Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3201 5.3 警告
Network
Electron electron Electronのelectronにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-34776 2026-04-28 10:13 2026-04-4 Show GitHub Exploit DB Packet Storm
3202 5.4 警告
Network
オラクル Oracle Fusion Middleware オラクルのOracle Fusion Middlewareにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35232 2026-04-28 10:13 2026-04-21 Show GitHub Exploit DB Packet Storm
3203 6.4 警告
Network
オラクル Oracle Fusion Middleware オラクルのOracle Fusion Middlewareにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35252 2026-04-28 10:13 2026-04-21 Show GitHub Exploit DB Packet Storm
3204 7.3 重要
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-35338 2026-04-28 10:13 2026-04-22 Show GitHub Exploit DB Packet Storm
3205 3.3
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおけるUnicode エンコーディングの処理に関する脆弱性 CWE-176
Unicode エンコーディングの不適切な処理
CVE-2026-35346 2026-04-28 10:12 2026-04-22 Show GitHub Exploit DB Packet Storm
3206 4.4 警告
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-35347 2026-04-28 10:12 2026-04-22 Show GitHub Exploit DB Packet Storm
3207 7.7 重要
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおけるリンク解釈に関する脆弱性 CWE-59
リンク解釈の問題
CVE-2026-35349 2026-04-28 10:12 2026-04-22 Show GitHub Exploit DB Packet Storm
3208 4.2 警告
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおけるパーミッションの不適切な保持に関する脆弱性 CWE-281
パーミッションの不適切な保持
CVE-2026-35351 2026-04-28 10:12 2026-04-22 Show GitHub Exploit DB Packet Storm
3209 3.3
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-35353 2026-04-28 10:12 2026-04-22 Show GitHub Exploit DB Packet Storm
3210 6.3 警告
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-35355 2026-04-28 10:12 2026-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314621 6.1 MEDIUM
Network
semtekyazilim semtek_sempos Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Semtek Informatics Software Consulting Inc. Semtek Sempos allows Reflected XSS.This issue affects… CWE-79
Cross-site Scripting
CVE-2024-7077 2024-09-5 23:39 2024-09-5 Show GitHub Exploit DB Packet Storm
314622 9.8 CRITICAL
Network
semtekyazilim semtek_sempos Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Semtek Informatics Software Consulting Inc. Semtek Sempos allows Blind SQL Injection.This issue a… CWE-89
SQL Injection
CVE-2024-7076 2024-09-5 23:39 2024-09-5 Show GitHub Exploit DB Packet Storm
314623 7.5 HIGH
Network
zyxel zld_firmware A null pointer dereference vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series firmware ver… CWE-476
 NULL Pointer Dereference
CVE-2024-42058 2024-09-5 23:39 2024-09-3 Show GitHub Exploit DB Packet Storm
314624 4.3 MEDIUM
Network
discourse discourse_calendar discourse-calendar is a discourse plugin which adds the ability to create a dynamic calendar in the first post of a topic. The limit on region value length is too generous. This allows a malicious ac… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2024-21658 2024-09-5 23:39 2024-08-31 Show GitHub Exploit DB Packet Storm
314625 5.4 MEDIUM
Network
azurecurve toggle_show\/hide Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in azurecurve azurecurve Toggle Show/Hide allows Stored XSS.This issue affects azurecurve Tog… CWE-79
Cross-site Scripting
CVE-2024-43961 2024-09-5 23:39 2024-08-30 Show GitHub Exploit DB Packet Storm
314626 9.8 CRITICAL
Network
semtekyazilim semtek_sempos Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Semtek Informatics Software Consulting Inc. Semtek Sempos allows SQL Injection.This issue affects… CWE-89
SQL Injection
CVE-2024-7078 2024-09-5 23:38 2024-09-5 Show GitHub Exploit DB Packet Storm
314627 7.2 HIGH
Network
zyxel zld_firmware A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V5.00 through V5.38, USG FLEX series firmware versions from V5.00 through V5.38, USG FLEX 50(W) series… CWE-78
OS Command 
CVE-2024-42059 2024-09-5 23:38 2024-09-3 Show GitHub Exploit DB Packet Storm
314628 7.2 HIGH
Network
zyxel zld_firmware A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series… CWE-78
OS Command 
CVE-2024-42060 2024-09-5 23:37 2024-09-3 Show GitHub Exploit DB Packet Storm
314629 - - - Webmin before 2.202 and Virtualmin before 7.20.2 allow a network traffic loop via spoofed UDP packets on port 10000. - CVE-2024-45692 2024-09-5 23:35 2024-09-5 Show GitHub Exploit DB Packet Storm
314630 4.9 MEDIUM
Network
zyxel zld_firmware A buffer overflow vulnerability in the CGI program of Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series fi… CWE-120
Classic Buffer Overflow
CVE-2024-6343 2024-09-5 23:35 2024-09-3 Show GitHub Exploit DB Packet Storm