Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1561 6.5 警告
Adjacent
ウォッチガード・テクノロジー WatchGuard Agent ウォッチガード・テクノロジーのWatchGuard Agentにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-41286 2026-05-13 10:26 2026-05-6 Show GitHub Exploit DB Packet Storm
1562 6.5 警告
Adjacent
ウォッチガード・テクノロジー WatchGuard Agent ウォッチガード・テクノロジーのWatchGuard Agentにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-41287 2026-05-13 10:26 2026-05-6 Show GitHub Exploit DB Packet Storm
1563 7.8 重要
Local
ウォッチガード・テクノロジー WatchGuard Agent ウォッチガード・テクノロジーのWatchGuard Agentにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-41288 2026-05-13 10:26 2026-05-6 Show GitHub Exploit DB Packet Storm
1564 9.9 緊急
Network
Mozilla Foundation 0DIN Scanner Mozilla Foundationの0DIN Scannerにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-41512 2026-05-13 10:26 2026-05-8 Show GitHub Exploit DB Packet Storm
1565 9.8 緊急
Network
D-Link Systems, Inc. DIR-456U Firmware D-Link CorporationのDIR-456U Firmwareにおけるハードコードされた認証情報の使用に関する脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2026-42376 2026-05-13 10:26 2026-05-4 Show GitHub Exploit DB Packet Storm
1566 6.5 警告
Network
langflow Langflow Desktop langflowのLangflow Desktopにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-4502 2026-05-13 10:26 2026-04-30 Show GitHub Exploit DB Packet Storm
1567 7.5 重要
Network
langflow Langflow Desktop langflowのLangflow Desktopにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-4503 2026-05-13 10:26 2026-04-30 Show GitHub Exploit DB Packet Storm
1568 8.8 重要
Network
langflow Langflow Desktop langflowのLangflow Desktopにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-6543 2026-05-13 10:26 2026-04-30 Show GitHub Exploit DB Packet Storm
1569 7.8 重要
Local
ウォッチガード・テクノロジー WatchGuard Agent ウォッチガード・テクノロジーのWatchGuard Agentにおけるハードコードされた暗号鍵の使用に関する脆弱性 CWE-321
ハードコードされた暗号鍵の使用
CVE-2026-6787 2026-05-13 10:26 2026-05-6 Show GitHub Exploit DB Packet Storm
1570 7.8 重要
Local
ウォッチガード・テクノロジー WatchGuard Agent ウォッチガード・テクノロジーのWatchGuard Agentにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-6788 2026-05-13 10:26 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312181 - - - TP-Link WR740N V6 has a stack overflow vulnerability via the ssid parameter in /userRpm/popupSiteSurveyRpm.htm url. - CVE-2024-46325 2024-10-9 04:35 2024-10-7 Show GitHub Exploit DB Packet Storm
312182 6.3 MEDIUM
Network
icegram email_subscribers_\&_newsletters The Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up … CWE-94
Code Injection
CVE-2024-8254 2024-10-9 04:08 2024-10-2 Show GitHub Exploit DB Packet Storm
312183 6.1 MEDIUM
Network
yoginetwork rabbitloader The RabbitLoader – Website Speed Optimization for improving Core Web Vital metrics with Cache, Image Optimization, and more plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to… CWE-79
Cross-site Scripting
CVE-2024-8800 2024-10-9 03:59 2024-10-2 Show GitHub Exploit DB Packet Storm
312184 6.1 MEDIUM
Network
themes4wp popularis_extra The Popularis Extra plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up … CWE-79
Cross-site Scripting
CVE-2024-9353 2024-10-9 03:50 2024-10-4 Show GitHub Exploit DB Packet Storm
312185 5.4 MEDIUM
Network
iworks pwa The PWA — easy way to Progressive Web App plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.6.3 due to insufficient input … CWE-79
Cross-site Scripting
CVE-2024-8967 2024-10-9 03:47 2024-10-2 Show GitHub Exploit DB Packet Storm
312186 7.5 HIGH
Network
cisco meraki_mx65_firmware
meraki_mx64_firmware
meraki_z4c_firmware
meraki_z4_firmware
meraki_z3c_firmware
meraki_z3_firmware
meraki_vmx_firmware
meraki_mx600_firmware
meraki_mx450_…
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition on … CWE-400
 Uncontrolled Resource Consumption
CVE-2024-20502 2024-10-9 03:46 2024-10-3 Show GitHub Exploit DB Packet Storm
312187 6.5 MEDIUM
Network
soplanning soplanning SQL injection vulnerability in SOPlanning <1.45, via /soplanning/www/user_groupes.php in the by parameter, which could allow a remote user to submit a specially crafted query, allowing an attacker to… CWE-89
SQL Injection
CVE-2024-9574 2024-10-9 03:45 2024-10-8 Show GitHub Exploit DB Packet Storm
312188 6.5 MEDIUM
Network
soplanning soplanning SQL injection vulnerability in SOPlanning <1.45, through /soplanning/www/groupe_list.php, in the by parameter, which could allow a remote user to send a specially crafted query and extract all the in… CWE-89
SQL Injection
CVE-2024-9573 2024-10-9 03:45 2024-10-8 Show GitHub Exploit DB Packet Storm
312189 5.4 MEDIUM
Network
soplanning soplanning Cross-Site Scripting (XSS) vulnerability in SOPlanning <1.45, due to lack of proper validation of user input via /soplanning/www/process/groupe_save.php, in the groupe_id parameter. This could allow … CWE-79
Cross-site Scripting
CVE-2024-9572 2024-10-9 03:45 2024-10-8 Show GitHub Exploit DB Packet Storm
312190 5.4 MEDIUM
Network
soplanning soplanning Cross-Site Scripting (XSS) vulnerability in SOPlanning <1.45, due to lack of proper validation of user input via /soplanning/www/process/xajax_server.php, affecting multiple parameters. This could al… CWE-79
Cross-site Scripting
CVE-2024-9571 2024-10-9 03:45 2024-10-8 Show GitHub Exploit DB Packet Storm