28.0 and 2.28.1 allow a low-privileged authenticated user assigned the "add_profile_threshold" permission to create a global … New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-33052 2026-05-20 00:04 2026-05-19 Show GitHub Exploit DB Packet Storm
740 7.5 HIGH
Network
- - AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Versions 0.4.2 through 0.6.51 are vulnerable to an unauthenticated Denial of… New CWE-400
CWE-459
CWE-770
 Uncontrolled Resource Consumption
 Incomplete Cleanup
 Allocation of Resources Without Limits or Throttling
CVE-2026-33232 2026-05-20 00:04 2026-05-19 Show GitHub Exploit DB Packet Storm