Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231 8.8 重要
Network
RedisTimeSeries RedisTimeSeries RedisTimeSeriesにおけるヒープベースのバッファオーバーフローの脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-25588 2026-05-8 12:10 2026-05-5 Show GitHub Exploit DB Packet Storm
232 8.8 重要
Network
RedisBloom RedisBloom RedisBloomにおけるヒープベースのバッファオーバーフローの脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-25589 2026-05-8 12:10 2026-05-5 Show GitHub Exploit DB Packet Storm
233 7.8 重要
Local
マイクロソフト Microsoft HPC Pack Microsoft のハイ パフォーマンス コンピューティング (HPC) パックの特権昇格の脆弱性 New CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-32184 2026-05-8 12:10 2026-04-14 Show GitHub Exploit DB Packet Storm
234 7.5 重要
Network
マイクロソフト Microsoft Visual Studio 2026
visual studio 2022
.NET
.NET および Visual Studio のサービス拒否の脆弱性 New CWE-121
CWE-20
CVE-2026-32203 2026-05-8 12:10 2026-04-14 Show GitHub Exploit DB Packet Storm
235 4.7 警告
Network
Macaron project Macaron オラクルのMacaronにおけるオープンリダイレクトの脆弱性 New CWE-601
オープンリダイレクト
CVE-2026-35253 2026-05-8 12:10 2026-05-6 Show GitHub Exploit DB Packet Storm
236 6.1 警告
Local
オラクル Oracle Cloud Infrastructure CLI オラクルのOracle Cloud Infrastructure CLIにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-35254 2026-05-8 12:10 2026-05-6 Show GitHub Exploit DB Packet Storm
237 6.6 警告
Local
オラクル Oracle Cloud Native Environment (Oracle CNE) Command Line Interface (CLI) オラクルのOracle Cloud Native Environment (Oracle CNE) Command Line Interface (CLI)におけるコードインジェクションの脆弱性 New CWE-94
コード・インジェクション
CVE-2026-35255 2026-05-8 12:10 2026-05-6 Show GitHub Exploit DB Packet Storm
238 5.5 警告
Local
ikea DIRIGERA Firmware ikeaのDIRIGERA Firmwareにおけるサーバサイドのリクエストフォージェリの脆弱性 New CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-3588 2026-05-8 12:10 2026-03-9 Show GitHub Exploit DB Packet Storm
239 10 緊急
Network
Unisys WebPerfect Image Suite UnisysのWebPerfect Image Suiteにおけるフィルタリングの回避に関する脆弱性 New CWE-441
フィルタリング回避
CVE-2026-39906 2026-05-8 12:10 2026-04-14 Show GitHub Exploit DB Packet Storm
240 10 緊急
Network
Unisys WebPerfect Image Suite UnisysのWebPerfect Image Suiteにおけるファイル名やパス名の外部制御に関する脆弱性 New CWE-73
ファイル名やパス名の外部制御
CVE-2026-39907 2026-05-8 12:10 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312641 8.8 HIGH
Network
g5plus ultimate_bootstrap_elements_for_elementor Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in G5Theme Ultimate Bootstrap Elements for Elementor allows PHP Local File Inclusion.This issue affects Ul… CWE-22
Path Traversal
CVE-2024-43140 2024-08-30 01:04 2024-08-13 Show GitHub Exploit DB Packet Storm
312642 8.1 HIGH
Network
gitlab gitlab A permission check vulnerability in GitLab CE/EE affecting all versions starting from 8.12 prior to 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior to 17.2.2 allowed for LFS tokens to read and write to… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-3035 2024-08-30 00:55 2024-08-8 Show GitHub Exploit DB Packet Storm
312643 9.8 CRITICAL
Network
dlink dns-315l_firmware
dns-320lw_firmware
dns-1550-04_firmware
dns-1200-05_firmware
dns-1100-4_firmware
dns-726-4_firmware
dns-345_firmware
dns-343_firmware
dns-340l_firmware
dn…
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, … CWE-78
OS Command 
CVE-2024-8211 2024-08-30 00:54 2024-08-28 Show GitHub Exploit DB Packet Storm
312644 9.8 CRITICAL
Network
dlink dns-315l_firmware
dns-320lw_firmware
dns-1550-04_firmware
dns-1200-05_firmware
dns-1100-4_firmware
dns-726-4_firmware
dns-345_firmware
dns-343_firmware
dns-340l_firmware
dn…
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, … CWE-77
Command Injection
CVE-2024-8212 2024-08-30 00:53 2024-08-28 Show GitHub Exploit DB Packet Storm
312645 9.8 CRITICAL
Network
dlink dns-315l_firmware
dns-320lw_firmware
dns-1550-04_firmware
dns-1200-05_firmware
dns-1100-4_firmware
dns-726-4_firmware
dns-345_firmware
dns-343_firmware
dns-340l_firmware
dn…
A vulnerability classified as critical has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, D… CWE-78
OS Command 
CVE-2024-8213 2024-08-30 00:51 2024-08-28 Show GitHub Exploit DB Packet Storm
312646 6.5 MEDIUM
Network
gitlab gitlab An issue has been discovered in GitLab CE/EE affecting all versions before 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior to 17.2.2. An issue was found that allows someone to abuse a discrepancy betwe… CWE-94
Code Injection
CVE-2024-3958 2024-08-30 00:50 2024-08-8 Show GitHub Exploit DB Packet Storm
312647 6.5 MEDIUM
Network
gitlab gitlab A Denial of Service (DoS) condition has been discovered in GitLab CE/EE affecting all versions starting with 15.9 before 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior to 17.2.2. It is possible for an … NVD-CWE-noinfo
CVE-2024-7610 2024-08-30 00:45 2024-08-8 Show GitHub Exploit DB Packet Storm
312648 9.8 CRITICAL
Network
dlink dns-315l_firmware
dns-320lw_firmware
dns-1550-04_firmware
dns-1200-05_firmware
dns-1100-4_firmware
dns-726-4_firmware
dns-345_firmware
dns-343_firmware
dns-340l_firmware
dn…
A vulnerability classified as critical was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-34… CWE-78
OS Command 
CVE-2024-8214 2024-08-30 00:44 2024-08-28 Show GitHub Exploit DB Packet Storm
312649 6.5 MEDIUM
Network
gitlab gitlab An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.9 before 17.0.6, all versions starting from 17.1 before 17.1.4, all versions starting from 17.2 before 17.2.2. Und… NVD-CWE-noinfo
CVE-2024-7554 2024-08-30 00:42 2024-08-8 Show GitHub Exploit DB Packet Storm
312650 5.4 MEDIUM
Network
insurance_management_system_project insurance_management_system A vulnerability, which was classified as critical, has been found in nafisulbari/itsourcecode Insurance Management System 1.0. Affected by this issue is some unknown functionality of the file editPay… NVD-CWE-noinfo
CVE-2024-8216 2024-08-30 00:41 2024-08-28 Show GitHub Exploit DB Packet Storm