Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2111 6.8 警告
Physics
Elspec LTD G5DFR ファームウェア Elspec LTDのG5DFR ファームウェアにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2025-59392 2026-02-6 10:41 2025-11-6 Show GitHub Exploit DB Packet Storm
2112 7.2 重要
Network
Sangoma freepbx SangomaのfreepbxにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2025-64328 2026-02-6 10:41 2025-11-7 Show GitHub Exploit DB Packet Storm
2113 6.5 警告
Network
Salesforce.com, inc. MuleSoft Anypoint Extension Pack Salesforce.com, inc.のMuleSoft Anypoint Extension Packにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2025-10875 2026-02-6 10:41 2025-11-4 Show GitHub Exploit DB Packet Storm
2114 7.5 重要
Network
Intelbras ICIP 30 Firmware IntelbrasのICIP 30 Firmwareにおける複数の脆弱性 CWE-255
CWE-256
CWE-522
CVE-2025-13187 2026-02-6 10:41 2025-11-14 Show GitHub Exploit DB Packet Storm
2115 5.3 警告
Network
Zeit, Inc. AI Vercel, Inc. (旧 Zeit, Inc.)のAIにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2025-48985 2026-02-6 10:41 2025-11-7 Show GitHub Exploit DB Packet Storm
2116 5.5 警告
Local
Open JS Foundation ESLint Open JS FoundationのESLintにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2025-50537 2026-02-6 10:40 2026-01-26 Show GitHub Exploit DB Packet Storm
2117 6.1 警告
Network
nuxt Nuxt Devtools nuxtのNuxt Devtoolsにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-52662 2026-02-6 10:40 2025-11-7 Show GitHub Exploit DB Packet Storm
2118 7.8 重要
Local
Synology Inc. BeeDrive Synology Inc.のBeeDriveにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2025-54158 2026-02-6 10:40 2025-12-4 Show GitHub Exploit DB Packet Storm
2119 7.5 重要
Network
Synology Inc. BeeDrive Synology Inc.のBeeDriveにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2025-54159 2026-02-6 10:40 2025-12-4 Show GitHub Exploit DB Packet Storm
2120 7.8 重要
Local
Synology Inc. BeeDrive Synology Inc.のBeeDriveにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2025-54160 2026-02-6 10:40 2025-12-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 3, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
461 - - - In the Linux kernel, the following vulnerability has been resolved: xfs: close crash window in attr dabtree inactivation When inactivating an inode with node-format extended attributes, xfs_attr3_n… New - CVE-2026-43053 2026-05-2 00:24 2026-05-2 Show GitHub Exploit DB Packet Storm
462 - - - In the Linux kernel, the following vulnerability has been resolved: net: correctly handle tunneled traffic on IPV6_CSUM GSO fallback NETIF_F_IPV6_CSUM only advertises support for checksum offload o… New - CVE-2026-43057 2026-05-2 00:24 2026-05-2 Show GitHub Exploit DB Packet Storm
463 6.5 MEDIUM
Network
wazuh wazuh Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.0.0 to before version 4.14.4, multiple heap-based out-of-bounds WRITE vulnerabilities exis… New CWE-124
CWE-191
Buffer Underflow
 Integer Underflow (Wrap or Wraparound)
CVE-2026-41499 2026-05-1 22:01 2026-04-30 Show GitHub Exploit DB Packet Storm
464 9.8 CRITICAL
Network
arc53 docsgpt DocsGPT is a GPT-powered chat for documentation. From version 0.15.0 to before version 0.16.0, an attacker accessing both the official DocsGPT website or any local and public deployment, can craft a … Update CWE-77
Command Injection
CVE-2026-26015 2026-05-1 21:56 2026-04-30 Show GitHub Exploit DB Packet Storm
465 7.5 HIGH
Network
postgresql postgresql_jdbc_driver pgjdbc is an open source postgresql JDBC Driver. From version 42.2.0 to before version 42.7.11, pgjdbc is vulnerable to a client-side denial of service during SCRAM-SHA-256 authentication. A maliciou… Update CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-42198 2026-05-1 21:51 2026-04-30 Show GitHub Exploit DB Packet Storm
466 7.8 HIGH
Local
freebsd freebsd An operator precedence bug in the kernel results in a scenario where a buffer overflow causes attacker-controlled data to overwrite adjacent execve(2) argument buffers. The bug may be exploitable by… New CWE-783
 Operator Precedence Logic Error
CVE-2026-7270 2026-05-1 21:47 2026-04-30 Show GitHub Exploit DB Packet Storm
467 7.5 HIGH
Network
freebsd freebsd Incorrect packet validation allowed unbounded recursion parsing SCTP chunk parameters. This can eventually result in a stack overflow and panic. Remote attackers can craft packets which cause affec… New CWE-674
CWE-791
 Uncontrolled Recursion
 Incomplete Filtering of Special Elements
CVE-2026-7164 2026-05-1 21:46 2026-04-30 Show GitHub Exploit DB Packet Storm
468 7.8 HIGH
Local
freebsd freebsd When exchanging data over a socket, libnv uses select(2) to wait for data to arrive. However, it does not verify whether the provided socket descriptor fits in select(2)'s file descriptor set size l… New CWE-121
Stack-based Buffer Overflow
CVE-2026-39457 2026-05-1 21:41 2026-04-30 Show GitHub Exploit DB Packet Storm
469 7.5 HIGH
Network
mozilla firefox
thunderbird
Information disclosure due to incorrect boundary conditions in the Audio/Video component. This vulnerability was fixed in Firefox 150.0.1, Firefox ESR 140.10.1, Firefox ESR 115.35.1, Thunderbird 150.… Update CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-7320 2026-05-1 21:32 2026-04-29 Show GitHub Exploit DB Packet Storm
470 7.3 HIGH
Network
mozilla firefox
thunderbird
Memory safety bugs present in Thunderbird ESR 140.10.0 and Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have… Update CWE-119
CWE-416
Incorrect Access of Indexable Resource ('Range Error') 
 Use After Free
CVE-2026-7322 2026-05-1 21:30 2026-04-29 Show GitHub Exploit DB Packet Storm