Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2301 9.8 緊急
Network
lfprojects mlflow lfprojectsのmlflowにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2025-15379 2026-04-30 12:17 2026-03-30 Show GitHub Exploit DB Packet Storm
2302 7.1 重要
Network
lfprojects mlflow lfprojectsのmlflowにおける情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2025-15381 2026-04-30 12:17 2026-03-27 Show GitHub Exploit DB Packet Storm
2303 7.5 重要
Network
Apache Software Foundation Apache Thrift Apache Software FoundationのApache Thriftにおけるメモリ管理ルーチンの不一致に関する脆弱性 CWE-762
メモリ管理ルーチンの不一致
CVE-2025-48431 2026-04-30 12:17 2026-04-28 Show GitHub Exploit DB Packet Storm
2304 6.5 警告
Adjacent
ジュニパーネットワークス Junos OS Evolved ジュニパーネットワークスのJunos OS Evolvedにおける古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2025-59969 2026-04-30 12:17 2026-04-9 Show GitHub Exploit DB Packet Storm
2305 7.8 重要
Local
huggingface transformers huggingfaceのtransformersにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-1839 2026-04-30 12:17 2026-04-7 Show GitHub Exploit DB Packet Storm
2306 6.1 警告
Network
シスコシステムズ Cisco Unity Connection シスコシステムズのCisco Unity Connectionにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-20059 2026-04-30 12:17 2026-04-15 Show GitHub Exploit DB Packet Storm
2307 4.7 警告
Network
シスコシステムズ Cisco Unity Connection シスコシステムズのCisco Unity Connectionにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-20060 2026-04-30 12:17 2026-04-15 Show GitHub Exploit DB Packet Storm
2308 6.5 警告
Network
シスコシステムズ Cisco Unity Connection シスコシステムズのCisco Unity ConnectionにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-20061 2026-04-30 12:17 2026-04-15 Show GitHub Exploit DB Packet Storm
2309 6.5 警告
Local
シスコシステムズ Cisco Firepower Threat Defense ソフトウェア シスコシステムズのCisco Firepower Threat Defense ソフトウェアにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-20064 2026-04-30 12:17 2026-03-4 Show GitHub Exploit DB Packet Storm
2310 6.5 警告
Network
シスコシステムズ Cisco Unity Connection シスコシステムズのCisco Unity Connectionにおける相対パストラバーサルの脆弱性 CWE-23
相対的パストラバーサル
CVE-2026-20078 2026-04-30 12:17 2026-04-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1801 6.5 MEDIUM
Network
open5gs open5gs A vulnerability was determined in Open5GS up to 2.7.7. The affected element is the function ogs_nas_parse_qos_rules of the component SMF. Executing a manipulation can lead to denial of service. The a… CWE-404
 Improper Resource Shutdown or Release
CVE-2026-8270 2026-05-13 02:19 2026-05-11 Show GitHub Exploit DB Packet Storm
1802 6.7 MEDIUM
Local
dell elastic_cloud_storage
objectscale
Dell ECS versions 3.8.1.0 through 3.8.1.7 and Dell ObjectScale versions prior to 4.3.0.0, contains an improper privilege management vulnerability in the OS. A high privileged attacker with local acce… CWE-269
 Improper Privilege Management
CVE-2026-26946 2026-05-13 02:19 2026-05-11 Show GitHub Exploit DB Packet Storm
1803 9.8 CRITICAL
Network
dell elastic_cloud_storage
objectscale
Dell ECS versions 3.8.1.0 through 3.8.1.7 and Dell ObjectScale versions prior to 4.3.0.0, contains an improper neutralization of formula elements in a CSV File vulnerability in the UI. An unauthentic… CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2026-35157 2026-05-13 02:19 2026-05-11 Show GitHub Exploit DB Packet Storm
1804 7.8 HIGH
Local
dell elastic_cloud_storage
objectscale
Dell ECS versions 3.8.1.0 through 3.8.1.7 and Dell ObjectScale versions prior to 4.3.0.0, contains a use of hard-coded credentials vulnerability. An unauthenticated attacker with local access could p… CWE-798
 Use of Hard-coded Credentials
CVE-2026-40636 2026-05-13 02:19 2026-05-11 Show GitHub Exploit DB Packet Storm
1805 6.5 MEDIUM
Network
open5gs open5gs A vulnerability was determined in Open5GS up to 2.7.7. This affects the function gsm_handle_pdu_session_modification_qos_flow_descriptions of the file src/smf/gsm-handler.c of the component SMF. Exec… CWE-404
 Improper Resource Shutdown or Release
CVE-2026-8288 2026-05-13 02:18 2026-05-11 Show GitHub Exploit DB Packet Storm
1806 6.5 MEDIUM
Network
open5gs open5gs A vulnerability was identified in Open5GS up to 2.7.7. This vulnerability affects the function smf_nsmf_handle_update_data_in_vsmf of the file /src/smf/nsmf-handler.c of the component SMF. The manipu… CWE-404
 Improper Resource Shutdown or Release
CVE-2026-8289 2026-05-13 02:18 2026-05-11 Show GitHub Exploit DB Packet Storm
1807 7.5 HIGH
Network
apple macos A path handling issue was addressed with improved logic. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5. An app may be able to observe unprotected user data. CWE-552
 Files or Directories Accessible to External Parties
CVE-2026-39871 2026-05-13 02:17 2026-05-12 Show GitHub Exploit DB Packet Storm
1808 8.8 HIGH
Local
apple ipados
iphone_os
macos
tvos
visionos
watchos
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. A mali… CWE-269
 Improper Privilege Management
CVE-2026-28995 2026-05-13 02:17 2026-05-12 Show GitHub Exploit DB Packet Storm
1809 7.5 HIGH
Network
apple ipados
iphone_os
macos
tvos
watchos
A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5,… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2026-28987 2026-05-13 02:16 2026-05-12 Show GitHub Exploit DB Packet Storm
1810 7.5 HIGH
Network
apple ipados
iphone_os
macos
tvos
watchos
A race condition was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5, … CWE-362
Race Condition
CVE-2026-28986 2026-05-13 02:16 2026-05-12 Show GitHub Exploit DB Packet Storm