|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 18, 2026, 12:09 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 2951 | 5.5 |
警告
Local |
River Past Ringtone Converter Project | River Past Ringtone Converter | River Past Ringtone Converter ProjectのRiver Past Ringtone Converterにおける境界外書き込みに関する脆弱性 |
CWE-787
境界外書き込み |
CVE-2019-25665 | 2026-04-28 10:11 | 2026-04-5 | Show | GitHub Exploit DB Packet Storm |
| 2952 | 7.8 |
重要
Local |
River Past Video Clear Project | River Past Video Clear | River Past Video Clear ProjectのRiver Past Video Clearにおける境界外書き込みに関する脆弱性 |
CWE-787
境界外書き込み |
CVE-2019-25670 | 2026-04-28 10:11 | 2026-04-5 | Show | GitHub Exploit DB Packet Storm |
| 2953 | 7.8 |
重要
Local |
iBoysoft | NTFS for Mac | iBoysoftのNTFS for Macにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 |
CWE-732
重要なリソースに対する不適切なパーミッションの割り当て |
CVE-2026-2637 | 2026-04-28 10:11 | 2026-03-3 | Show | GitHub Exploit DB Packet Storm |
| 2954 | 6.6 |
警告
Local |
Saurabh Kumar | python-dotenv | Saurabh Kumarのpython-dotenvにおける複数の脆弱性 |
CWE-59 CWE-61 |
CVE-2026-28684 | 2026-04-28 10:11 | 2026-04-20 | Show | GitHub Exploit DB Packet Storm |
| 2955 | 10 |
緊急
Network |
Smallstep | Step CA | SmallstepのStep CAにおける複数の脆弱性 |
CWE-287 CWE-295 CWE-295 |
CVE-2026-30836 | 2026-04-28 10:11 | 2026-03-19 | Show | GitHub Exploit DB Packet Storm |
| 2956 | 4.7 |
警告
Local |
GL.iNet | Comet (GL-RM1) Firmware | GL.iNetのComet (GL-RM1) Firmwareにおけるデータの信頼性についての不十分な検証に関する脆弱性 |
CWE-345
データの信頼性についての不十分な検証 |
CVE-2026-32290 | 2026-04-28 10:11 | 2026-03-17 | Show | GitHub Exploit DB Packet Storm |
| 2957 | 6.8 |
警告
Physics |
GL.iNet | Comet (GL-RM1) Firmware | GL.iNetのComet (GL-RM1) Firmwareにおける重要な機能に対する認証の欠如に関する脆弱性 |
CWE-306
重要な機能に対する認証の欠如 解説 |
CVE-2026-32291 | 2026-04-28 10:11 | 2026-03-17 | Show | GitHub Exploit DB Packet Storm |
| 2958 | 7.5 |
重要
Network |
GL.iNet | Comet (GL-RM1) Firmware | GL.iNetのComet (GL-RM1) Firmwareにおける過度な認証試行の不適切な制限に関する脆弱性 |
CWE-307
過度な認証試行の不適切な制限 |
CVE-2026-32292 | 2026-04-28 10:11 | 2026-03-17 | Show | GitHub Exploit DB Packet Storm |
| 2959 | 3.7 |
低
Network |
GL.iNet | Comet (GL-RM1) Firmware | GL.iNetのComet (GL-RM1) Firmwareにおける証明書検証に関する脆弱性 |
CWE-295
不正な証明書検証 |
CVE-2026-32293 | 2026-04-28 10:11 | 2026-03-17 | Show | GitHub Exploit DB Packet Storm |
| 2960 | 6.5 |
警告
Network |
オラクル | PeopleSoft Enterprise FIN Contracts | オラクルのPeopleSoft Enterprise FIN Contractsにおける情報漏えいに関する脆弱性 |
CWE-200
情報漏えい |
CVE-2026-34300 | 2026-04-28 10:11 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 18, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 315591 | 7.5 |
HIGH
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_advanced_web_application_firewall big-ip_analytics big-ip_application_acceleration_manager big-ip_application_secur… |
When a stateless virtual server is configured on BIG-IP system with a High-Speed Bridge (HSB), undisclosed requests can cause TMM to terminate. Note: Software versions which have reached End of Te… |
NVD-CWE-noinfo
|
CVE-2024-39778 | 2024-08-20 01:20 | 2024-08-15 | Show | GitHub Exploit DB Packet Storm |
| 315592 | 8.8 |
HIGH
Network |
f5 | big-ip_next_central_manager | The Central Manager user session refresh token does not expire when a user logs out. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated |
CWE-613
Insufficient Session Expiration |
CVE-2024-39809 | 2024-08-20 01:19 | 2024-08-15 | Show | GitHub Exploit DB Packet Storm |
