Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2431 7.8 重要
Local
BMC Software Control-m/server BMC SoftwareのControl-m/serverにおける複数の脆弱性 CWE-214
CWE-522
CWE-532
CVE-2025-48709 2026-02-4 18:41 2025-08-7 Show GitHub Exploit DB Packet Storm
2432 5.9 警告
Network
Haxx c-ares c-aresにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2025-62408 2026-02-4 18:41 2025-12-8 Show GitHub Exploit DB Packet Storm
2433 9.8 緊急
Network
ブロケード コミュニケーションズ システムズ株式会社 ASCG ブロケード コミュニケーションズ システムズ株式会社のASCGにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2025-6391 2026-02-4 18:41 2025-07-17 Show GitHub Exploit DB Packet Storm
2434 5.1 警告
Local
Fanvil Technology Co., Ltd. X210 Firmware Fanvil Technology Co., Ltd.のX210 Firmwareにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2025-64052 2026-02-4 18:41 2025-12-5 Show GitHub Exploit DB Packet Storm
2435 7.5 重要
Network
Fanvil Technology Co., Ltd. X210 Firmware Fanvil Technology Co., Ltd.のX210 Firmwareにおける古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2025-64053 2026-02-4 18:41 2025-12-5 Show GitHub Exploit DB Packet Storm
2436 9.6 緊急
Network
Fanvil Technology Co., Ltd. X210 Firmware Fanvil Technology Co., Ltd.のX210 Firmwareにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-64054 2026-02-4 18:41 2025-12-5 Show GitHub Exploit DB Packet Storm
2437 9.8 緊急
Network
Fanvil Technology Co., Ltd. X210 Firmware Fanvil Technology Co., Ltd.のX210 Firmwareにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2025-64055 2026-02-4 18:41 2025-12-3 Show GitHub Exploit DB Packet Storm
2438 4.3 警告
Adjacent
Fanvil Technology Co., Ltd. X210 Firmware Fanvil Technology Co., Ltd.のX210 Firmwareにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2025-64056 2026-02-4 18:41 2025-12-5 Show GitHub Exploit DB Packet Storm
2439 8.3 重要
Adjacent
Fanvil Technology Co., Ltd. X210 Firmware Fanvil Technology Co., Ltd.のX210 Firmwareにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2025-64057 2026-02-4 18:41 2025-12-5 Show GitHub Exploit DB Packet Storm
2440 7.5 重要
Network
Argo Workflows project Argo Workflows argoprojのArgo Workflowsにおける複数の脆弱性 CWE-23
CWE-59
CWE-78
CVE-2025-66626 2026-02-4 18:41 2025-12-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 1, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
181 4.4 MEDIUM
Local
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 1.0.0 to before version 4.14.4, a heap-based out-of-bounds WRITE occurs in GetAlertData, res… New CWE-124
CWE-191
Buffer Underflow
 Integer Underflow (Wrap or Wraparound)
CVE-2026-26204 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
182 6.5 MEDIUM
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.0.0 to before version 4.14.4, Wazuh's server API brute-force protection for POST /security… New CWE-307
CWE-362
CWE-367
mproper Restriction of Excessive Authentication Attempts
Race Condition
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-26206 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
183 6.5 MEDIUM
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.8.0 to before version 4.14.4, a stack-based buffer overflow exists in print_hex_string() i… New CWE-121
CWE-400
Stack-based Buffer Overflow
 Uncontrolled Resource Consumption
CVE-2026-28221 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
184 9.0 CRITICAL
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.4.0 to before version 4.14.4, a path traversal vulnerability in Wazuh's cluster synchroniz… New CWE-22
CWE-73
Path Traversal
 External Control of File Name or Path
CVE-2026-30893 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
185 6.5 MEDIUM
Network
- - Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.0.0 to before version 4.14.4, multiple heap-based out-of-bounds WRITE vulnerabilities exis… New CWE-124
CWE-191
Buffer Underflow
 Integer Underflow (Wrap or Wraparound)
CVE-2026-41499 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
186 9.8 CRITICAL
Network
- - Tenda W308R v2 V5.07.48 contains a cookie session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient session validation. Attackers can send… New CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25316 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
187 9.8 CRITICAL
Network
- - Tenda W3002R/A302/W309R wireless routers version V5.07.64_en contain a cookie session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient se… New CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25317 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
188 9.8 CRITICAL
Network
- - Tenda FH303/A300 firmware V5.07.68_EN contains a session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient cookie validation. Attackers ca… New CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25318 2026-05-1 00:11 2026-04-30 Show GitHub Exploit DB Packet Storm
189 5.5 MEDIUM
Local
- - ICMPv6 PvD protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service New CWE-674
 Uncontrolled Recursion
CVE-2026-5299 2026-05-1 00:10 2026-04-30 Show GitHub Exploit DB Packet Storm
190 5.5 MEDIUM
Local
- - AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service New CWE-674
 Uncontrolled Recursion
CVE-2026-5401 2026-05-1 00:10 2026-04-30 Show GitHub Exploit DB Packet Storm