Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2311 7.2 重要
Network
デル PowerProtect DP Series Appliance
data domain operating system
デルのdata domain operating system等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-22761 2026-04-30 12:17 2026-04-20 Show GitHub Exploit DB Packet Storm
2312 9.1 緊急
Network
GNOME Project libsoup GNOME Projectのlibsoupにおける整数アンダーフローの脆弱性 CWE-191
整数アンダーフロー
CVE-2026-2369 2026-04-30 12:17 2026-03-19 Show GitHub Exploit DB Packet Storm
2313 9.6 緊急
Network
マイクロソフト Microsoft Partner Center Microsoft パートナー センターの特権昇格の脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-24303 2026-04-30 12:17 2026-04-23 Show GitHub Exploit DB Packet Storm
2314 7.2 重要
Network
デル PowerProtect DP Series Appliance
data domain operating system
デルのdata domain operating system等の複数製品における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-24504 2026-04-30 12:17 2026-04-20 Show GitHub Exploit DB Packet Storm
2315 7.2 重要
Network
デル PowerProtect DP Series Appliance
data domain operating system
デルのdata domain operating system等の複数製品における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-24505 2026-04-30 12:17 2026-04-20 Show GitHub Exploit DB Packet Storm
2316 7.2 重要
Network
デル PowerProtect DP Series Appliance
data domain operating system
デルのdata domain operating system等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-24506 2026-04-30 12:17 2026-04-20 Show GitHub Exploit DB Packet Storm
2317 8.8 重要
Network
it-novum GmbH openITCOCKPIT it-novum GmbHのopenITCOCKPITにおける複数の脆弱性 CWE-20
CWE-78
CWE-78
CVE-2026-24893 2026-04-30 12:16 2026-04-14 Show GitHub Exploit DB Packet Storm
2318 9.8 緊急
Network
サムスン escargot サムスンのescargotにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-25205 2026-04-30 12:16 2026-04-13 Show GitHub Exploit DB Packet Storm
2319 9.1 緊急
Network
サムスン escargot サムスンのescargotにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-25206 2026-04-30 12:16 2026-04-13 Show GitHub Exploit DB Packet Storm
2320 9.8 緊急
Network
サムスン escargot サムスンのescargotにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-25207 2026-04-30 12:16 2026-04-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313801 8.1 HIGH
Network
ibm aspera_faspex IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user to bypass intended access restrictions and conduct resource modification. NVD-CWE-noinfo
CVE-2024-45098 2024-09-6 22:01 2024-09-6 Show GitHub Exploit DB Packet Storm
313802 7.1 HIGH
Network
ibm aspera_faspex IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user to bypass intended access restrictions and conduct resource modification. CWE-436
 Interpretation Conflict
CVE-2024-45097 2024-09-6 21:51 2024-09-6 Show GitHub Exploit DB Packet Storm
313803 6.5 MEDIUM
Network
ibm aspera_faspex IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user with access to the package to obtain sensitive information through a directory listing. NVD-CWE-Other
CVE-2024-45096 2024-09-6 21:34 2024-09-6 Show GitHub Exploit DB Packet Storm
313804 - - - An issue was discovered in Mbed TLS 3.6 before 3.6.1. A stack buffer overflow in mbedtls_ecdsa_der_to_raw() and mbedtls_ecdsa_raw_to_der() can occur when the bits parameter is larger than the largest… - CVE-2024-45158 2024-09-6 21:08 2024-09-6 Show GitHub Exploit DB Packet Storm
313805 - - - Asterisk is an open-source private branch exchange (PBX). Prior to versions 18.24.3, 20.9.3, and 21.4.3 of Asterisk and versions 18.9-cert12 and 20.7-cert2 of certified-asterisk, if Asterisk attempts… - CVE-2024-42491 2024-09-6 21:08 2024-09-6 Show GitHub Exploit DB Packet Storm
313806 6.1 MEDIUM
Network
phpgurukul job_portal Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted. Exploitation of this vulnerability could allow an attacker to retrieve the session details of an… CWE-79
Cross-site Scripting
CVE-2024-8473 2024-09-6 20:44 2024-09-5 Show GitHub Exploit DB Packet Storm
313807 6.1 MEDIUM
Network
phpgurukul job_portal Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted. Exploitation of this vulnerability could allow an attacker to retrieve the session details of an… CWE-79
Cross-site Scripting
CVE-2024-8472 2024-09-6 20:44 2024-09-5 Show GitHub Exploit DB Packet Storm
313808 6.1 MEDIUM
Network
phpgurukul job_portal Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted. Exploitation of this vulnerability could allow an attacker to retrieve the session details of an… CWE-79
Cross-site Scripting
CVE-2024-8471 2024-09-6 20:44 2024-09-5 Show GitHub Exploit DB Packet Storm
313809 7.5 HIGH
Network
phpgurukul job_portal SQL injection vulnerability, by which an attacker could send a specially designed query through CATEGORY parameter in /jobportal/admin/vacancy/controller.php, and retrieve all the information stored … CWE-89
SQL Injection
CVE-2024-8470 2024-09-6 20:44 2024-09-5 Show GitHub Exploit DB Packet Storm
313810 7.5 HIGH
Network
phpgurukul job_portal SQL injection vulnerability, by which an attacker could send a specially designed query through id parameter in /jobportal/admin/employee/index.php, and retrieve all the information stored in it. CWE-89
SQL Injection
CVE-2024-8469 2024-09-6 20:43 2024-09-5 Show GitHub Exploit DB Packet Storm