Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2921 4.8 警告
Network
LibreNMS LibreNMS LibreNMSにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-2728 2026-04-24 11:36 2026-04-13 Show GitHub Exploit DB Packet Storm
2922 7.5 重要
Network
Gardyn Gardin API GardynのGardin APIにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-28766 2026-04-24 11:36 2026-04-3 Show GitHub Exploit DB Packet Storm
2923 5.3 警告
Network
Gardyn Gardin API GardynのGardin APIにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-28767 2026-04-24 11:36 2026-04-3 Show GitHub Exploit DB Packet Storm
2924 3.7
Network
ERLANG Erlang/OTP ERLANGのErlang/OTPにおける予測可能な数字や識別子の生成に関する脆弱性 CWE-340
予測可能な数字や識別子の生成
CVE-2026-28810 2026-04-24 11:36 2026-04-7 Show GitHub Exploit DB Packet Storm
2925 7.2 重要
Network
Artica ST Pandora FMS Artica STのPandora FMSにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2026-30804 2026-04-24 11:36 2026-04-13 Show GitHub Exploit DB Packet Storm
2926 8.8 重要
Network
Artica ST Pandora FMS Artica STのPandora FMSにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-30806 2026-04-24 11:36 2026-04-13 Show GitHub Exploit DB Packet Storm
2927 8.8 重要
Network
Artica ST Pandora FMS Artica STのPandora FMSにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-30809 2026-04-24 11:36 2026-04-13 Show GitHub Exploit DB Packet Storm
2928 6.5 警告
Network
Artica ST Pandora FMS Artica STのPandora FMSにおける不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2026-30811 2026-04-24 11:36 2026-04-13 Show GitHub Exploit DB Packet Storm
2929 5.4 警告
Network
Artica ST Pandora FMS Artica STのPandora FMSにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-30812 2026-04-24 11:36 2026-04-13 Show GitHub Exploit DB Packet Storm
2930 8.8 重要
Network
Artica ST Pandora FMS Artica STのPandora FMSにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-30813 2026-04-24 11:36 2026-04-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
61 7.3 HIGH
Network
- - An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, ma… New CWE-787
 Out-of-bounds Write
CVE-2026-43656 2026-05-13 03:17 2026-05-12 Show GitHub Exploit DB Packet Storm
62 7.3 HIGH
Network
- - An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, watchOS 26.5. An app may be able to cause unexpected s… New CWE-125
Out-of-bounds Read
CVE-2026-43655 2026-05-13 03:17 2026-05-12 Show GitHub Exploit DB Packet Storm
63 - - - Improper Authorization vulnerability when multiple method constraints define an HTTP method for the same extension in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21,… New CWE-285
Improper Authorization
CVE-2026-43515 2026-05-13 03:17 2026-05-13 Show GitHub Exploit DB Packet Storm
64 - - - Observable Timing Discrepancy vulnerability when comparing AJP secret in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M… New CWE-208
 Information Exposure Through Timing Discrepancy
CVE-2026-43514 2026-05-13 03:17 2026-05-13 Show GitHub Exploit DB Packet Storm
65 - - - Improper Handling of Case Sensitivity vulnerability in LockOutRealm in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M1 … New CWE-178
 Improper Handling of Case Sensitivity
CVE-2026-43513 2026-05-13 03:17 2026-05-13 Show GitHub Exploit DB Packet Storm
66 - - - DEPRECATED: Authentication Bypass Issues vulnerability in digest authentication in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, fr… New CWE-592
 DEPRECATED: Authentication Bypass Issues
CVE-2026-43512 2026-05-13 03:17 2026-05-13 Show GitHub Exploit DB Packet Storm
67 7.5 HIGH
Network
- - Loop with unreachable exit condition ('infinite loop') in ASP.NET Core allows an unauthorized attacker to deny service over a network. New CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-42899 2026-05-13 03:17 2026-05-13 Show GitHub Exploit DB Packet Storm
68 9.9 CRITICAL
Network
- - Improper control of generation of code ('code injection') in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to execute code over a network. New CWE-94
Code Injection
CVE-2026-42898 2026-05-13 03:17 2026-05-13 Show GitHub Exploit DB Packet Storm
69 7.8 HIGH
Local
- - Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. New CWE-122
CWE-190
Heap-based Buffer Overflow
 Integer Overflow or Wraparound
CVE-2026-42896 2026-05-13 03:17 2026-05-13 Show GitHub Exploit DB Packet Storm
70 7.4 HIGH
Network
- - Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to perform tampering over a network. New CWE-77
Command Injection
CVE-2026-42893 2026-05-13 03:17 2026-05-13 Show GitHub Exploit DB Packet Storm