Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239241 7.5 危険 mxbb - mxBB 用の Shotcast モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2313 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
239242 6.8 警告 news manager deluxe - NMDeluxe の includes/footer.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2303 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
239243 10 危険 ヒューレット・パッカード - HP OpenView Storage Data Protector における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2007-2281 2012-09-25 16:47 2009-12-16 Show GitHub Exploit DB Packet Storm
239244 10 危険 ヒューレット・パッカード - HP OpenView Storage Data Protector におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-2280 2012-09-25 16:47 2009-12-16 Show GitHub Exploit DB Packet Storm
239245 9.3 危険 マイクロソフト - Microsoft IAG で使用される WhlMgr.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-2238 2012-09-25 16:47 2009-04-16 Show GitHub Exploit DB Packet Storm
239246 7.5 危険 マイクロソフト - Microsoft Internet Explorer 7.0 の Digest Authentication サポートにおける CRLF インジェクションの脆弱性 - CVE-2007-2291 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
239247 7.8 危険 jack slocum - Ext JS の examples/layout/feed-proxy.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2285 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
239248 4.6 警告 ヒューレット・パッカード - HP StorageWorks Command View Advanced Edition における他のアカウントへアクセスされる脆弱性 - CVE-2007-2275 2012-09-25 16:47 2007-03-28 Show GitHub Exploit DB Packet Storm
239249 7.8 危険 Opera Software ASA - Opera の BitTorrent 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2007-2274 2012-09-25 16:47 2007-04-25 Show GitHub Exploit DB Packet Storm
239250 7.8 危険 シスコシステムズ (Linksys) - Linksys SPA941 VoIP Phone におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2270 2012-09-25 16:47 2007-04-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2201 8.7 HIGH
Network
- - An authenticated attacker with the Resource Administrator or Administrator role can create SNMP configuration objects through iControl SOAP resulting in privilege escalation.  Note: Software versions… CWE-78
OS Command 
CVE-2026-42924 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2202 5.8 MEDIUM
Network
- - When NGINX Open Source is configured to proxy HTTP/2 traffic by setting proxy_http_version to 2, and also uses proxy_set_body, an attacker may be able to inject frame headers and payload bytes to the… CWE-172
 Encoding Error
CVE-2026-42926 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2203 8.7 HIGH
Network
- - When running in Appliance mode, an authenticated attacker assigned the 'Administrator' role may be able to bypass Appliance mode restrictions on a BIG-IP system.  Note: Software versions which have … CWE-35
 Path Traversal: '.../...//'
CVE-2026-42930 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2204 4.8 MEDIUM
Network
- - NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When charset, source_charset, and charset_map and proxy_pass with disabled buffering ("off") directives ar… CWE-125
Out-of-bounds Read
CVE-2026-42934 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2205 6.5 MEDIUM
Network
- - Incorrect permission assignment vulnerabilities exist in BIG-IP and BIG-IQ TMOS Shell (tmsh) arp and ndp commands, and in BIG-IP iControl REST. These vulnerabilities may allow an authenticated attack… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2026-42937 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2206 6.5 MEDIUM
Network
- - A vulnerability exists in the ngx_http_scgi_module and ngx_http_uwsgi_module modules that may result in excessive memory allocation or an over-read of data. When scgi_pass or uwsgi_pass is configured… CWE-789
CWE-823
 Memory Allocation with Excessive Size Value
 Use of Out-of-range Pointer Offset
CVE-2026-42946 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2207 8.8 HIGH
Network
- - A potential vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow a remote authenticated user on the local network to execute arbitrary commands on the device. CWE-78
OS Command 
CVE-2026-6281 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2208 8.1 HIGH
Network
- - A potential improper file path validation vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow a remote authenticated user to move or access files belonging to ot… CWE-22
Path Traversal
CVE-2026-6282 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2209 4.8 MEDIUM
Network
- - aria2c accepts a server certificate with incorrect Extended Key Usage (EKU). If the attackers compromise a certificate (with the associated private key) issued for a different purpose, they may be ab… CWE-295
Improper Certificate Validation 
CVE-2026-8367 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
2210 - - - Rejected reason: This CVE ID has been rejected or withdrawn. - CVE-2026-8449 2026-05-14 01:17 2026-05-13 Show GitHub Exploit DB Packet Storm