Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1361 7.5 重要
Network
Apache Software Foundation Apache Neethi Apache Software FoundationのApache Neethiにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-42402 2026-05-7 12:01 2026-05-1 Show GitHub Exploit DB Packet Storm
1362 7.5 重要
Network
Apache Software Foundation Apache Neethi Apache Software FoundationのApache Neethiにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-42403 2026-05-7 12:01 2026-05-1 Show GitHub Exploit DB Packet Storm
1363 7.2 重要
Network
Apache Software Foundation Apache Neethi Apache Software FoundationのApache Neethiにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-42404 2026-05-7 12:00 2026-05-1 Show GitHub Exploit DB Packet Storm
1364 7.1 重要
Local
Open CASCADE Technology (OCCT) Open CASCADE Technology (OCCT) Open CASCADE Technology (OCCT)における境界外読み取りに関する脆弱性 CWE-125
CWE-125
CVE-2026-42476 2026-05-7 12:00 2026-05-1 Show GitHub Exploit DB Packet Storm
1365 7.1 重要
Local
Open CASCADE Technology (OCCT) Open CASCADE Technology (OCCT) Open CASCADE Technology (OCCT)における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-42477 2026-05-7 12:00 2026-05-1 Show GitHub Exploit DB Packet Storm
1366 7.5 重要
Network
Open CASCADE Technology (OCCT) Open CASCADE Technology (OCCT) Open CASCADE Technology (OCCT)における複数の脆弱性 CWE-125
CWE-476
CVE-2026-42478 2026-05-7 12:00 2026-05-1 Show GitHub Exploit DB Packet Storm
1367 5.5 警告
Local
Open CASCADE Technology (OCCT) Open CASCADE Technology (OCCT) Open CASCADE Technology (OCCT)における境界外読み取りに関する脆弱性 CWE-125
CWE-125
CVE-2026-42479 2026-05-7 12:00 2026-05-1 Show GitHub Exploit DB Packet Storm
1368 9.8 緊急
Network
hashcat hashcat hashcatにおける複数の脆弱性 CWE-121
CWE-787
CVE-2026-42482 2026-05-7 12:00 2026-05-1 Show GitHub Exploit DB Packet Storm
1369 9.8 緊急
Network
hashcat hashcat hashcatにおける複数の脆弱性 CWE-122
CWE-787
CVE-2026-42483 2026-05-7 12:00 2026-05-1 Show GitHub Exploit DB Packet Storm
1370 9.8 緊急
Network
hashcat hashcat hashcatにおける境界外書き込みに関する脆弱性 CWE-787
CWE-787
CVE-2026-42484 2026-05-7 12:00 2026-05-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312761 7.5 HIGH
Network
fujitsu ipcom_ve2_ls_100_firmware
ipcom_ve2_ls_200_firmware
ipcom_ve2_ls_220_firmware
ipcom_ve2_ls_plus_100_firmware
ipcom_ve2_ls_plus_200_firmware
ipcom_ve2_ls_plus_220_firmware
ipcom_ve2_…
Observable timing discrepancy issue exists in IPCOM EX2 Series V01L02NF0001 to V01L06NF0401, V01L20NF0001 to V01L20NF0401, V02L20NF0001 to V02L21NF0301, and IPCOM VE2 Series V01L04NF0001 to V01L06NF0… CWE-203
 Information Exposure Through Discrepancy
CVE-2024-39921 2024-09-19 23:59 2024-09-4 Show GitHub Exploit DB Packet Storm
312762 7.8 HIGH
Local
adobe acrobat
acrobat_dc
acrobat_reader
acrobat_reader_dc
Acrobat Reader versions 24.002.21005, 24.001.30159, 20.005.30655, 24.003.20054 and earlier are affected by a Type Confusion vulnerability that could result in arbitrary code execution in the context … CWE-843
Type Confusion
CVE-2024-45112 2024-09-19 23:56 2024-09-13 Show GitHub Exploit DB Packet Storm
312763 7.5 HIGH
Network
utarit soliclub Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Utarit Information SoliClub allows Retrieve Embedded Sensitive Data.This issue affects SoliClub: before 4.4.0 for iOS, befo… NVD-CWE-noinfo
CVE-2024-3305 2024-09-19 23:44 2024-09-12 Show GitHub Exploit DB Packet Storm
312764 7.5 HIGH
Network
utarit soliclub Authorization Bypass Through User-Controlled Key vulnerability in Utarit Information SoliClub allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SoliClub: befo… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-3306 2024-09-19 23:43 2024-09-12 Show GitHub Exploit DB Packet Storm
312765 5.3 MEDIUM
Network
emilyploszaj emi EMI v.1.1.10 and before, fixed in v.1.1.11, contains an Improper Validation of Specified Index, Position, or Offset in Input vulnerability. The specific issue is a failure to validate slot index and … CWE-129
 Improper Validation of Array Index
CVE-2024-41564 2024-09-19 23:40 2024-08-29 Show GitHub Exploit DB Packet Storm
312766 8.8 HIGH
Network
zohocorp manageengine_pam360
manageengine_password_manager_pro
Zohocorp ManageEngine Password Manager Pro versions before 12431 and ManageEngine PAM360 versions before 7001 are affected by authenticated SQL Injection vulnerability via a global search option. CWE-89
SQL Injection
CVE-2024-5546 2024-09-19 23:39 2024-08-28 Show GitHub Exploit DB Packet Storm
312767 5.4 MEDIUM
Network
connx esp_hr_management Improper Neutralization of Input During Web Page Generation vulnerability in "Update of Personal Details" form in ConnX ESP HR Management allows Stored XSS attack. An attacker might inject a script t… CWE-79
Cross-site Scripting
CVE-2024-7269 2024-09-19 23:37 2024-08-28 Show GitHub Exploit DB Packet Storm
312768 7.5 HIGH
Network
rockwellautomation compactlogix_5380_firmware
compact_guardlogix_5380_sil_2_firmware
compact_guardlogix_5380_sil_3_firmware
compactlogix_5480_firmware
controllogix_5580_firmware
guardlogix_5580_firmware<…
A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Object. If exploited the device will become unavailab… NVD-CWE-noinfo
CVE-2024-6077 2024-09-19 23:31 2024-09-13 Show GitHub Exploit DB Packet Storm
312769 9.8 CRITICAL
Network
soplanning soplanning A unauthenticated Remote Code Execution (RCE) vulnerability is found in the SO Planning online planning tool. If the public view setting is enabled, a attacker can upload a PHP-file that will be avai… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2024-27114 2024-09-19 23:27 2024-09-11 Show GitHub Exploit DB Packet Storm
312770 6.1 MEDIUM
Network
microfocus edirectory Possible Improper Neutralization of Input During Web Page Generation Vulnerability in eDirectory has been discovered in OpenText™ eDirectory 9.2.3.0000. CWE-79
Cross-site Scripting
CVE-2021-22503 2024-09-19 23:25 2024-09-12 Show GitHub Exploit DB Packet Storm