Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220671 5 警告 オラクル - Oracle Siebel CRM の Siebel Core - EAI における Web Services に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-3841 2013-10-17 18:58 2013-10-15 Show GitHub Exploit DB Packet Storm
220672 4 警告 オラクル - Oracle Siebel CRM の Siebel Core - EAI における Web Services に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-3840 2013-10-17 18:57 2013-10-15 Show GitHub Exploit DB Packet Storm
220673 4 警告 オラクル - Oracle Siebel CRM の Siebel Server Remote における File System Management に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-3832 2013-10-17 18:57 2013-10-15 Show GitHub Exploit DB Packet Storm
220674 5 警告 オラクル - Oracle Database Server の Core RDBMS における脆弱性 CWE-noinfo
情報不足
CVE-2013-3826 2013-10-17 18:14 2013-10-15 Show GitHub Exploit DB Packet Storm
220675 6.4 警告 オラクル - Oracle Database Server の XML Parser における脆弱性 CWE-noinfo
情報不足
CVE-2013-5771 2013-10-17 18:13 2013-10-15 Show GitHub Exploit DB Packet Storm
220676 4 警告 オラクル - Oracle Primavera Products Suite の Primavera P6 Enterprise Project Portfolio Management における Web Access に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-3766 2013-10-17 18:10 2013-10-15 Show GitHub Exploit DB Packet Storm
220677 5 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools における Portal に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5794 2013-10-17 18:08 2013-10-15 Show GitHub Exploit DB Packet Storm
220678 4 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools における PIA Core Technology に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5779 2013-10-17 18:08 2013-10-15 Show GitHub Exploit DB Packet Storm
220679 5 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools における XML Publisher に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5765 2013-10-17 18:08 2013-10-15 Show GitHub Exploit DB Packet Storm
220680 5 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools における Integration Broker に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-3835 2013-10-17 18:08 2013-10-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
931 8.8 HIGH
Network
vmware spring_grpc When an authenticated user is denied access to a gRPC method, their authenticated identity remains bound to the gRPC worker thread and can be inherited by a subsequent unauthenticated request on the … CWE-653
 Improper Isolation or Compartmentalization
CVE-2026-40968 2026-04-30 22:32 2026-04-29 Show GitHub Exploit DB Packet Storm
932 8.8 HIGH
Network
dlink dir-825m_firmware A vulnerability has been found in D-Link DIR-825M 1.1.12. This vulnerability affects the function sub_4151FC of the file /boafrm/formVpnConfigSetup. The manipulation of the argument submit-url leads … CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7288 2026-04-30 22:27 2026-04-29 Show GitHub Exploit DB Packet Storm
933 5.3 MEDIUM
Network
vmware spring_grpc The raw message of every server-side AuthenticationException is returned to the unauthenticated remote caller in the gRPC status description. This allows an attacker to obtain information about the a… CWE-209
Information Exposure Through an Error Message
CVE-2026-40969 2026-04-30 22:24 2026-04-29 Show GitHub Exploit DB Packet Storm
934 8.8 HIGH
Network
dlink dir-825m_firmware A vulnerability was found in D-Link DIR-825M 1.1.12. This issue affects the function sub_414BA8 of the file /boafrm/formWanConfigSetup. The manipulation of the argument submit-url results in buffer o… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7289 2026-04-30 22:19 2026-04-29 Show GitHub Exploit DB Packet Storm
935 5.3 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.3.31 performs Discord audio preflight transcription before validating member authorization, allowing unauthenticated attackers to consume resources. Remote attackers can trigger … CWE-408
 Incorrect Behavior Order: Early Amplification
CVE-2026-41374 2026-04-30 22:19 2026-04-29 Show GitHub Exploit DB Packet Storm
936 9.4 CRITICAL
Network
dlink di-8100_firmware A vulnerability was found in D-Link DI-8100 16.07.26A1. This affects the function tgfile_htm of the file tgfile.htm of the component CGI Endpoint. The manipulation of the argument fn results in buffe… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7248 2026-04-30 22:18 2026-04-28 Show GitHub Exploit DB Packet Storm
937 4.3 MEDIUM
Network
- - VideoFlow Digital Video Protection DVP 2.10 contains an authenticated remote code execution vulnerability that allows authenticated attackers to execute arbitrary system commands by exploiting a cros… CWE-352
 Origin Validation Error
CVE-2018-25310 2026-04-30 22:16 2026-04-30 Show GitHub Exploit DB Packet Storm
938 7.2 HIGH
Network
dlink di-8100_firmware A vulnerability has been found in D-Link DI-8100 16.07.26A1. Affected by this issue is the function file_exten_asp of the file file_exten.asp of the component File Extension Handler. The manipulation… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7247 2026-04-30 22:09 2026-04-28 Show GitHub Exploit DB Packet Storm
939 6.6 MEDIUM
Network
- - OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-default configuration that has a console interface. CWE-829
 Inclusion of Functionality from Untrusted Control Sphere
CVE-2026-42510 2026-04-30 13:16 2026-04-28 Show GitHub Exploit DB Packet Storm
940 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2026-6221 2026-04-30 08:16 2026-04-30 Show GitHub Exploit DB Packet Storm