Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1801 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows Simple Search Discovery Protocol (SSDP) サービスの特権昇格の脆弱性 CWE-362
競合状態
CVE-2026-32082 2026-04-23 10:14 2026-04-14 Show GitHub Exploit DB Packet Storm
1802 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows Simple Search Discovery Protocol (SSDP) サービスの特権昇格の脆弱性 CWE-362
競合状態
CVE-2026-32083 2026-04-23 10:14 2026-04-14 Show GitHub Exploit DB Packet Storm
1803 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows 印刷スプーラーの情報漏えいの脆弱性 CWE-200
情報漏えい
CVE-2026-32084 2026-04-23 10:14 2026-04-14 Show GitHub Exploit DB Packet Storm
1804 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
リモート プロシージャ コールの情報漏えいの脆弱性 CWE-200
情報漏えい
CVE-2026-32085 2026-04-23 10:14 2026-04-14 Show GitHub Exploit DB Packet Storm
1805 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows Function Discovery Service (fdwsd.dll) の特権昇格の脆弱性 CWE-362
競合状態
CVE-2026-32086 2026-04-23 10:13 2026-04-14 Show GitHub Exploit DB Packet Storm
1806 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows Function Discovery Service (fdwsd.dll) の特権昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-32087 2026-04-23 10:13 2026-04-14 Show GitHub Exploit DB Packet Storm
1807 5.7 警告
Physics
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows 10 1809
Microsoft Wind…
Windows 生体認証サービスのセキュリティ機能のバイパスの脆弱性 CWE-362
競合状態
CVE-2026-32088 2026-04-23 10:13 2026-04-14 Show GitHub Exploit DB Packet Storm
1808 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows Speech Brokered API の特権昇格の脆弱性 CWE-362
CWE-416
CVE-2026-32089 2026-04-23 10:13 2026-04-14 Show GitHub Exploit DB Packet Storm
1809 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows Speech Brokered API の特権昇格の脆弱性 CWE-362
CWE-416
CVE-2026-32090 2026-04-23 10:13 2026-04-14 Show GitHub Exploit DB Packet Storm
1810 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Microsoft Resilient File System の特権昇格の脆弱性 CWE-362
CWE-416
CVE-2026-32091 2026-04-23 10:13 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 4, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
411 7.3 HIGH
Network
- - A security vulnerability has been detected in AstrBotDevs AstrBot up to 4.16.0. This issue affects some unknown processing of the file astrbot/dashboard/routes/auth.py of the component Dashboard. The… New CWE-259
CWE-798
Use of Hard-coded Password 
 Use of Hard-coded Credentials
CVE-2026-7579 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
412 5.3 MEDIUM
Local
- - A vulnerability was detected in Exiftool up to 13.53. Impacted is the function Process_mrld of the file lib/Image/ExifTool/GM.pm of the component JPEG/QuickTime/MOV/MP4. The manipulation of the argum… New CWE-74
CWE-94
Injection
Code Injection
CVE-2026-7580 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
413 4.3 MEDIUM
Network
- - A security vulnerability has been detected in alexta69 MeTube up to 2026.04.09. This affects the function on_prepare of the file app/main.py of the component CORS Policy. The manipulation leads to pe… New CWE-346
CWE-942
 Origin Validation Error
 Permissive Cross-domain Policy with Untrusted Domains
CVE-2026-7581 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
414 5.3 MEDIUM
Network
- - The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'wp_ajax… New CWE-862
 Missing Authorization
CVE-2026-3143 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
415 5.3 MEDIUM
Local
- - A vulnerability was detected in AcademySoftwareFoundation OpenImageIO up to 3.2.0.1-dev. This vulnerability affects unknown code of the file src/dds.imageio/ddsinput.cpp of the component DDS Image Ha… New CWE-119
CWE-787
Incorrect Access of Indexable Resource ('Range Error') 
 Out-of-bounds Write
CVE-2026-7582 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
416 4.3 MEDIUM
Network
- - A flaw has been found in Open5GS up to 2.7.7. This issue affects the function bsf_sess_find_by_ipv6prefix of the file /src/bsf/context.c of the component BSF. This manipulation of the argument ipv6Pr… New CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7583 2026-05-2 00:26 2026-05-2 Show GitHub Exploit DB Packet Storm
417 5.6 MEDIUM
Network
- - A vulnerability was determined in D-Link M60 up to 1.20B02. Affected by this issue is some unknown functionality of the file /usr/bin/httpd. This manipulation causes weak password recovery. The attac… New CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2026-7554 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
418 - - - In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix missing validation of ticket length in non-XDR key preparsing In rxrpc_preparse(), there are two paths for parsing key… New - CVE-2026-31696 2026-05-2 00:24 2026-05-1 Show GitHub Exploit DB Packet Storm
419 - - - In the Linux kernel, the following vulnerability has been resolved: ALSA: caiaq: take a reference on the USB device in create_card() The caiaq driver stores a pointer to the parent USB device in cd… New - CVE-2026-31701 2026-05-2 00:24 2026-05-1 Show GitHub Exploit DB Packet Storm
420 - - - In the Linux kernel, the following vulnerability has been resolved: ksmbd: use check_add_overflow() to prevent u16 DACL size overflow set_posix_acl_entries_dacl() and set_ntacl_dacl() accumulate AC… New - CVE-2026-31704 2026-05-2 00:24 2026-05-1 Show GitHub Exploit DB Packet Storm