Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191881 7.8 重要
Local
Google - Android における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2014-9935 2017-06-15 16:55 2017-04-3 Show GitHub Exploit DB Packet Storm
191882 7.8 重要
Local
Google - Android におけるデジタル署名の検証に関する脆弱性 CWE-347
デジタル署名の不適切な検証
CVE-2014-9934 2017-06-15 16:55 2017-04-3 Show GitHub Exploit DB Packet Storm
191883 7.8 重要
Local
Google - Android における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2014-9933 2017-06-15 16:55 2017-04-3 Show GitHub Exploit DB Packet Storm
191884 7.8 重要
Local
Google - Android における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2014-9932 2017-06-15 16:55 2017-04-3 Show GitHub Exploit DB Packet Storm
191885 7.8 重要
Local
Google - Android におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2014-9931 2017-06-15 16:55 2017-04-3 Show GitHub Exploit DB Packet Storm
191886 8.8 重要
Network
Apache Software Foundation - Apache CXF Fediz におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-7662 2017-06-15 16:18 2017-05-16 Show GitHub Exploit DB Packet Storm
191887 8.8 重要
Network
Apache Software Foundation - Apache CXF Fediz の複数のプラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-7661 2017-06-15 16:18 2017-05-16 Show GitHub Exploit DB Packet Storm
191888 7.8 重要
Local
LibRaw - LibRaw におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-6887 2017-06-15 16:18 2017-03-5 Show GitHub Exploit DB Packet Storm
191889 9.8 緊急
Network
LibRaw - LibRaw におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-6886 2017-06-15 16:18 2017-03-5 Show GitHub Exploit DB Packet Storm
191890 5.5 警告
Local
GNU Project - GNU Binutils の readelf.c の print_symbol_for_build_attribute 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2017-9044 2017-06-15 15:44 2017-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
521 7.8 HIGH
Local
google chrome Insufficient validation of untrusted input in Updater in Google Chrome on Mac prior to 148.0.7778.96 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium … New CWE-20
 Improper Input Validation 
CVE-2026-7997 2026-05-7 08:18 2026-05-7 Show GitHub Exploit DB Packet Storm
522 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. New - CVE-2026-6278 2026-05-7 08:16 2026-05-7 Show GitHub Exploit DB Packet Storm
523 9.4 CRITICAL
Network
- - Note Mark is an open-source note-taking application. In version 0.19.2, IsPasswordMatch in backend/db/models.go falls back to a hard-coded bcrypt("null") placeholder whenever a user has no stored pas… Update CWE-287
Improper Authentication
CVE-2026-41571 2026-05-7 06:25 2026-05-5 Show GitHub Exploit DB Packet Storm
524 - - - FacturaScripts is an open source accounting and invoicing software. In versions 2025.92 and earlier, the application fails to validate the nick parameter during a POST request to the EditUser control… New CWE-472
 External Control of Assumed-Immutable Web Parameter
CVE-2026-32699 2026-05-7 06:25 2026-05-6 Show GitHub Exploit DB Packet Storm
525 - - - Masa CMS is a content management system forked from Mura CMS. In versions 7.5.2 and earlier, the cUsers.updateAddress function does not properly validate anti-CSRF tokens for user address management … New CWE-352
 Origin Validation Error
CVE-2026-40174 2026-05-7 06:22 2026-05-7 Show GitHub Exploit DB Packet Storm
526 - - - Masa CMS is a content management system forked from Mura CMS. In versions 7.5.2 and earlier, the cTrash.empty function does not validate anti-CSRF tokens for trash management requests. An attacker ca… New CWE-352
 Origin Validation Error
CVE-2026-40309 2026-05-7 06:22 2026-05-7 Show GitHub Exploit DB Packet Storm
527 - - - Masa CMS is a content management system forked from Mura CMS. In versions 7.5.2 and earlier, the `cTrash.restore` function does not properly validate anti-CSRF tokens for content restoration requests… New CWE-352
 Origin Validation Error
CVE-2026-40325 2026-05-7 06:22 2026-05-7 Show GitHub Exploit DB Packet Storm
528 - - - Masa CMS is a content management system forked from Mura CMS. In versions 7.5.2 and earlier, the createBundle method in `csettings.cfc` does not properly validate anti-CSRF tokens for site bundle cre… New CWE-352
 Origin Validation Error
CVE-2026-40326 2026-05-7 06:22 2026-05-7 Show GitHub Exploit DB Packet Storm
529 - - - Masa CMS is affected by an Open Redirect vulnerability due to improper handling of scheme-relative URLs. The application incorrectly interprets paths beginning with double slashes (//) as internal pa… New CWE-601
Open Redirect
CVE-2026-40332 2026-05-7 06:22 2026-05-7 Show GitHub Exploit DB Packet Storm
530 6.3 MEDIUM
Network
- - OpenClaw before 2026.4.10 contains a server-side request forgery vulnerability in browser navigation policy that allows attackers to bypass hostname validation through DNS rebinding attacks. Attacker… New CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-43582 2026-05-7 06:20 2026-05-7 Show GitHub Exploit DB Packet Storm