Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2411 4.5 警告
Network
Hitachi Energy Relion 670 ファームウェア
Relion 650 ファームウェア
Hitachi Energy 製 Relion 670、650 および SAM600-IO Series におけるデータの信頼性確認が不十分な脆弱性 CWE-345
データの信頼性についての不十分な検証
CVE-2022-3864 2026-02-5 14:30 2023-03-10 Show GitHub Exploit DB Packet Storm
2412 7.5 重要
Network
Hitachi Energy Relion 670 ファームウェア
Relion 650 ファームウェア
Hitachi Energy 製 IEC 61850 MMS-Server におけるリソースの不適切なシャットダウンまたはリリースの脆弱性 CWE-404
リソースの不適切なシャットダウンおよびリリース
CVE-2022-3353 2026-02-5 14:29 2023-03-31 Show GitHub Exploit DB Packet Storm
2413 4.7 警告
Network
web2py web2py web2pyにおけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2026-25198 2026-02-5 14:03 2026-02-5 Show GitHub Exploit DB Packet Storm
2414 - - RISS SRL MOMA Seismic Station RISS SRL製MOMA Seismic Stationにおける重要な機能に対する認証の欠如の脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-1632 2026-02-5 12:32 2026-02-4 Show GitHub Exploit DB Packet Storm
2415 - - Avation Avation Light Engine Pro Avation Light Engine Proにおける重要な機能に対する認証の欠如の脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-1341 2026-02-5 12:32 2026-02-4 Show GitHub Exploit DB Packet Storm
2416 7.5 重要
Network
Shenzhen Tenda Technology Co.,Ltd. D151
D301
Shenzhen Tenda Technology Co.,Ltd.のD151等の複数製品における重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2021-47802 2026-02-4 18:42 2026-01-21 Show GitHub Exploit DB Packet Storm
2417 7.5 重要
Network
yodinfo Mini Mouse yodinfoのMini Mouseにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2021-47849 2026-02-4 18:42 2026-01-21 Show GitHub Exploit DB Packet Storm
2418 7.5 重要
Network
yodinfo Mini Mouse yodinfoのMini Mouseにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2021-47850 2026-02-4 18:42 2026-01-21 Show GitHub Exploit DB Packet Storm
2419 9.8 緊急
Network
yodinfo Mini Mouse yodinfoのMini MouseにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2021-47851 2026-02-4 18:42 2026-01-21 Show GitHub Exploit DB Packet Storm
2420 7.5 重要
Network
クアルコム MSM8608 ファームウェア
APQ8017 ファームウェア
qcn6224 ファームウェア
Snapdragon 210 Processor Firmware
fastconnect 7800 ファームウェア
snapdragon 425 mobile …
クアルコムのQualcomm 205 Mobile Platform ファームウェア等の複数製品におけるバッファオーバーリードの脆弱性 CWE-126
バッファオーバーリード
CVE-2024-23358 2026-02-4 18:42 2024-09-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
711 7.1 HIGH
Network
dell idrac10_firmware Dell iDRAC10, versions 1.20.70.50 and 1.30.05.10, contains an Insufficiently Protected Credentials vulnerability. A race condition vulnerability exists that could allow an authenticated low‑privilege… CWE-522
 Insufficiently Protected Credentials
CVE-2026-35155 2026-05-2 02:40 2026-04-29 Show GitHub Exploit DB Packet Storm
712 6.1 MEDIUM
Network
wso2 identity_server The authentication endpoint accepts user-supplied input without enforcing expected validation constraints, leading to a lack of proper output encoding. This allows for the injection of malicious Java… CWE-79
Cross-site Scripting
CVE-2025-10503 2026-05-2 02:40 2026-04-29 Show GitHub Exploit DB Packet Storm
713 6.4 MEDIUM
Network
traefik traefik Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.43, 3.6.14, and 3.7.0-rc.2, there is a potential vulnerability in Traefik's Kubernetes CRD provider cross-namespace isolatio… CWE-653
CWE-863
 Improper Isolation or Compartmentalization
 Incorrect Authorization
CVE-2026-41174 2026-05-2 02:39 2026-05-1 Show GitHub Exploit DB Packet Storm
714 5.5 MEDIUM
Local
samsung android Insufficient verification of data authenticity in PackageManagerService prior to SMR Mar-2026 Release 1 allows local attackers to modify the installation restriction of specific application. NVD-CWE-noinfo
CVE-2026-21023 2026-05-2 02:39 2026-04-29 Show GitHub Exploit DB Packet Storm
715 3.7 LOW
Network
traefik traefik Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.43, 3.6.14, and 3.7.0-rc.2, there is a timing side-channel vulnerability in Traefik's BasicAuth middleware that allows an at… CWE-208
 Information Exposure Through Timing Discrepancy
CVE-2026-41263 2026-05-2 02:37 2026-05-1 Show GitHub Exploit DB Packet Storm
716 4.3 MEDIUM
Network
- - A vulnerability has been found in Open5GS up to 2.7.7. This vulnerability affects the function amf_nsmf_pdusession_handle_update_sm_context of the file /src/amf/nsmf-handler.c of the component AMF. T… CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7587 2026-05-2 02:16 2026-05-2 Show GitHub Exploit DB Packet Storm
717 - - - AGL agl-service-can-low-level contains a stack buffer overflow in the uds-c library. The send_diagnostic_request function in uds.c allocates a 6-byte stack buffer (MAX_DIAGNOSTIC_PAYLOAD_SIZE=6) but … - CVE-2026-42485 2026-05-2 02:16 2026-05-2 Show GitHub Exploit DB Packet Storm
718 - - - Buffer overflow vulnerability in socketcand 0.4.2 in file socketcand.c in function main allows attackers to cause a denial of service or other unspecified impacts via crafted bus_name. - CVE-2026-37538 2026-05-2 02:16 2026-05-2 Show GitHub Exploit DB Packet Storm
719 8.1 HIGH
Adjacent
- - collin80/Open-SAE-J1939 thru commit 744024d4306bc387857dfce439558336806acb06 (2023-03-08) contains an integer underflow leading to out-of-bounds write in Transport Protocol Data Transfer handling. At… - CVE-2026-37537 2026-05-2 02:16 2026-05-2 Show GitHub Exploit DB Packet Storm
720 8.8 HIGH
Adjacent
- - miaofng/uds-c commit e506334e270d77b20c0bc259ac6c7d8c9b702b7a (2016-10-05) contains a stack buffer overflow in send_diagnostic_request. A 6-byte stack buffer (MAX_DIAGNOSTIC_PAYLOAD_SIZE=6) receives … - CVE-2026-37536 2026-05-2 02:16 2026-05-2 Show GitHub Exploit DB Packet Storm