Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2781 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 11 23h2
Microsoft Windows 10 1809
Microsoft Windows 10 22h2
Microsoft Wind…
Windows Management サービスの特権昇格の脆弱性 CWE-362
競合状態
CVE-2026-20930 2026-04-27 11:28 2026-04-14 Show GitHub Exploit DB Packet Storm
2782 6 警告
Local
オラクル JDK
JRE
Oracle GraalVM
オラクルのOracle GraalVM等の複数製品におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-22003 2026-04-27 11:28 2026-04-21 Show GitHub Exploit DB Packet Storm
2783 3.7
Network
Pivotal Software, Inc. Spring Security VMwareのSpring Securityにおけるタイミングの違いに起因する情報漏えいに関する脆弱性 CWE-208
タイミングの違いに起因する情報漏えい
CVE-2026-22746 2026-04-27 11:28 2026-04-22 Show GitHub Exploit DB Packet Storm
2784 8.1 重要
Network
Pivotal Software, Inc. Spring Security VMwareのSpring Securityにおけるホストの不一致による証明書の検証に関する脆弱性 CWE-297
ホストの不一致による証明書の不適切な検証
CVE-2026-22747 2026-04-27 11:28 2026-04-22 Show GitHub Exploit DB Packet Storm
2785 6.5 警告
Network
Pivotal Software, Inc. Spring Security VMwareのSpring Securityにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-22748 2026-04-27 11:28 2026-04-22 Show GitHub Exploit DB Packet Storm
2786 7.5 重要
Network
Pivotal Software, Inc. Spring Security VMwareのSpring Securityにおける保護メカニズムの不具合に関する脆弱性 CWE-693
保護メカニズムの不具合
CVE-2026-22753 2026-04-27 11:28 2026-04-22 Show GitHub Exploit DB Packet Storm
2787 7.5 重要
Network
Pivotal Software, Inc. Spring Security VMwareのSpring Securityにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-22754 2026-04-27 11:28 2026-04-22 Show GitHub Exploit DB Packet Storm
2788 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-23344 2026-04-27 11:28 2026-03-25 Show GitHub Exploit DB Packet Storm
2789 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23345 2026-04-27 11:28 2026-03-25 Show GitHub Exploit DB Packet Storm
2790 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23346 2026-04-27 11:28 2026-03-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314461 7.8 HIGH
Local
dell peripheral_manager Dell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker could potentially exploit this vulnerability through preloading malicious DLL … CWE-427
 Uncontrolled Search Path Element
CVE-2024-37127 2024-08-28 00:23 2024-07-31 Show GitHub Exploit DB Packet Storm
314462 8.8 HIGH
Network
netgear prosafe_network_management_system NETGEAR ProSAFE Network Management System getFilterString SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installat… CWE-89
SQL Injection
CVE-2024-6814 2024-08-28 00:03 2024-08-22 Show GitHub Exploit DB Packet Storm
314463 8.8 HIGH
Network
netgear prosafe_network_management_system NETGEAR ProSAFE Network Management System getSortString SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installatio… CWE-89
SQL Injection
CVE-2024-6813 2024-08-28 00:01 2024-08-22 Show GitHub Exploit DB Packet Storm
314464 9.8 CRITICAL
Network
servision ivg_webmax Servision - CWE-287: Improper Authentication CWE-287
Improper Authentication
CVE-2024-42336 2024-08-27 23:59 2024-08-20 Show GitHub Exploit DB Packet Storm
314465 9.8 CRITICAL
Network
dlink dns-1550-04_firmware
dns-1200-05_firmware
dns-1100-4_firmware
dns-726-4_firmware
dns-345_firmware
dns-343_firmware
dns-340l_firmware
dnr-326_firmware
dns-327l_firmware
dns-…
A vulnerability classified as critical was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-34… CWE-78
OS Command 
CVE-2024-8127 2024-08-27 23:53 2024-08-24 Show GitHub Exploit DB Packet Storm
314466 8.8 HIGH
Adjacent
tencacn fh1206_firmware Tenda FH1206 V1.2.0.8(8155)_EN contains a Buffer Overflow vulnerability via the function formWrlsafeset. CWE-787
 Out-of-bounds Write
CVE-2024-44390 2024-08-27 23:48 2024-08-24 Show GitHub Exploit DB Packet Storm
314467 6.5 MEDIUM
Adjacent
tencacn fh1206_firmware Tenda FH1206 V1.2.0.8(8155)_EN contains a Buffer Overflow vulnerability via the functino formWrlExtraGet. CWE-787
 Out-of-bounds Write
CVE-2024-44387 2024-08-27 23:48 2024-08-24 Show GitHub Exploit DB Packet Storm
314468 5.4 MEDIUM
Network
adonesevangelista online_accreditation_management_system itsourcecode Online Accreditation Management System contains a Cross Site Scripting vulnerability, which allows an attacker to execute arbitrary code via a crafted payload to the SCHOOLNAME, EMAILADD… CWE-79
Cross-site Scripting
CVE-2024-42918 2024-08-27 23:47 2024-08-24 Show GitHub Exploit DB Packet Storm
314469 5.4 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5.19 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. This vulnerability could allow an attacker to inject and execute arbitrary J… CWE-79
Cross-site Scripting
CVE-2024-41878 2024-08-27 23:46 2024-08-24 Show GitHub Exploit DB Packet Storm
314470 5.4 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable … CWE-79
Cross-site Scripting
CVE-2024-41877 2024-08-27 23:46 2024-08-24 Show GitHub Exploit DB Packet Storm