Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2421 9.8 緊急
Network
Honeywell International Inc. LenelS2 NetBox Honeywell International Inc.のLenelS2 NetBoxにおけるハードコードされたパスワードの使用に関する脆弱性 CWE-259
パスワードがハードコーディングされている
CVE-2024-2420 2026-02-4 18:42 2024-05-30 Show GitHub Exploit DB Packet Storm
2422 9.8 緊急
Network
Honeywell International Inc. LenelS2 NetBox Honeywell International Inc.のLenelS2 NetBoxにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2024-2421 2026-02-4 18:42 2024-05-30 Show GitHub Exploit DB Packet Storm
2423 8.8 重要
Network
Honeywell International Inc. LenelS2 NetBox Honeywell International Inc.のLenelS2 NetBoxにおける引数の挿入または変更に関する脆弱性 CWE-88
引数の挿入または変更
CVE-2024-2422 2026-02-4 18:42 2024-05-30 Show GitHub Exploit DB Packet Storm
2424 6.1 警告
Network
Tiptap tiptap/extension-link Tiptapのtiptap/extension-linkにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-14284 2026-02-4 18:42 2025-12-9 Show GitHub Exploit DB Packet Storm
2425 7.5 重要
Network
クアルコム SD730 ファームウェア
Snapdragon 820 Automotive Platform ファームウェア
snapdragon 680 4g mobile platform ファームウェア
c-v2x 9150 ファームウェア
QCM4290&n…
クアルコムの9206 lte modem ファームウェア等の複数製品におけるバッファオーバーリードの脆弱性 CWE-126
バッファオーバーリード
CVE-2025-21429 2026-02-4 18:42 2025-04-7 Show GitHub Exploit DB Packet Storm
2426 7.8 重要
Local
クアルコム fastconnect 6900 ファームウェア
qcs5430 ファームウェア
WCD9370 ファームウェア
WCD9380 ファームウェア
Snapdragon 8cx Compute Platform (SC8180X-AB) ファームウェア
Snapdrag…
クアルコムのfastconnect 6700 ファームウェア等の複数製品における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2025-21439 2026-02-4 18:42 2025-04-7 Show GitHub Exploit DB Packet Storm
2427 9 緊急
Network
NVIDIA NVIDIA Isaac Lab NVIDIAのNVIDIA Isaac Labにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2025-33210 2026-02-4 18:42 2025-12-16 Show GitHub Exploit DB Packet Storm
2428 8.4 重要
Local
NVIDIA NVIDIA Resiliency Extension NVIDIAのNVIDIA Resiliency ExtensionにおけるUNIX Symbolic Link のフォローに関する脆弱性 CWE-61
UNIX Symbolic Link のフォロー
CVE-2025-33225 2026-02-4 18:42 2025-12-16 Show GitHub Exploit DB Packet Storm
2429 7 重要
Local
NVIDIA NVIDIA Resiliency Extension NVIDIAのNVIDIA Resiliency Extensionにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2025-33235 2026-02-4 18:42 2025-12-16 Show GitHub Exploit DB Packet Storm
2430 4.3 警告
Network
ZwiiCMS ZwiiCMS ZwiiCMSにおける複数の脆弱性 CWE-667
CWE-863
CVE-2025-34467 2026-02-4 18:41 2025-12-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
711 7.1 HIGH
Network
dell idrac10_firmware Dell iDRAC10, versions 1.20.70.50 and 1.30.05.10, contains an Insufficiently Protected Credentials vulnerability. A race condition vulnerability exists that could allow an authenticated low‑privilege… CWE-522
 Insufficiently Protected Credentials
CVE-2026-35155 2026-05-2 02:40 2026-04-29 Show GitHub Exploit DB Packet Storm
712 6.1 MEDIUM
Network
wso2 identity_server The authentication endpoint accepts user-supplied input without enforcing expected validation constraints, leading to a lack of proper output encoding. This allows for the injection of malicious Java… CWE-79
Cross-site Scripting
CVE-2025-10503 2026-05-2 02:40 2026-04-29 Show GitHub Exploit DB Packet Storm
713 6.4 MEDIUM
Network
traefik traefik Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.43, 3.6.14, and 3.7.0-rc.2, there is a potential vulnerability in Traefik's Kubernetes CRD provider cross-namespace isolatio… CWE-653
CWE-863
 Improper Isolation or Compartmentalization
 Incorrect Authorization
CVE-2026-41174 2026-05-2 02:39 2026-05-1 Show GitHub Exploit DB Packet Storm
714 5.5 MEDIUM
Local
samsung android Insufficient verification of data authenticity in PackageManagerService prior to SMR Mar-2026 Release 1 allows local attackers to modify the installation restriction of specific application. NVD-CWE-noinfo
CVE-2026-21023 2026-05-2 02:39 2026-04-29 Show GitHub Exploit DB Packet Storm
715 3.7 LOW
Network
traefik traefik Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.43, 3.6.14, and 3.7.0-rc.2, there is a timing side-channel vulnerability in Traefik's BasicAuth middleware that allows an at… CWE-208
 Information Exposure Through Timing Discrepancy
CVE-2026-41263 2026-05-2 02:37 2026-05-1 Show GitHub Exploit DB Packet Storm
716 4.3 MEDIUM
Network
- - A vulnerability has been found in Open5GS up to 2.7.7. This vulnerability affects the function amf_nsmf_pdusession_handle_update_sm_context of the file /src/amf/nsmf-handler.c of the component AMF. T… CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7587 2026-05-2 02:16 2026-05-2 Show GitHub Exploit DB Packet Storm
717 - - - AGL agl-service-can-low-level contains a stack buffer overflow in the uds-c library. The send_diagnostic_request function in uds.c allocates a 6-byte stack buffer (MAX_DIAGNOSTIC_PAYLOAD_SIZE=6) but … - CVE-2026-42485 2026-05-2 02:16 2026-05-2 Show GitHub Exploit DB Packet Storm
718 - - - Buffer overflow vulnerability in socketcand 0.4.2 in file socketcand.c in function main allows attackers to cause a denial of service or other unspecified impacts via crafted bus_name. - CVE-2026-37538 2026-05-2 02:16 2026-05-2 Show GitHub Exploit DB Packet Storm
719 8.1 HIGH
Adjacent
- - collin80/Open-SAE-J1939 thru commit 744024d4306bc387857dfce439558336806acb06 (2023-03-08) contains an integer underflow leading to out-of-bounds write in Transport Protocol Data Transfer handling. At… - CVE-2026-37537 2026-05-2 02:16 2026-05-2 Show GitHub Exploit DB Packet Storm
720 8.8 HIGH
Adjacent
- - miaofng/uds-c commit e506334e270d77b20c0bc259ac6c7d8c9b702b7a (2016-10-05) contains a stack buffer overflow in send_diagnostic_request. A 6-byte stack buffer (MAX_DIAGNOSTIC_PAYLOAD_SIZE=6) receives … - CVE-2026-37536 2026-05-2 02:16 2026-05-2 Show GitHub Exploit DB Packet Storm