Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
211971 4.4 警告 アップル - Apple iOS の Telephony コンポーネントにおけるサンドボックス保護メカニズムを回避される脆弱性 CWE-Other
その他
CVE-2015-1115 2015-04-15 11:17 2015-04-8 Show GitHub Exploit DB Packet Storm
211972 6.8 警告 Google - Google Chrome の gpu/command_buffer/service/gles2_cmd_decoder.cc におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2015-1234 2015-04-14 18:30 2015-04-1 Show GitHub Exploit DB Packet Storm
211973 7.5 危険 Google - Google Chrome における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-1233 2015-04-14 18:30 2015-04-1 Show GitHub Exploit DB Packet Storm
211974 7.2 危険 ジュニパーネットワークス - Juniper Junos における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-3003 2015-04-14 17:54 2015-04-8 Show GitHub Exploit DB Packet Storm
211975 6.9 警告 ジュニパーネットワークス - SRX シリーズデバイス上で稼動する Juniper Junos におけるコンソールポートに再接続される脆弱性 CWE-Other
その他
CVE-2015-3002 2015-04-14 17:51 2015-04-8 Show GitHub Exploit DB Packet Storm
211976 5 警告 アップル - Apple OS X の Open Directory クライアントにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-1147 2015-04-14 15:20 2015-04-8 Show GitHub Exploit DB Packet Storm
211977 1.9 注意 アップル - Apple OS X の Code Signing の実装におけるアクセス制限を回避される脆弱性 CWE-310
暗号の問題
CVE-2015-1146 2015-04-14 15:20 2015-04-8 Show GitHub Exploit DB Packet Storm
211978 7.2 危険 アップル - Apple OS X の UniformTypeIdentifiers コンポーネントにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-1144 2015-04-14 15:20 2015-04-8 Show GitHub Exploit DB Packet Storm
211979 7.2 危険 アップル - Apple OS X の LaunchServices における権限を取得される脆弱性 CWE-Other
その他
CVE-2015-1143 2015-04-14 15:20 2015-04-8 Show GitHub Exploit DB Packet Storm
211980 2.1 注意 アップル - Apple OS X の LaunchServices におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-1142 2015-04-14 15:19 2015-04-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2251 8.8 HIGH
Network
wavlink wl-nu516u1_firmware A vulnerability was identified in Wavlink NU516U1 M16U1_V240425. This affects the function wifi_region of the file /cgi-bin/adm.cgi. Such manipulation of the argument skiplist1/skiplist2 leads to os … CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-8191 2026-05-14 01:10 2026-05-10 Show GitHub Exploit DB Packet Storm
2252 8.8 HIGH
Network
wavlink wl-nu516u1_firmware A vulnerability was determined in Wavlink NU516U1 M16U1_V240425. Affected by this issue is the function wan of the file /cgi-bin/adm.cgi. This manipulation of the argument ppp_username/ppp_passwd/rwa… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-8190 2026-05-14 01:10 2026-05-10 Show GitHub Exploit DB Packet Storm
2253 8.8 HIGH
Network
wavlink wl-nu516u1_firmware A vulnerability was found in Wavlink NU516U1 M16U1_V240425. Affected by this vulnerability is the function wzdrepeater of the file /cgi-bin/adm.cgi. The manipulation of the argument wlan_bssid/sel_Au… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-8189 2026-05-14 01:09 2026-05-10 Show GitHub Exploit DB Packet Storm
2254 8.8 HIGH
Network
wavlink wl-nu516u1_firmware A vulnerability has been found in Wavlink NU516U1 M16U1_V240425. Affected is the function change_wifi_password of the file /cgi-bin/adm.cgi. The manipulation of the argument wl_channel/wl_Pass/Encryp… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-8188 2026-05-14 01:09 2026-05-10 Show GitHub Exploit DB Packet Storm
2255 7.5 HIGH
Network
open5gs open5gs A vulnerability was detected in Open5GS up to 2.7.7. This affects the function ogs_sbi_client_send_via_scp_or_sepp in the library lib/sbi/client.c of the component NF. Performing a manipulation resul… CWE-119
CWE-125
Incorrect Access of Indexable Resource ('Range Error') 
Out-of-bounds Read
CVE-2026-8186 2026-05-14 01:09 2026-05-9 Show GitHub Exploit DB Packet Storm
2256 7.5 HIGH
Network
open5gs open5gs A flaw has been found in Open5GS up to 2.7.7. This impacts the function _gtpv1_u_recv_cb of the file src/upf/gtp-path.c of the component UPF. Executing a manipulation can lead to resource consumption… CWE-400
CWE-404
 Uncontrolled Resource Consumption
 Improper Resource Shutdown or Release
CVE-2026-8187 2026-05-14 01:08 2026-05-9 Show GitHub Exploit DB Packet Storm
2257 5.4 MEDIUM
Network
- - The form plugin for Grav adds the ability to create and use forms. Prior to 9.1.0, a Stored Cross-Site Scripting (XSS) vulnerability exists in the Grav CMS Form plugin's select field template. Taxono… CWE-79
Cross-site Scripting
CVE-2026-42842 2026-05-14 01:04 2026-05-12 Show GitHub Exploit DB Packet Storm
2258 - - - grav-plugin-admin is the admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create and modify pages. Prior to 1.10.49.5, the application fails… CWE-79
Cross-site Scripting
CVE-2026-44737 2026-05-14 01:04 2026-05-12 Show GitHub Exploit DB Packet Storm
2259 8.8 HIGH
Network
- - Grav API Plugin is a RESTful API for Grav CMS that provides full headless access to your site's content, media, configuration, users, and system management. Prior to 1.0.0-beta.15, an insecure direct… CWE-863
 Incorrect Authorization
CVE-2026-42843 2026-05-14 01:04 2026-05-12 Show GitHub Exploit DB Packet Storm
2260 - - - pupnp is an SDK for development of UPnP device and control point applications. Prior to version 1.18.5, pupnp is vulnerable to SRRF port confusion due to port truncation via atoi() cast in parse_uri(… CWE-195
CWE-918
 Signed to Unsigned Conversion Error
Server-Side Request Forgery (SSRF) 
CVE-2026-41682 2026-05-14 01:01 2026-05-9 Show GitHub Exploit DB Packet Storm