Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2891 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
WinSock 用 Windows Ancillary Function Driver の特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-26182 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2892 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows Server 2025
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microso…
リモート アクセス管理サービス/API (RPC サーバー) の特権昇格の脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-26183 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2893 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows 10 1809
Microsoft Wind…
Windows Projected File System の特権の昇格の脆弱性 CWE-126
バッファオーバーリード
CVE-2026-26184 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2894 4.4 警告
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows 10 22h2
Microsoft Windows 10 21h2
Microsoft Windows&…
Windows Hello のセキュリティ機能のバイパスの脆弱性 CWE-20
不適切な入力確認
CVE-2026-27906 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2895 7.5 重要
Network
FFmpeg FFmpeg FFmpegにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-30997 2026-04-27 11:23 2026-04-13 Show GitHub Exploit DB Packet Storm
2896 7.5 重要
Network
FFmpeg FFmpeg FFmpegにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-30998 2026-04-27 11:23 2026-04-13 Show GitHub Exploit DB Packet Storm
2897 7.5 重要
Network
FFmpeg FFmpeg FFmpegにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-30999 2026-04-27 11:23 2026-04-13 Show GitHub Exploit DB Packet Storm
2898 8.8 重要
Network
Dolibarr ERP & CRM dolibarr erp/crm Dolibarr ERP & CRMのdolibarr erp/crmにおける複数の脆弱性 CWE-284
CWE-94
CVE-2026-31018 2026-04-27 11:23 2026-04-21 Show GitHub Exploit DB Packet Storm
2899 8.8 重要
Network
Dolibarr ERP & CRM dolibarr erp/crm Dolibarr ERP & CRMのdolibarr erp/crmにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-31019 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2900 3.5
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるレンダリングされたユーザインターフェースレイヤまたはフレームの不適切な制限に関する脆弱性 CWE-1021
レンダリングされたユーザインターフェースレイヤまたはフレームの不適切な制限
CVE-2026-3254 2026-04-27 11:22 2026-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314711 5.9 MEDIUM
Network
ibm sterling_connect_direct_web_services IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security.… CWE-311
Missing Encryption of Sensitive Data
CVE-2024-39746 2024-08-24 00:25 2024-08-22 Show GitHub Exploit DB Packet Storm
314712 7.5 HIGH
Network
ibm sterling_connect_direct_web_services IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2024-39745 2024-08-24 00:25 2024-08-22 Show GitHub Exploit DB Packet Storm
314713 4.3 MEDIUM
Network
ibm sterling_connect_direct_web_services IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted fro… CWE-352
 Origin Validation Error
CVE-2024-39744 2024-08-24 00:25 2024-08-22 Show GitHub Exploit DB Packet Storm
314714 5.3 MEDIUM
Network
youdiancms youdiancms A vulnerability, which was classified as problematic, has been found in YouDianCMS 7. This issue affects some unknown processing of the file /t.php?action=phpinfo. The manipulation leads to informati… NVD-CWE-noinfo
CVE-2024-7328 2024-08-24 00:25 2024-08-1 Show GitHub Exploit DB Packet Storm
314715 5.4 MEDIUM
Network
cisco identity_services_engine A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to conduct an XSS attack against a user of the interface. This vulnerability is due… CWE-79
Cross-site Scripting
CVE-2024-20443 2024-08-24 00:18 2024-08-8 Show GitHub Exploit DB Packet Storm
314716 4.8 MEDIUM
Network
cisco identity_services_engine A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to conduct an XSS attack against a user of the interface. This vulnerability is due… CWE-79
Cross-site Scripting
CVE-2024-20479 2024-08-24 00:14 2024-08-8 Show GitHub Exploit DB Packet Storm
314717 5.3 MEDIUM
Network
hp instantos Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Certificate Management daemon accessed via the PAPI protocol. Successful exploitation of these vulnerabilities results… NVD-CWE-noinfo
CVE-2024-42396 2024-08-24 00:07 2024-08-7 Show GitHub Exploit DB Packet Storm
314718 5.3 MEDIUM
Network
arubanetworks
hp
arubaos
instantos
Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Soft AP daemon accessed via the PAPI protocol. Successful exploitation of these vulnerabilities results in the ability to… NVD-CWE-noinfo
CVE-2024-42400 2024-08-24 00:06 2024-08-7 Show GitHub Exploit DB Packet Storm
314719 5.3 MEDIUM
Network
arubanetworks
hp
arubaos
instantos
Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Soft AP daemon accessed via the PAPI protocol. Successful exploitation of these vulnerabilities results in the ability to… NVD-CWE-noinfo
CVE-2024-42399 2024-08-24 00:06 2024-08-7 Show GitHub Exploit DB Packet Storm
314720 5.3 MEDIUM
Network
arubanetworks
hp
arubaos
instantos
Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Soft AP daemon accessed via the PAPI protocol. Successful exploitation of these vulnerabilities results in the ability to… NVD-CWE-noinfo
CVE-2024-42398 2024-08-24 00:06 2024-08-7 Show GitHub Exploit DB Packet Storm