Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208501 4.3 警告 GNU Project - GNU Libtasn1 の lib/decoding.c の _asn1_extract_der_octet 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-3622 2015-05-18 13:46 2015-04-29 Show GitHub Exploit DB Packet Storm
208502 4.4 警告 Mozilla Foundation - Windows 上で稼動する Mozilla Firefox のアップデートの実装における権限を取得される脆弱性 CWE-Other
その他
CVE-2015-2720 2015-05-15 16:48 2015-05-12 Show GitHub Exploit DB Packet Storm
208503 4.3 警告 Mozilla Foundation - Mozilla Firefox の WebChannel.jsm モジュールにおける同一生成元ポリシーを回避される脆弱性 CWE-200
情報漏えい
CVE-2015-2718 2015-05-15 16:48 2015-05-12 Show GitHub Exploit DB Packet Storm
208504 6.8 警告 Mozilla Foundation - Mozilla Firefox の libstagefright における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2015-2717 2015-05-15 16:48 2015-05-12 Show GitHub Exploit DB Packet Storm
208505 6.8 警告 Mozilla Foundation - Mozilla Firefox の nsThreadManager::RegisterCurrentThread 関数における任意のコードを実行される脆弱性 CWE-362
競合状態
CVE-2015-2715 2015-05-15 16:48 2015-05-12 Show GitHub Exploit DB Packet Storm
208506 2.1 注意 Mozilla Foundation - Android 上で稼働する Mozilla Firefox における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-2714 2015-05-15 16:48 2015-05-12 Show GitHub Exploit DB Packet Storm
208507 6.8 警告 Mozilla Foundation - Mozilla Firefox および Thunderbird の SetBreaks における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-2713 2015-05-15 16:47 2015-05-12 Show GitHub Exploit DB Packet Storm
208508 7.5 危険 Mozilla Foundation - Mozilla Firefox の asm.js 実装における out-of-bounds write を誘発される脆弱性 CWE-119
バッファエラー
CVE-2015-2712 2015-05-15 16:47 2015-05-12 Show GitHub Exploit DB Packet Storm
208509 4.3 警告 Mozilla Foundation - Mozilla Firefox における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-2711 2015-05-15 16:47 2015-05-12 Show GitHub Exploit DB Packet Storm
208510 6.8 警告 Mozilla Foundation - Mozilla Firefox および Thunderbird の SVGTextFrame クラスにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-2710 2015-05-15 16:47 2015-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 4, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
691 4.4 MEDIUM
Local
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 1.0.0 to before version 4.14.4, a heap-based out-of-bounds WRITE occurs in GetAlertData, res… CWE-124
CWE-191
Buffer Underflow
 Integer Underflow (Wrap or Wraparound)
CVE-2026-26204 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
692 6.5 MEDIUM
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.0.0 to before version 4.14.4, Wazuh's server API brute-force protection for POST /security… CWE-307
CWE-362
CWE-367
mproper Restriction of Excessive Authentication Attempts
Race Condition
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-26206 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
693 6.5 MEDIUM
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.8.0 to before version 4.14.4, a stack-based buffer overflow exists in print_hex_string() i… CWE-121
CWE-400
Stack-based Buffer Overflow
 Uncontrolled Resource Consumption
CVE-2026-28221 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
694 9.0 CRITICAL
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.4.0 to before version 4.14.4, a path traversal vulnerability in Wazuh's cluster synchroniz… CWE-22
CWE-73
Path Traversal
 External Control of File Name or Path
CVE-2026-30893 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
695 9.8 CRITICAL
Network
- - Tenda W308R v2 V5.07.48 contains a cookie session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient session validation. Attackers can send… CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25316 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
696 9.8 CRITICAL
Network
- - Tenda W3002R/A302/W309R wireless routers version V5.07.64_en contain a cookie session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient se… CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25317 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
697 9.8 CRITICAL
Network
- - Tenda FH303/A300 firmware V5.07.68_EN contains a session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient cookie validation. Attackers ca… CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25318 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
698 7.4 HIGH
Network
- - Out-of-bounds read vulnerability in ASR Kestrel (nr_fw modules) allows Overflow Buffers. This vulnerability is associated with program files Code/Nr/nr_fw/RA/src/NrPwrCtrl.C. This issue affects … CWE-125
Out-of-bounds Read
CVE-2026-42799 2026-05-1 00:09 2026-04-30 Show GitHub Exploit DB Packet Storm
699 7.4 HIGH
Network
- - NULL pointer dereference vulnerability in ASR1903 in ASR Lapwing_Linux on Linux (ims_client modules) allows Pointer Manipulation. This vulnerability is associated with program files sip/utils/src/s… CWE-476
 NULL Pointer Dereference
CVE-2026-42800 2026-05-1 00:09 2026-04-30 Show GitHub Exploit DB Packet Storm
700 6.5 MEDIUM
Network
- - Exposure of Sensitive Information to an Unauthorized Actor, Exposure of private personal information to an unauthorized actor vulnerability in MeWare Software Development Inc. PDKS allows Excavation.… CWE-200
CWE-359
Information Exposure
 Exposure of Private Personal Information to an Unauthorized Actor
CVE-2026-7382 2026-05-1 00:09 2026-04-30 Show GitHub Exploit DB Packet Storm