Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230851 7.1 危険 total commander - Total Commander における任意のファイルを削除される脆弱性 - CVE-2007-0263 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230852 7.8 危険 WordPress.org - WordPress における重要な情報を取得される脆弱性 - CVE-2007-0262 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230853 10 危険 snews - sNews の snews.php における許可されていない管理者操作を実行される脆弱性 - CVE-2007-0261 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230854 7.8 危険 VideoLAN - VideoLAN VLC におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0256 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230855 9.3 危険 Xine - XINE におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0255 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230856 10 危険 Xine - xine-ui の errors.c におけるフォーマットストリングの脆弱性 - CVE-2007-0254 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230857 7.8 危険 Snort.org - Snort の src/decode.c における特定のメモリ領域のデリファレンスを誘発される脆弱性 - CVE-2007-0251 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230858 5 警告 poptop - PoPToP pptpd の pptpgre.c におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0244 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
230859 4.3 警告 Zope Foundation - Zope におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0240 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
230860 7.5 危険 WordPress.org - WordPress の wp-trackback.php における任意の SQL コマンドを実行される脆弱性 - CVE-2007-0233 2012-12-20 18:19 2007-01-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1321 5.8 MEDIUM
Network
- - When NGINX Open Source is configured to proxy HTTP/2 traffic by setting proxy_http_version to 2, and also uses proxy_set_body, an attacker may be able to inject frame headers and payload bytes to the… CWE-172
 Encoding Error
CVE-2026-42926 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
1322 8.7 HIGH
Network
- - When running in Appliance mode, an authenticated attacker assigned the 'Administrator' role may be able to bypass Appliance mode restrictions on a BIG-IP system.  Note: Software versions which have … CWE-35
 Path Traversal: '.../...//'
CVE-2026-42930 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
1323 4.8 MEDIUM
Network
- - NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When charset, source_charset, and charset_map and proxy_pass with disabled buffering ("off") directives ar… CWE-125
Out-of-bounds Read
CVE-2026-42934 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
1324 6.5 MEDIUM
Network
- - Incorrect permission assignment vulnerabilities exist in BIG-IP and BIG-IQ TMOS Shell (tmsh) arp and ndp commands, and in BIG-IP iControl REST. These vulnerabilities may allow an authenticated attack… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2026-42937 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
1325 6.5 MEDIUM
Network
- - A vulnerability exists in the ngx_http_scgi_module and ngx_http_uwsgi_module modules that may result in excessive memory allocation or an over-read of data. When scgi_pass or uwsgi_pass is configured… CWE-789
CWE-823
 Memory Allocation with Excessive Size Value
 Use of Out-of-range Pointer Offset
CVE-2026-42946 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
1326 8.8 HIGH
Network
- - A potential vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow a remote authenticated user on the local network to execute arbitrary commands on the device. CWE-78
OS Command 
CVE-2026-6281 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
1327 8.1 HIGH
Network
- - A potential improper file path validation vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow a remote authenticated user to move or access files belonging to ot… CWE-22
Path Traversal
CVE-2026-6282 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
1328 4.8 MEDIUM
Network
- - aria2c accepts a server certificate with incorrect Extended Key Usage (EKU). If the attackers compromise a certificate (with the associated private key) issued for a different purpose, they may be ab… CWE-295
Improper Certificate Validation 
CVE-2026-8367 2026-05-14 01:27 2026-05-14 Show GitHub Exploit DB Packet Storm
1329 3.3 LOW
Local
- - NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, an uncontrolled recursion vulnerability exists in the Electron Archive (ASAR) parser in NanaZip. When opening a crafted .… CWE-674
 Uncontrolled Recursion
CVE-2026-42355 2026-05-14 01:26 2026-05-13 Show GitHub Exploit DB Packet Storm
1330 3.3 LOW
Local
- - NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, a null-pointer dereference exists in the UFS/UFS2 filesystem image parser in NanaZip. The vulnerability is triggered when… CWE-476
 NULL Pointer Dereference
CVE-2026-42442 2026-05-14 01:26 2026-05-13 Show GitHub Exploit DB Packet Storm