Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3251 7.5 重要
Network
monetr monetr monetrにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-40481 2026-04-27 11:29 2026-04-17 Show GitHub Exploit DB Packet Storm
3252 5.5 警告
Local
HKUDS OpenHarness HKUDSのOpenHarnessにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-40515 2026-04-27 11:29 2026-04-17 Show GitHub Exploit DB Packet Storm
3253 6.3 警告
Local
HKUDS OpenHarness HKUDSのOpenHarnessにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-40516 2026-04-27 11:29 2026-04-17 Show GitHub Exploit DB Packet Storm
3254 7.6 重要
Network
HKUDS OpenHarness HKUDSのOpenHarnessにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-6729 2026-04-27 11:29 2026-04-20 Show GitHub Exploit DB Packet Storm
3255 9.8 緊急
Network
Topsec Technologies Group Inc. Tianxin Internet Behavior Management System Topsec Technologies Group Inc.のTianxin Internet Behavior Management SystemにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2021-4473 2026-04-27 11:29 2026-04-7 Show GitHub Exploit DB Packet Storm
3256 7.2 重要
Network
Dolibarr ERP & CRM dolibarr erp/crm Dolibarr ERP & CRMのdolibarr erp/crmにおける複数の脆弱性 CWE-94
CWE-95
CVE-2026-22666 2026-04-27 11:29 2026-04-7 Show GitHub Exploit DB Packet Storm
3257 9.8 緊急
Network
Weaver Software Weaver e cology Weaver SoftwareのWeaver e cologyにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-22679 2026-04-27 11:29 2026-04-7 Show GitHub Exploit DB Packet Storm
3258 8.8 重要
Local
PackageKit Project PackageKit PackageKit ProjectのPackageKitにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-41651 2026-04-27 11:29 2026-04-22 Show GitHub Exploit DB Packet Storm
3259 4.4 警告
Local
libjxl project libjxl libjxl projectのlibjxlにおける初期化されていないリソースの使用に関する脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2025-12474 2026-04-27 11:28 2026-02-11 Show GitHub Exploit DB Packet Storm
3260 7.5 重要
Network
FirebirdSQL Firebird FirebirdSQLのFirebirdにおける情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2025-65104 2026-04-27 11:28 2026-04-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314821 3.3 LOW
Local
ofono_project ofono oFono AT CMGL Command Uninitialized Variable Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of oFono. An a… CWE-908
 Use of Uninitialized Resource
CVE-2024-7540 2024-08-30 02:58 2024-08-6 Show GitHub Exploit DB Packet Storm
314822 3.3 LOW
Local
ofono_project ofono oFono AT CMT Command Uninitialized Variable Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of oFono. An at… CWE-908
 Use of Uninitialized Resource
CVE-2024-7541 2024-08-30 02:57 2024-08-6 Show GitHub Exploit DB Packet Storm
314823 3.3 LOW
Local
ofono_project ofono oFono AT CMGR Command Uninitialized Variable Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of oFono. An a… CWE-908
 Use of Uninitialized Resource
CVE-2024-7542 2024-08-30 02:56 2024-08-6 Show GitHub Exploit DB Packet Storm
314824 7.8 HIGH
Local
ofono_project ofono oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attackers to execute arbitrary code on affected installations of oFono. An attacker mus… CWE-787
 Out-of-bounds Write
CVE-2024-7546 2024-08-30 02:55 2024-08-6 Show GitHub Exploit DB Packet Storm
314825 5.4 MEDIUM
Network
haloservicesolutions haloitsm HaloITSM versions up to 2.146.1 are affected by a Stored Cross-Site Scripting (XSS) vulnerability. The injected JavaScript code can execute arbitrary action on behalf of the user accessing a ticket. … CWE-79
Cross-site Scripting
CVE-2024-6200 2024-08-30 02:53 2024-08-6 Show GitHub Exploit DB Packet Storm
314826 5.3 MEDIUM
Network
haloservicesolutions haloitsm HaloITSM versions up to 2.146.1 are affected by a Template Injection vulnerability within the engine used to generate emails. This can lead to the leakage of potentially sensitive information. HaloIT… NVD-CWE-Other
CVE-2024-6201 2024-08-30 02:52 2024-08-6 Show GitHub Exploit DB Packet Storm
314827 9.8 CRITICAL
Network
haloservicesolutions haloitsm HaloITSM versions up to 2.146.1 are affected by a SAML XML Signature Wrapping (XSW) vulnerability. When having a SAML integration configured, anonymous actors could impersonate arbitrary HaloITSM use… CWE-863
 Incorrect Authorization
CVE-2024-6202 2024-08-30 02:48 2024-08-6 Show GitHub Exploit DB Packet Storm
314828 8.1 HIGH
Network
haloservicesolutions haloitsm HaloITSM versions up to 2.146.1 are affected by a Password Reset Poisoning vulnerability. Poisoned password reset links can be sent to existing HaloITSM users (given their email address is known). Wh… CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2024-6203 2024-08-30 02:46 2024-08-6 Show GitHub Exploit DB Packet Storm
314829 6.1 MEDIUM
Network
mozilla firefox
firefox_esr
Firefox adds web-compatibility shims in place of some tracking scripts blocked by Enhanced Tracking Protection. On a site protected by Content Security Policy in "strict-dynamic" mode, an attacker a… CWE-79
Cross-site Scripting
CVE-2024-7524 2024-08-30 02:35 2024-08-6 Show GitHub Exploit DB Packet Storm
314830 6.1 MEDIUM
Network
insurance_management_system_project insurance_management_system A vulnerability has been found in nafisulbari/itsourcecode Insurance Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file editCl… CWE-79
Cross-site Scripting
CVE-2024-8208 2024-08-30 02:27 2024-08-28 Show GitHub Exploit DB Packet Storm