|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 18, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 3161 | 8.8 |
重要
Network |
Mervin Praison (MervinPraison) | PraisonAI | Mervin Praison (MervinPraison)のPraisonAIにおけるパストラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2026-40157 | 2026-04-27 10:48 | 2026-04-10 | Show | GitHub Exploit DB Packet Storm |
| 3162 | 6.5 |
警告
Network |
Linux Foundation | tekton pipelines | Linux Foundationのtekton pipelinesにおける送信データへの重要な情報の挿入に関する脆弱性 |
CWE-201 CWE-noinfo |
CVE-2026-40161 | 2026-04-27 10:48 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 3163 | 8.1 |
重要
Network |
SysAdmins Media | HomeBox | SysAdmins MediaのHomeBoxにおける不適切な所有権の割り当てに関する脆弱性 |
CWE-708
不適切な所有権の割り当て |
CVE-2026-40196 | 2026-04-27 10:48 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3164 | 2.7 |
低
Network |
OpenBao | OpenBao | OpenBaoにおけるセキュリティトークンの割り当ての制限に関する脆弱性 |
CWE-1259
セキュリティトークンの割り当ての不適切な制限 |
CVE-2026-40264 | 2026-04-27 10:48 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 3165 | 4.3 |
警告
Network |
dnnsoftware | dotnetnuke | dnnsoftwareのdotnetnukeにおける認可に関する脆弱性 |
CWE-285
不適切な認可 |
CVE-2026-40305 | 2026-04-27 10:48 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3166 | 6.5 |
警告
Network |
dnnsoftware | dotnetnuke | dnnsoftwareのdotnetnukeにおける不十分なランダム値の使用に関する脆弱性 |
CWE-330
不十分なランダム値の使用 |
CVE-2026-40306 | 2026-04-27 10:48 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3167 | 8 |
重要
Network |
dnnsoftware | dotnetnuke | dnnsoftwareのdotnetnukeにおける代替 XSS 構文の不適切な無効化に関する脆弱性 |
CWE-87
代替 XSS 構文の不適切な無効化 |
CVE-2026-40321 | 2026-04-27 10:48 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3168 | 5.3 |
警告
Network |
The FastAPI Expert | python-multipart | The FastAPI Expertのpython-multipartにおける複数の脆弱性 |
CWE-400 CWE-834 |
CVE-2026-40347 | 2026-04-27 10:48 | 2026-04-18 | Show | GitHub Exploit DB Packet Storm |
| 3169 | 5.4 |
警告
Network |
wger | wger | wger Projectのwgerにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2026-40353 | 2026-04-27 10:48 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3170 | 7.6 |
重要
Network |
wger | wger | wger Projectのwgerにおける複数の脆弱性 |
CWE-284 CWE-862 |
CVE-2026-40474 | 2026-04-27 10:48 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 18, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 350381 | - |
cde hp ibm |
cde hp-ux vvos aix |
Unauthorized privileged access or denial of service via dtappgather program in CDE. |
NVD-CWE-Other
|
CVE-1999-0014 | 2008-09-9 21:33 | 1998-01-21 | Show | GitHub Exploit DB Packet Storm | |
| 350382 | - |
cisco gnu microsoft hp netbsd sun |
ios inet winsock hp-ux windows_95 windows_nt netbsd sunos |
Land IP denial of service. |
NVD-CWE-Other
|
CVE-1999-0016 | 2008-09-9 21:33 | 1997-12-1 | Show | GitHub Exploit DB Packet Storm | |
| 350383 | - |
data_general ncr sgi ibm nighthawk sco sun |
dg_ux mp-ras irix aix cx_ux powerux open_desktop openserver unixware sunos |
Delete or create a file via rpc.statd, due to invalid information. |
NVD-CWE-Other
|
CVE-1999-0019 | 2008-09-9 21:33 | 1996-04-24 | Show | GitHub Exploit DB Packet Storm | |
| 350384 | - | muhammad_a._muquit | wwwcount | Arbitrary command execution via buffer overflow in Count.cgi (wwwcount) cgi-bin program. |
NVD-CWE-Other
|
CVE-1999-0021 | 2008-09-9 21:33 | 1997-11-5 | Show | GitHub Exploit DB Packet Storm | |
| 350385 | - |
sgi bsdi freebsd next sun |
irix bsd_os freebsd nextstep sunos |
Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as root via a long -C (classification) command line option. |
NVD-CWE-Other
|
CVE-1999-0032 | 2008-09-9 21:33 | 1996-10-25 | Show | GitHub Exploit DB Packet Storm | |
| 350386 | - | sgi | irix | fsdump command in IRIX allows local users to obtain root access by modifying sensitive files. |
NVD-CWE-Other
|
CVE-1999-0044 | 2008-09-9 21:33 | 1996-12-3 | Show | GitHub Exploit DB Packet Storm | |
| 350387 | - |
eric_allman bsdi caldera |
sendmail bsd_os openlinux |
MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4. |
NVD-CWE-Other
|
CVE-1999-0047 | 2008-09-9 21:33 | 1997-01-28 | Show | GitHub Exploit DB Packet Storm | |
| 350388 | - |
debian ibm nec |
netkit aix asl_ux_4800 ews-ux_v up-ux_v |
Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges. |
NVD-CWE-Other
|
CVE-1999-0048 | 2008-09-9 21:33 | 1997-01-27 | Show | GitHub Exploit DB Packet Storm | |
| 350389 | - |
eric_allman freebsd hp ibm sun |
vacation freebsd hp-ux vvos aix solaris sunos |
Vacation program allows command execution by remote users through a sendmail command. |
NVD-CWE-Other
|
CVE-1999-0057 | 2008-09-9 21:33 | 1998-11-16 | Show | GitHub Exploit DB Packet Storm | |
| 350390 | - | php | php | Buffer overflow in PHP cgi program, php.cgi allows shell access. |
NVD-CWE-Other
|
CVE-1999-0058 | 2008-09-9 21:33 | 1997-04-17 | Show | GitHub Exploit DB Packet Storm |