| 315593 | 7.5 |
HIGH
Network |
dahuasecurity |
nvr4104-4ks2\/l_firmware nvr4108-4ks2\/l_firmware nvr4116-4ks2\/l_firmware nvr4104-p-4ks2\/l_firmware nvr4108-p-4ks2\/l_firmware nvr4108-8p-4ks2\/l_firmware nvr4116-8p-4ks2\/l_firmw… |
A vulnerability has been found in Dahua products. Attackers can send carefully crafted data packets to the interface with vulnerabilities, causing the device to crash. |
NVD-CWE-noinfo
|
CVE-2024-39949 | 2024-08-20 01:18 | 2024-07-31 | Show | GitHub Exploit DB Packet Storm |
| 315594 | 7.8 |
HIGH
Local |
adobe | indesign | InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Ex… |
CWE-787
Out-of-bounds Write |
CVE-2024-39389 | 2024-08-20 01:17 | 2024-08-15 | Show | GitHub Exploit DB Packet Storm |
| 315595 | 7.5 |
HIGH
Network |
dahuasecurity |
nvr4104-4ks2\/l_firmware nvr4108-4ks2\/l_firmware nvr4116-4ks2\/l_firmware nvr4104-p-4ks2\/l_firmware nvr4108-p-4ks2\/l_firmware nvr4108-8p-4ks2\/l_firmware nvr4116-8p-4ks2\/l_firmw… |
A vulnerability has been found in Dahua products. Attackers can send carefully crafted data packets to the interface with vulnerabilities, causing the device to crash. |
NVD-CWE-noinfo
|
CVE-2024-39948 | 2024-08-20 01:17 | 2024-07-31 | Show | GitHub Exploit DB Packet Storm |
| 315596 | 6.5 |
MEDIUM
Network |
dahuasecurity |
nvr4104-4ks2\/l_firmware nvr4108-4ks2\/l_firmware nvr4116-4ks2\/l_firmware nvr4104-p-4ks2\/l_firmware nvr4108-p-4ks2\/l_firmware nvr4108-8p-4ks2\/l_firmware nvr4116-8p-4ks2\/l_firmw… |
A vulnerability has been found in Dahua products.After obtaining the ordinary user's username and password, the attacker can send a carefully crafted data packet to the interface with vulnerabilities… |
NVD-CWE-noinfo
|
CVE-2024-39947 | 2024-08-20 01:17 | 2024-07-31 | Show | GitHub Exploit DB Packet Storm |
| 315597 | 4.9 |
MEDIUM
Network |
dahuasecurity |
nvr4104-4ks2\/l_firmware nvr4108-4ks2\/l_firmware nvr4116-4ks2\/l_firmware nvr4104-p-4ks2\/l_firmware nvr4108-p-4ks2\/l_firmware nvr4108-8p-4ks2\/l_firmware nvr4116-8p-4ks2\/l_firmw… |
A vulnerability has been found in Dahua products. After obtaining the administrator's username and password, the attacker can send a carefully crafted data packet to the interface with vulnerabiliti… |
NVD-CWE-noinfo
|
CVE-2024-39945 | 2024-08-20 01:17 | 2024-07-31 | Show | GitHub Exploit DB Packet Storm |
| 315598 | 5.3 |
MEDIUM
Network |
online_railway_reservation_system_project | online_railway_reservation_system | A vulnerability was found in CodeAstro Online Railway Reservation System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/assets/. The manipulation… |
NVD-CWE-Other
|
CVE-2024-7912 | 2024-08-20 01:16 | 2024-08-19 | Show | GitHub Exploit DB Packet Storm |
| 315599 | 7.2 |
HIGH
Network |
dahuasecurity |
nvr4104-4ks2\/l_firmware nvr4108-4ks2\/l_firmware nvr4116-4ks2\/l_firmware nvr4104-p-4ks2\/l_firmware nvr4108-p-4ks2\/l_firmware nvr4108-8p-4ks2\/l_firmware nvr4116-8p-4ks2\/l_firmw… |
A vulnerability has been found in Dahua products.After obtaining the administrator's username and password, the attacker can send a carefully crafted data packet to the interface with vulnerabilities… |
NVD-CWE-noinfo
|
CVE-2024-39946 | 2024-08-20 01:16 | 2024-07-31 | Show | GitHub Exploit DB Packet Storm |
| 315600 | - | - | - | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… | - | CVE-2022-4425 | 2024-08-20 01:15 | 2024-08-20 | Show | GitHub Exploit DB Packet Storm |