Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3031 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. F451 Firmware Shenzhen Tenda Technology Co.,Ltd.のF451 Firmwareにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-5989 2026-05-1 10:43 2026-04-10 Show GitHub Exploit DB Packet Storm
3032 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. F451 Firmware Shenzhen Tenda Technology Co.,Ltd.のF451 Firmwareにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-5990 2026-05-1 10:42 2026-04-10 Show GitHub Exploit DB Packet Storm
3033 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. F451 Firmware Shenzhen Tenda Technology Co.,Ltd.のF451 Firmwareにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-5991 2026-05-1 10:42 2026-04-10 Show GitHub Exploit DB Packet Storm
3034 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. F451 Firmware Shenzhen Tenda Technology Co.,Ltd.のF451 Firmwareにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-5992 2026-05-1 10:42 2026-04-10 Show GitHub Exploit DB Packet Storm
3035 8.1 重要
Network
OpenClaw OpenClaw OpenClawにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-6011 2026-05-1 10:42 2026-04-10 Show GitHub Exploit DB Packet Storm
3036 8.8 重要
Network
D-Link Systems, Inc. DIR-513 ファームウェア D-Link CorporationのDIR-513 ファームウェアにおける複数の脆弱性 CWE-119
CWE-120
CVE-2026-6012 2026-05-1 10:42 2026-04-10 Show GitHub Exploit DB Packet Storm
3037 8.8 重要
Network
D-Link Systems, Inc. DIR-513 ファームウェア D-Link CorporationのDIR-513 ファームウェアにおける複数の脆弱性 CWE-119
CWE-120
CVE-2026-6013 2026-05-1 10:42 2026-04-10 Show GitHub Exploit DB Packet Storm
3038 8.8 重要
Network
D-Link Systems, Inc. DIR-513 ファームウェア D-Link CorporationのDIR-513 ファームウェアにおける複数の脆弱性 CWE-119
CWE-120
CVE-2026-6014 2026-05-1 10:42 2026-04-10 Show GitHub Exploit DB Packet Storm
3039 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. AC9 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のAC9 ファームウェアにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-6015 2026-05-1 10:42 2026-04-10 Show GitHub Exploit DB Packet Storm
3040 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. AC9 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のAC9 ファームウェアにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-6016 2026-05-1 10:42 2026-04-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314011 9.8 CRITICAL
Network
soplanning soplanning A unauthenticated Remote Code Execution (RCE) vulnerability is found in the SO Planning online planning tool. With this vulnerability, an attacker can upload executable files that are moved to a publ… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-27115 2024-09-19 05:32 2024-09-11 Show GitHub Exploit DB Packet Storm
314012 3.1 LOW
Network
keyfactor ejbca The CMP CLI client in KeyFactor EJBCA before 8.3.1 has only 6 octets of salt, and is thus not compliant with the security requirements of RFC 4211, and might make man-in-the-middle attacks easier. CM… NVD-CWE-noinfo
CVE-2024-36066 2024-09-19 05:28 2024-09-13 Show GitHub Exploit DB Packet Storm
314013 7.8 HIGH
Local
wibu wibukey An issue was discovered in WibuKey64.sys in WIBU-SYSTEMS WibuKey before v6.70 and fixed in v.6.70. An improper bounds check allows crafted packets to cause an arbitrary address write, resulting in ke… CWE-787
 Out-of-bounds Write
CVE-2024-45181 2024-09-19 05:26 2024-09-13 Show GitHub Exploit DB Packet Storm
314014 6.1 MEDIUM
Network
discourse calendar Discourse Calendar plugin adds the ability to create a dynamic calendar in the first post of a topic to Discourse. Rendering event names can be susceptible to XSS attacks. This vulnerability only aff… CWE-79
Cross-site Scripting
CVE-2024-45303 2024-09-19 05:25 2024-09-13 Show GitHub Exploit DB Packet Storm
314015 6.1 MEDIUM
Network
eclipse glassfish In Eclipse Glassfish versions prior to 7.0.10, a URL redirection vulnerability to untrusted sites existed. This vulnerability is caused by the vulnerability (CVE-2023-41080) in the Apache code includ… CWE-601
Open Redirect
CVE-2024-8646 2024-09-19 05:20 2024-09-11 Show GitHub Exploit DB Packet Storm
314016 6.5 MEDIUM
Network
reedos aim-star This vulnerability exists in Reedos aiM-Star version 2.0.1 due to improper access controls on its certain API endpoints. An authenticated remote attacker could exploit this vulnerability by manipulat… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-45786 2024-09-19 05:12 2024-09-11 Show GitHub Exploit DB Packet Storm
314017 7.5 HIGH
Network
reedos aim-star This vulnerability exists in Reedos aiM-Star version 2.0.1 due to missing rate limiting on OTP requests in certain API endpoints. An authenticated remote attacker could exploit this vulnerability by … NVD-CWE-Other
CVE-2024-45788 2024-09-19 04:57 2024-09-11 Show GitHub Exploit DB Packet Storm
314018 4.3 MEDIUM
Network
reedos aim-star This vulnerability exists in Reedos aiM-Star version 2.0.1 due to improper validation of the ‘mode’ parameter in the API endpoint used during the registration process. An authenticated remote attacke… CWE-354
 Improper Validation of Integrity Check Value
CVE-2024-45789 2024-09-19 04:55 2024-09-11 Show GitHub Exploit DB Packet Storm
314019 7.8 HIGH
Local
schneider-electric vijeo_designer_embedded_in_ecostruxure_machine_expert
vijeo_designer
CWE-269: Improper Privilege Management vulnerability exists that could cause unauthorized access, loss of confidentiality, integrity and availability of the workstation when non-admin authenticated u… NVD-CWE-noinfo
CVE-2024-8306 2024-09-19 04:51 2024-09-12 Show GitHub Exploit DB Packet Storm
314020 6.7 MEDIUM
Local
dell latitude_5290_2-in-1_firmware
precision_3420_tower_firmware
precision_3620_firmware
wyse_7040_thin_client_firmware
precision_7720_firmware
precision_7520_firmware
precision_5530_2-i…
Dell BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading … NVD-CWE-noinfo
CVE-2024-38483 2024-09-19 04:19 2024-08-14 Show GitHub Exploit DB Packet Storm