Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2821 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-6016 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
2822 7.5 重要
Network
Nitro Software Inc. Nitro PDF Pro Nitro Software Inc.のNitro PDF ProにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-66769 2026-04-27 11:26 2026-04-13 Show GitHub Exploit DB Packet Storm
2823 7.5 重要
Network
Nitro Software Inc. Nitro PDF Pro Nitro Software Inc.のNitro PDF ProにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-69624 2026-04-27 11:26 2026-04-13 Show GitHub Exploit DB Packet Storm
2824 2.7
Network
GitLab.org GitLab GitLab.orgのGitLabにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2025-9957 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
2825 4.8 警告
Network
pega pega platform pegaのpega platformにおけるクロスサイトスクリプティングの脆弱性 CWE-80
クロスサイトスクリプティング (Basic XSS)
CVE-2026-1564 2026-04-27 11:26 2026-04-15 Show GitHub Exploit DB Packet Storm
2826 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-1660 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
2827 4.8 警告
Network
pega pega platform pegaのpega platformにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-1711 2026-04-27 11:26 2026-04-15 Show GitHub Exploit DB Packet Storm
2828 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-Other
その他
CVE-2026-23314 2026-04-27 11:26 2026-03-25 Show GitHub Exploit DB Packet Storm
2829 7.1 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-23315 2026-04-27 11:26 2026-03-25 Show GitHub Exploit DB Packet Storm
2830 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23316 2026-04-27 11:26 2026-03-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
315621 8.8 HIGH
Network
siamonhasan warehouse_inventory_system A vulnerability was found in OSWAPP Warehouse Inventory System 1.0/2.0. It has been classified as problematic. Affected is an unknown function of the file /edit_account.php. The manipulation leads to… CWE-352
 Origin Validation Error
CVE-2024-7459 2024-08-7 02:14 2024-08-5 Show GitHub Exploit DB Packet Storm
315622 9.8 CRITICAL
Network
eladmin eladmin A vulnerability was found in elunez eladmin up to 2.7 and classified as critical. This issue affects some unknown processing of the file /api/deploy/upload /api/database/upload of the component Datab… CWE-22
Path Traversal
CVE-2024-7458 2024-08-7 02:12 2024-08-5 Show GitHub Exploit DB Packet Storm
315623 - - - PrivX before 34.0 allows data exfiltration and denial of service via the REST API. This is fixed in minor versions 33.1, 32.3, 31.3, and later, and in major version 34.0 and later, - CVE-2024-30170 2024-08-7 01:35 2024-08-6 Show GitHub Exploit DB Packet Storm
315624 - - - Unexpected marking work at the start of sweeping could have led to a use-after-free. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, and Firefox ESR < 128.1. - CVE-2024-7527 2024-08-7 01:35 2024-08-6 Show GitHub Exploit DB Packet Storm
315625 - - - A type confusion bug in WebAssembly could be leveraged by an attacker to potentially achieve code execution. This vulnerability affects Firefox < 129 and Firefox ESR < 128.1. - CVE-2024-7520 2024-08-7 01:35 2024-08-6 Show GitHub Exploit DB Packet Storm
315626 7.5 HIGH
Network
- - Transient DOS during music playback of ALAC content. - CVE-2024-21479 2024-08-7 01:31 2024-08-6 Show GitHub Exploit DB Packet Storm
315627 6.5 MEDIUM
Network
- - Information disclosure while handling beacon probe frame during scan entry generation in client side. - CVE-2024-21467 2024-08-7 01:31 2024-08-6 Show GitHub Exploit DB Packet Storm
315628 6.5 MEDIUM
Network
- - Information disclosure while handling beacon or probe response frame in STA. - CVE-2024-21459 2024-08-7 01:31 2024-08-6 Show GitHub Exploit DB Packet Storm
315629 - - - Improper filering of special characters result in a command ('command injection') vulnerability in Korenix JetPort 5601v3.This issue affects JetPort 5601v3: through 1.2. - CVE-2024-7397 2024-08-7 01:31 2024-08-5 Show GitHub Exploit DB Packet Storm
315630 - - - Missing encryption of sensitive data in Korenix JetPort 5601v3 allows Eavesdropping.This issue affects JetPort 5601v3: through 1.2. - CVE-2024-7396 2024-08-7 01:31 2024-08-5 Show GitHub Exploit DB Packet Storm