Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191141 8.8 重要
Network
Nitro Software, Inc. - Nitro Pro におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2017-7442 2017-09-4 15:39 2017-07-23 Show GitHub Exploit DB Packet Storm
191142 9.8 緊急
Network
Free Time - Format Factory における信頼性のない検索パスに関する脆弱性 CWE-426
信頼性のない検索パス
CVE-2017-12414 2017-09-4 15:35 2017-08-2 Show GitHub Exploit DB Packet Storm
191143 5.5 警告
Local
mpg123 project - mpg123 におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-9545 2017-09-4 15:16 2017-07-26 Show GitHub Exploit DB Packet Storm
191144 5.5 警告
Local
LAME project - LAME におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-9412 2017-09-4 15:16 2017-07-26 Show GitHub Exploit DB Packet Storm
191145 5.5 警告
Local
LAME project - LAME におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-9411 2017-09-4 15:16 2017-07-26 Show GitHub Exploit DB Packet Storm
191146 5.5 警告
Local
LAME project - LAME におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-9410 2017-09-4 15:16 2017-07-26 Show GitHub Exploit DB Packet Storm
191147 5.5 警告
Local
Surina.net - SoundTouch におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-9260 2017-09-4 15:16 2017-07-26 Show GitHub Exploit DB Packet Storm
191148 5.5 警告
Local
Surina.net - SoundTouch におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2017-9259 2017-09-4 15:16 2017-07-26 Show GitHub Exploit DB Packet Storm
191149 5.5 警告
Local
Surina.net - SoundTouch におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2017-9258 2017-09-4 15:16 2017-07-26 Show GitHub Exploit DB Packet Storm
191150 8.8 重要
Network
Unitrends - Unitrends Backup における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-12479 2017-09-4 15:11 2017-08-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1061 7.8 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2016
windows_server_2019
w…
Stack-based buffer overflow in Windows TCP/IP allows an authorized attacker to elevate privileges locally. CWE-121
Stack-based Buffer Overflow
CVE-2026-40399 2026-05-16 00:26 2026-05-13 Show GitHub Exploit DB Packet Storm
1062 7.1 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service locally. CWE-476
 NULL Pointer Dereference
CVE-2026-40401 2026-05-16 00:25 2026-05-13 Show GitHub Exploit DB Packet Storm
1063 9.3 CRITICAL
Local
microsoft windows_11_23h2
windows_server_2022
Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally. CWE-416
 Use After Free
CVE-2026-40402 2026-05-16 00:23 2026-05-13 Show GitHub Exploit DB Packet Storm
1064 8.8 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to execute code locally. CWE-122
Heap-based Buffer Overflow
CVE-2026-40403 2026-05-16 00:22 2026-05-13 Show GitHub Exploit DB Packet Storm
1065 7.5 HIGH
Network
microsoft windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2025
Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network. CWE-476
 NULL Pointer Dereference
CVE-2026-40405 2026-05-16 00:20 2026-05-13 Show GitHub Exploit DB Packet Storm
1066 7.5 HIGH
Network
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Use after free in Windows TCP/IP allows an unauthorized attacker to disclose information over a network. CWE-416
 Use After Free
CVE-2026-40406 2026-05-16 00:20 2026-05-13 Show GitHub Exploit DB Packet Storm
1067 7.8 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally. CWE-122
Heap-based Buffer Overflow
CVE-2026-40407 2026-05-16 00:19 2026-05-13 Show GitHub Exploit DB Packet Storm
1068 9.1 CRITICAL
Network
- - Crabbox prior to v0.12.0 contains an environment variable exposure vulnerability that allows attackers with access to a malicious or compromised repository to forward local secrets such as API tokens… CWE-94
Code Injection
CVE-2026-8634 2026-05-16 00:16 2026-05-15 Show GitHub Exploit DB Packet Storm
1069 3.1 LOW
Network
- - Out of bounds read in GPU in Google Chrome on Linux prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chro… CWE-125
Out-of-bounds Read
CVE-2026-8578 2026-05-16 00:16 2026-05-15 Show GitHub Exploit DB Packet Storm
1070 4.3 MEDIUM
Network
- - Inappropriate implementation in CORS in Google Chrome on Linux and ChromeOS prior to 148.0.7778.168 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security sev… CWE-942
 Permissive Cross-domain Policy with Untrusted Domains
CVE-2026-8576 2026-05-16 00:16 2026-05-15 Show GitHub Exploit DB Packet Storm