Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3831 4.4 警告
Local
Mercurycom MIPC252W Firmware MercurycomのMIPC252W Firmwareにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-35901 2026-05-7 10:53 2026-04-27 Show GitHub Exploit DB Packet Storm
3832 6.2 警告
Local
Mercurycom MIPC252W Firmware MercurycomのMIPC252W Firmwareにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2026-35902 2026-05-7 10:53 2026-04-27 Show GitHub Exploit DB Packet Storm
3833 9.8 緊急
Network
Mercurycom MIPC252W Firmware MercurycomのMIPC252W Firmwareにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-35903 2026-05-7 10:53 2026-04-27 Show GitHub Exploit DB Packet Storm
3834 4.8 警告
Network
Apache Software Foundation Apache Storm Prometheus Reporter Apache Software FoundationのApache Storm Prometheus Reporterにおける証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2026-40557 2026-05-7 10:53 2026-04-27 Show GitHub Exploit DB Packet Storm
3835 8.8 重要
Network
minerva minerva Agilonhealth (MphRx)のMinervaにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-5779 2026-05-7 10:53 2026-04-28 Show GitHub Exploit DB Packet Storm
3836 8.1 重要
Network
minerva minerva Agilonhealth (MphRx)のMinervaにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-5780 2026-05-7 10:52 2026-04-28 Show GitHub Exploit DB Packet Storm
3837 8.8 重要
Network
Frappe ERPNext FrappeのERPNextにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2023-54345 2026-05-7 10:52 2026-05-5 Show GitHub Exploit DB Packet Storm
3838 7.5 重要
Network
OpenEMR OpenEMR OpenEMRにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2023-54347 2026-05-7 10:52 2026-05-5 Show GitHub Exploit DB Packet Storm
3839 7.2 重要
Network
デル data domain operating system デルのdata domain operating systemにおける認証に関する脆弱性 CWE-287
CWE-noinfo
CVE-2025-46607 2026-05-7 10:52 2026-04-17 Show GitHub Exploit DB Packet Storm
3840 6.6 警告
Network
デル data domain operating system デルのdata domain operating systemにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2025-46641 2026-05-7 10:52 2026-04-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313621 7.8 HIGH
Local
autodesk autocad
autocad_advance_steel
autocad_architecture
autocad_civil_3d
autocad_electrical
autocad_mechanical
autocad_mep
autocad_plant_3d
A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force a Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a cra… CWE-125
Out-of-bounds Read
CVE-2024-8588 2024-11-2 01:16 2024-10-30 Show GitHub Exploit DB Packet Storm
313622 8.8 HIGH
Network
tenda rx9_pro_firmware A vulnerability was found in Tenda RX9 Pro 22.03.02.20. It has been rated as critical. This issue affects the function sub_424CE0 of the file /goform/setMacFilterCfg of the component POST Request Han… CWE-787
 Out-of-bounds Write
CVE-2024-10351 2024-11-2 01:15 2024-10-25 Show GitHub Exploit DB Packet Storm
313623 6.1 MEDIUM
Network
microchip timeprovider_4100_firmware URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Microchip TimeProvider 4100 allows XSS Through HTTP Headers.This issue affects TimeProvider 4100: from 1.0. CWE-601
Open Redirect
CVE-2024-43683 2024-11-2 01:15 2024-10-5 Show GitHub Exploit DB Packet Storm
313624 7.5 HIGH
Network
mayurik petrol_pump_management A vulnerability, which was classified as critical, has been found in SourceCodester Petrol Pump Management Software 1.0. Affected by this issue is some unknown functionality of the file /admin/ajax_p… CWE-89
SQL Injection
CVE-2024-10380 2024-11-2 01:11 2024-10-25 Show GitHub Exploit DB Packet Storm
313625 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: btrfs: fix uninitialized pointer free in add_inode_ref() The add_inode_ref() function does not initialize the "name" struct when … CWE-824
 Access of Uninitialized Pointer
CVE-2024-50088 2024-11-2 01:05 2024-10-29 Show GitHub Exploit DB Packet Storm
313626 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Call iso_exit() on module unload If iso_init() has been called, iso_exit() must be called on module unload. Without th… NVD-CWE-noinfo
CVE-2024-50078 2024-11-2 01:01 2024-10-29 Show GitHub Exploit DB Packet Storm
313627 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix multiple init when debugfs is disabled If bt_debugfs is not created successfully, which happens if either CON… NVD-CWE-noinfo
CVE-2024-50077 2024-11-2 01:00 2024-10-29 Show GitHub Exploit DB Packet Storm
313628 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: xhci: tegra: fix checked USB2 port number If USB virtualizatoin is enabled, USB2 ports are shared between all Virtual Functions. … NVD-CWE-noinfo
CVE-2024-50075 2024-11-2 00:51 2024-10-29 Show GitHub Exploit DB Packet Storm
313629 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: tty: n_gsm: Fix use-after-free in gsm_cleanup_mux BUG: KASAN: slab-use-after-free in gsm_cleanup_mux+0x77b/0x7b0 drivers/tty/n_gs… CWE-416
 Use After Free
CVE-2024-50073 2024-11-2 00:44 2024-10-29 Show GitHub Exploit DB Packet Storm
313630 - - - An issue was discovered in Ollama before 0.1.46. It exposes which files exist on the server on which it is deployed via path traversal in the api/push route. - CVE-2024-39722 2024-11-2 00:35 2024-11-1 Show GitHub Exploit DB Packet Storm