Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207971 3.5 注意 オラクル - Oracle Supply Chain Products Suite の Oracle Agile PLM における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4892 2015-10-23 09:39 2015-10-20 Show GitHub Exploit DB Packet Storm
207972 5 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Configurator における Integration with Peoplesoft に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4848 2015-10-23 09:39 2015-10-20 Show GitHub Exploit DB Packet Storm
207973 4.3 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Configurator における OCI に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4847 2015-10-23 09:39 2015-10-20 Show GitHub Exploit DB Packet Storm
207974 2.1 注意 オラクル - Oracle Supply Chain Products Suite の Oracle Agile PLM における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4824 2015-10-23 09:39 2015-10-20 Show GitHub Exploit DB Packet Storm
207975 3.5 注意 オラクル - Oracle Supply Chain Products Suite の Oracle Agile PLM における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4797 2015-10-23 09:39 2015-10-20 Show GitHub Exploit DB Packet Storm
207976 4.9 警告 オラクル - Oracle Database Mobile/Lite Server の Mobile Server における脆弱性 CWE-noinfo
情報不足
CVE-2015-4894 2015-10-22 18:35 2015-10-20 Show GitHub Exploit DB Packet Storm
207977 6.4 警告 オラクル - Oracle Retail Applications の Oracle Retail Open Commerce Platform における Framework に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4827 2015-10-22 17:14 2015-10-20 Show GitHub Exploit DB Packet Storm
207978 7.5 危険 The PHP Group - PHP における他の脆弱性を悪用される脆弱性 - CVE-2006-4433 2015-10-22 16:06 2006-08-28 Show GitHub Exploit DB Packet Storm
207979 6 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise HCM における ePerformance に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4887 2015-10-22 15:02 2015-10-20 Show GitHub Exploit DB Packet Storm
207980 4 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools における Pivot Grid に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4876 2015-10-22 15:02 2015-10-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2071 7.5 HIGH
Network
- - When the BIG-IP Configuration utility is configured to use Lightweight Directory Access Protocol (LDAP) authentication, undisclosed traffic can cause the httpd process to exhaust the available file d… CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2026-39455 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2072 7.5 HIGH
Network
- - When a BIG-IP DNS profile enabled with DNS cache is configured on a virtual server, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate.  Note: Software versions which… CWE-824
 Access of Uninitialized Pointer
CVE-2026-39458 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2073 7.2 HIGH
Network
- - A vulnerability exists in iControl REST and the TMOS Shell (tmsh) where a highly privileged, authenticated attacker with at least the Manager role can create configuration objects that allow running … CWE-272
 Least Privilege Violation
CVE-2026-39459 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2074 7.5 HIGH
Network
- - When a BIG-IP Advanced WAF or ASM security policy is configured on a virtual server, undisclosed requests can cause the bd process to terminate.  Note: Software versions which have reached End o… CWE-252
 Unchecked Return Value
CVE-2026-40060 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2075 8.7 HIGH
Network
- - When BIG-IP DNS is provisioned, a vulnerability exists in an undisclosed iControl REST and BIG-IP TMOS Shell (tmsh) command that may allow an authenticated attacker with the Resource Administrator or… CWE-77
Command Injection
CVE-2026-40061 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2076 7.5 HIGH
Network
- - When a BIG-IP APM access policy is configured on a virtual server, undisclosed traffic can cause the apmd process to terminate.  Note: Software versions which have reached End of Technical Support (… CWE-120
Classic Buffer Overflow
CVE-2026-40067 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2077 7.5 HIGH
Network
- - When a SIP profile is configured on a virtual server, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate.  Note: Software versions which have reached End of Technica… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-40423 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2078 5.3 MEDIUM
Network
- - When configured, IP-based access restrictions for httpd do not cover all endpoints, which may allow connections from blocked addresses.  Note: Software versions which have reached End of Technical Su… CWE-420
 Unprotected Alternate Channel
CVE-2026-40435 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2079 6.5 MEDIUM
Network
- - When NGINX Plus or NGINX Open Source are configured to use the HTTP/3 QUIC module, an attacker may be able to spoof their source IP address allowing for bypass of authorization or bypass of rate limi… CWE-290
 Authentication Bypass by Spoofing
CVE-2026-40460 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2080 7.5 HIGH
Network
- - When an SSL profile is configured on a virtual server on BIG-IP Virtual Edition (VE) without Intel QuickAssist Technology (QAT) or on BIG-IP hardware platforms with the database variable crypto.hwacc… CWE-131
Incorrect Calculation of Buffer Size
CVE-2026-40618 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm