|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 6, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 2471 | 7.5 |
重要
Network |
Html2Pdf project | Html2Pdf | Apryse Software Inc.のHTML2PDFにおけるサーバサイドのリクエストフォージェリの脆弱性 |
CWE-918
サーバサイドリクエストフォージェリ |
CVE-2025-56589 | 2026-02-4 18:40 | 2026-01-22 | Show | GitHub Exploit DB Packet Storm |
| 2472 | 8.8 |
重要
Network |
ZwiiCMS | ZwiiCMS | ZwiiCMSにおけるアクセス制御に関する脆弱性 |
CWE-284
不適切なアクセス制御 |
CVE-2025-57130 | 2026-02-4 18:40 | 2025-11-5 | Show | GitHub Exploit DB Packet Storm |
| 2473 | 5.4 |
警告
Network |
The Starware | WorklogPRO | The StarwareのWorklogPROにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2025-57681 | 2026-02-4 18:40 | 2026-01-21 | Show | GitHub Exploit DB Packet Storm |
| 2474 | 7.5 |
重要
Network |
ollama | ollama | ollamaにおける複数の脆弱性 |
CWE-20 CWE-400 |
CVE-2025-66959 | 2026-02-4 18:40 | 2026-01-21 | Show | GitHub Exploit DB Packet Storm |
| 2475 | 7.5 |
重要
Network |
ollama | ollama | ollamaにおける複数の脆弱性 |
CWE-20 CWE-400 |
CVE-2025-66960 | 2026-02-4 18:40 | 2026-01-21 | Show | GitHub Exploit DB Packet Storm |
| 2476 | 7.5 |
重要
Network |
Absolute Software | secure access | Absolute Softwareのsecure accessにおけるリソースの枯渇に関する脆弱性 |
CWE-400
リソースの枯渇 |
CVE-2026-0517 | 2026-02-4 18:40 | 2026-01-17 | Show | GitHub Exploit DB Packet Storm |
| 2477 | 4.8 |
警告
Network |
Absolute Software | secure access | Absolute Softwareのsecure accessにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2026-0518 | 2026-02-4 18:40 | 2026-01-17 | Show | GitHub Exploit DB Packet Storm |
| 2478 | 3.4 |
低
Local |
Absolute Software | secure access | Absolute Softwareのsecure accessにおけるログファイルからの情報漏えいに関する脆弱性 |
CWE-532
ログファイルからの情報漏えい |
CVE-2026-0519 | 2026-02-4 18:39 | 2026-01-17 | Show | GitHub Exploit DB Packet Storm |
| 2479 | 8.8 |
重要
Network |
angeljudesuarez | School Management System Project In PHP Source Code | Angel Jude Reyes SuarezのSchool Management System Project In PHP Source Codeにおける複数の脆弱性 |
CWE-74 CWE-89 |
CVE-2026-1551 | 2026-02-4 18:39 | 2026-01-29 | Show | GitHub Exploit DB Packet Storm |
| 2480 | 9.8 |
緊急
Network |
angeljudesuarez | School Management System Project In PHP Source Code | Angel Jude Reyes SuarezのSchool Management System Project In PHP Source Codeにおける複数の脆弱性 |
CWE-74 CWE-89 |
CVE-2026-1589 | 2026-02-4 18:39 | 2026-01-29 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 6, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 641 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | TLS protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 allows denial of service |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2026-6528 | 2026-05-2 04:28 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 642 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | iLBC audio codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-122
Heap-based Buffer Overflow |
CVE-2026-6529 | 2026-05-2 04:28 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 643 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | DCP-ETSI protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-122
Heap-based Buffer Overflow |
CVE-2026-6530 | 2026-05-2 04:28 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 644 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | Monero protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-674
Uncontrolled Recursion |
CVE-2026-5409 | 2026-05-2 04:27 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 645 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | OpenFlow v5 protocol dissector infinite loops in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2026-6521 | 2026-05-2 04:27 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 646 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | RPKI-Router protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2026-6522 | 2026-05-2 04:27 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 647 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | GNW protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2026-6523 | 2026-05-2 04:27 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 648 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | MySQL protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-824
Access of Uninitialized Pointer |
CVE-2026-6524 | 2026-05-2 04:27 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 649 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | ICMPv6 PvD protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-674
Uncontrolled Recursion |
CVE-2026-5299 | 2026-05-2 04:26 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 650 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-674
Uncontrolled Recursion |
CVE-2026-5401 | 2026-05-2 04:26 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |