Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2791 6.5 警告
Network
シスコシステムズ Cisco Unity Connection シスコシステムズのCisco Unity ConnectionにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-20061 2026-04-30 12:17 2026-04-15 Show GitHub Exploit DB Packet Storm
2792 6.5 警告
Local
シスコシステムズ Cisco Firepower Threat Defense ソフトウェア シスコシステムズのCisco Firepower Threat Defense ソフトウェアにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-20064 2026-04-30 12:17 2026-03-4 Show GitHub Exploit DB Packet Storm
2793 6.5 警告
Network
シスコシステムズ Cisco Unity Connection シスコシステムズのCisco Unity Connectionにおける相対パストラバーサルの脆弱性 CWE-23
相対的パストラバーサル
CVE-2026-20078 2026-04-30 12:17 2026-04-15 Show GitHub Exploit DB Packet Storm
2794 6.5 警告
Network
シスコシステムズ Cisco Unity Connection シスコシステムズのCisco Unity Connectionにおける相対パストラバーサルの脆弱性 CWE-23
相対的パストラバーサル
CVE-2026-20081 2026-04-30 12:17 2026-04-15 Show GitHub Exploit DB Packet Storm
2795 7.2 重要
Network
デル PowerProtect DP Series Appliance
data domain operating system
デルのdata domain operating system等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-22761 2026-04-30 12:17 2026-04-20 Show GitHub Exploit DB Packet Storm
2796 9.1 緊急
Network
GNOME Project libsoup GNOME Projectのlibsoupにおける整数アンダーフローの脆弱性 CWE-191
整数アンダーフロー
CVE-2026-2369 2026-04-30 12:17 2026-03-19 Show GitHub Exploit DB Packet Storm
2797 9.6 緊急
Network
マイクロソフト Microsoft Partner Center Microsoft パートナー センターの特権昇格の脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-24303 2026-04-30 12:17 2026-04-23 Show GitHub Exploit DB Packet Storm
2798 7.2 重要
Network
デル PowerProtect DP Series Appliance
data domain operating system
デルのdata domain operating system等の複数製品における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-24504 2026-04-30 12:17 2026-04-20 Show GitHub Exploit DB Packet Storm
2799 7.2 重要
Network
デル PowerProtect DP Series Appliance
data domain operating system
デルのdata domain operating system等の複数製品における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-24505 2026-04-30 12:17 2026-04-20 Show GitHub Exploit DB Packet Storm
2800 7.2 重要
Network
デル PowerProtect DP Series Appliance
data domain operating system
デルのdata domain operating system等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-24506 2026-04-30 12:17 2026-04-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314141 6.1 MEDIUM
Network
incsub forminator Cross-site scripting vulnerability exists in Forminator versions prior to 1.34.1. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who follows a … CWE-79
Cross-site Scripting
CVE-2024-45625 2024-09-10 20:19 2024-09-9 Show GitHub Exploit DB Packet Storm
314142 - - - Dell ThinOS versions 2402 and 2405, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with physical access cou… - CVE-2024-42427 2024-09-10 17:15 2024-09-10 Show GitHub Exploit DB Packet Storm
314143 - - - Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Improper Input Validation vulnerability. A high privileged attacker with local access could potentially exploit this vulnerab… CWE-20
 Improper Input Validation 
CVE-2024-42424 2024-09-10 17:15 2024-09-10 Show GitHub Exploit DB Packet Storm
314144 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: use helper function to calculate expect ID Delete expectation path is missing a call to the nf_expect_get_i… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2024-44944 2024-09-10 17:15 2024-08-30 Show GitHub Exploit DB Packet Storm
314145 5.5 MEDIUM
Local
- - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2024-43898 2024-09-10 17:15 2024-08-26 Show GitHub Exploit DB Packet Storm
314146 - - - OS command injection vulnerability exists in BUFFALO wireless LAN routers and wireless LAN repeaters. If a user logs in to the management page and sends a specially crafted request to the affected pr… - CVE-2024-44072 2024-09-10 16:15 2024-09-10 Show GitHub Exploit DB Packet Storm
314147 - - - The Starbox WordPress plugin before 3.5.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even … - CVE-2024-7955 2024-09-10 15:15 2024-09-10 Show GitHub Exploit DB Packet Storm
314148 - - - The RFC enabled function module allows a low privileged user to perform denial of service on any user and also change or delete favourite nodes. By sending a crafted packet in the function module tar… CWE-862
 Missing Authorization
CVE-2024-45285 2024-09-10 14:15 2024-09-10 Show GitHub Exploit DB Packet Storm
314149 - - - An authenticated attacker with high privilege can use functions of SLCM transactions to which access should be restricted. This may result in an escalation of privileges causing low impact on integri… CWE-862
 Missing Authorization
CVE-2024-45284 2024-09-10 14:15 2024-09-10 Show GitHub Exploit DB Packet Storm
314150 - - - SAP NetWeaver AS for Java allows an authorized attacker to obtain sensitive information. The attacker could obtain the username and password when creating an RFC destination. After successful exploit… CWE-256
Plaintext Storage of a Password 
CVE-2024-45283 2024-09-10 14:15 2024-09-10 Show GitHub Exploit DB Packet Storm