Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3071 9.8 緊急
Network
Blyss spiral-rs Blyssのspiral-rsにおけるメモリ管理ルーチンの不一致に関する脆弱性 CWE-762
メモリ管理ルーチンの不一致
CVE-2025-48755 2026-02-2 19:19 2025-05-24 Show GitHub Exploit DB Packet Storm
3072 9.8 緊急
Network
crates scsir cratesのscsirにおける型の取り違えに関する脆弱性 CWE-843
型の取り違え
CVE-2025-48756 2026-02-2 19:19 2025-05-24 Show GitHub Exploit DB Packet Storm
3073 9.8 緊急
Network
Qode Interactive MediClinic Qode InteractiveのWordPress用MediClinicにおけるパストラバーサルの脆弱性 CWE-35
パストラバーサル
CVE-2025-49295 2026-02-2 19:19 2025-06-9 Show GitHub Exploit DB Packet Storm
3074 9.8 緊急
Network
Qode Interactive GrandPrix Qode InteractiveのWordPress用GrandPrixにおけるパストラバーサルの脆弱性 CWE-35
パストラバーサル
CVE-2025-49296 2026-02-2 19:19 2025-06-9 Show GitHub Exploit DB Packet Storm
3075 9.8 緊急
Network
Qode Interactive Grill and Chow Qode InteractiveのWordPress用Grill and Chowにおけるパストラバーサルの脆弱性 CWE-35
パストラバーサル
CVE-2025-49297 2026-02-2 19:19 2025-06-9 Show GitHub Exploit DB Packet Storm
3076 9.8 緊急
Network
David Beazley PLY (Python Lex-Yacc) David BeazleyのPLY (Python Lex-Yacc)における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2025-56005 2026-02-2 19:19 2026-01-20 Show GitHub Exploit DB Packet Storm
3077 8.8 重要
Network
Ruijie Networks X30 Pro ファームウェア
RG-EW300T Firmware
Ruijie NetworksのRG-EW300T Firmware等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2025-56092 2026-02-2 19:19 2025-12-11 Show GitHub Exploit DB Packet Storm
3078 6.5 警告
Network
サイボウズ サイボウズ ガルーン サイボウズ Garoonにおける複数の脆弱性 CWE-79
CWE-Other
CVE-2026-20711
CVE-2026-22881
CVE-2026-22888
2026-02-2 12:21 2026-02-2 Show GitHub Exploit DB Packet Storm
3079 - - マイクロソフト Microsoft SharePoint Server
Microsoft SharePoint Enterprise Server
Microsoft Office
Office Deployment Tool
Microsoft Office Click-To-Run Remote Code Execution Vulnerability CWE-Other
その他
CVE-2026-20943 2026-02-2 12:15 2026-02-2 Show GitHub Exploit DB Packet Storm
3080 7.6 重要
Network
Sonatype Inc. Nexus Sonatype Nexus Repositoryにおけるサーバサイドリクエストフォージェリの脆弱性 CWE-Other
その他
CVE-2026-0600 2026-02-2 12:07 2026-02-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201 6.1 MEDIUM
Network
geovision gv-lpc2011_firmware
gv-lpc2211_firmware
Multiple reflected cross-site scripting (xss) vulnerabilities exist in the Web Interface / ssi.cgi functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted malicious url can lead to an ar… New CWE-79
Cross-site Scripting
CVE-2026-7371 2026-05-5 11:39 2026-05-4 Show GitHub Exploit DB Packet Storm
202 9.0 CRITICAL
Network
geovision gv-vms_firmware A stack overflow vulnerability exists in the WebCam Server Login functionality of GeoVision GV-VMS V20 20.0.2. A specially crafted HTTP request can lead to an arbitrary code execution. An attacker ca… New CWE-787
 Out-of-bounds Write
CVE-2026-7372 2026-05-5 11:38 2026-05-4 Show GitHub Exploit DB Packet Storm
203 7.5 HIGH
Network
apache http_server A NULL pointer dereference in mod_dav_lock in Apache HTTP Server 2.4.66 and earlier may allow an attacker to crash the server with a malicious request.mod_dav_lock is not used internally by mod_dav o… New CWE-476
 NULL Pointer Dereference
CVE-2026-29169 2026-05-5 11:36 2026-05-5 Show GitHub Exploit DB Packet Storm
204 6.5 MEDIUM
Network
absolute secure_access CVE-2026-40950 is a buffer overflow vulnerability in the Secure Access server prior to 14.50. Attackers with control of a modified client can send a specially crafted message to the server and caus… Update CWE-121
Stack-based Buffer Overflow
CVE-2026-40950 2026-05-5 11:32 2026-05-1 Show GitHub Exploit DB Packet Storm
205 4.4 MEDIUM
Local
absolute secure_access CVE-2026-40949 is a buffer overflow vulnerability in the Secure Access Windows client prior to 14.50. Attackers with local control of the Windows client can use it to trigger a denial of service. Update CWE-121
Stack-based Buffer Overflow
CVE-2026-40949 2026-05-5 11:32 2026-05-1 Show GitHub Exploit DB Packet Storm
206 5.5 MEDIUM
Local
absolute secure_access CVE-2026-33452 is a buffer overflow vulnerability in the Secure Access Windows client prior to 14.50. Attackers with local control of the Windows client can use it to ‘blue screen’ the system. Update CWE-121
Stack-based Buffer Overflow
CVE-2026-33452 2026-05-5 11:31 2026-05-1 Show GitHub Exploit DB Packet Storm
207 7.8 HIGH
Local
absolute secure_access CVE-2026-33451 is an arbitrary read/write vulnerability in the Secure Access Windows client prior to 14.50. Attackers with local control of the Windows client can send malformed data to an API and … Update CWE-125
Out-of-bounds Read
CVE-2026-33451 2026-05-5 11:31 2026-05-1 Show GitHub Exploit DB Packet Storm
208 5.5 MEDIUM
Local
absolute secure_access CVE-2026-33450 is an out of bounds read vulnerability in the Secure Access MacOS client prior to 14.50. Attackers with control of a modified server can send a malformed packet to the client causing… Update CWE-125
Out-of-bounds Read
CVE-2026-33450 2026-05-5 11:31 2026-05-1 Show GitHub Exploit DB Packet Storm
209 7.5 HIGH
Network
absolute secure_access CVE-2026-33449 is a buffer overflow in a message handling function of the Secure Access client prior to 14.50. Attackers with control of a modified server can send a cryptographically valid message… Update CWE-121
Stack-based Buffer Overflow
CVE-2026-33449 2026-05-5 11:27 2026-05-1 Show GitHub Exploit DB Packet Storm
210 3.3 LOW
Local
absolute secure_access CVE-2026-33448 is a format string vulnerability in the logging subsystem of Secure Access client for MacOS prior to 14.50. Attackers with control of a modified server can force the client to dump t… Update CWE-200
Information Exposure
CVE-2026-33448 2026-05-5 11:27 2026-05-1 Show GitHub Exploit DB Packet Storm