Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 29, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198981 7.5 重要
Network
Google - Google Chrome で使用される Blink における アドレスバーを偽造される脆弱性 CWE-20
不適切な入力確認
CVE-2016-5141 2016-08-12 18:33 2016-08-3 Show GitHub Exploit DB Packet Storm
198982 9.8 緊急
Network
Google - Google Chrome の PDFium で使用される OpenJPEG の j2k.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-5140 2016-08-12 18:33 2016-08-3 Show GitHub Exploit DB Packet Storm
198983 7.6 重要
Network
Google - Google Chrome の PDFium で使用される OpenJPEG の tcd.c の opj_tcd_init_tile 関数における整数オーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-5139 2016-08-12 18:33 2016-08-3 Show GitHub Exploit DB Packet Storm
198984 7.5 重要
Network
Google - Android の packages/SystemUI/src/com/android/systemui/power/PowerNotificationWarnings.java における DEVICE_POWER パーミッションの要求を回避される脆弱性 CWE-Other
その他
CVE-2015-3854 2016-08-12 16:16 2015-06-1 Show GitHub Exploit DB Packet Storm
198985 7.8 重要
Local
Google - Android の netd におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3856 2016-08-12 16:15 2016-08-1 Show GitHub Exploit DB Packet Storm
198986 7.8 重要
Local
Google - Nexus 6 デバイス上で稼動する Android の Qualcomm コンポーネントの drivers/media/platform/msm/camera_v2/pproc/cpp/msm_cpp.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8942 2016-08-12 16:15 2016-08-1 Show GitHub Exploit DB Packet Storm
198987 7.8 重要
Local
Google - Nexus 6 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8941 2016-08-12 16:15 2016-08-1 Show GitHub Exploit DB Packet Storm
198988 7.8 重要
Local
Google - Nexus 6 デバイス上で稼動する Android の Qualcomm コンポーネントにおける整数オーバーフローの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8940 2016-08-12 16:15 2016-08-1 Show GitHub Exploit DB Packet Storm
198989 7.8 重要
Local
Google - Nexus 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8939 2016-08-12 16:15 2016-08-1 Show GitHub Exploit DB Packet Storm
198990 7.8 重要
Local
Google - Nexus 6 デバイス上で稼動する Android の Qualcomm コンポーネントの MSM カメラドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8938 2016-08-12 16:15 2016-08-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 29, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
41 6.5 MEDIUM
Network
apache thrift Out-of-bounds Read vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue. New CWE-125
Out-of-bounds Read
CVE-2026-41607 2026-04-29 03:39 2026-04-28 Show GitHub Exploit DB Packet Storm
42 7.5 HIGH
Network
apache thrift Uncontrolled Recursion vulnerability in Apache Thrift Node.js bindings This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue. New CWE-674
 Uncontrolled Recursion
CVE-2026-41636 2026-04-29 03:38 2026-04-28 Show GitHub Exploit DB Packet Storm
43 9.8 CRITICAL
Network
apache pony_mail ** UNSUPPORTED WHEN ASSIGNED ** Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in Pony Mail leading to admin account takeover. This issue affects all … New CWE-444
HTTP Request Smuggling
CVE-2026-41873 2026-04-29 03:37 2026-04-29 Show GitHub Exploit DB Packet Storm
44 7.5 HIGH
Network
nds-association zserio Zserio is a framework for serializing structured data with a compact and efficient way with low overhead. Prior to 2.18.1, a crafted payload as small as 4-5 bytes can force memory allocations of up t… Update CWE-789
 Memory Allocation with Excessive Size Value
CVE-2026-33524 2026-04-29 03:33 2026-04-25 Show GitHub Exploit DB Packet Storm
45 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Fix NULL dereference on notify error path Since commit b5daf93b809d1 ("firmware: arm_scmi: Avoid notifier reg… Update CWE-476
 NULL Pointer Dereference
CVE-2026-31544 2026-04-29 03:32 2026-04-25 Show GitHub Exploit DB Packet Storm
46 7.5 HIGH
Network
nds-association zserio Zserio is a framework for serializing structured data with a compact and efficient way with low overhead. Prior to 2.18.1, in BitStreamReader.h readBytes() / readString(), the setBitPosition() bounds… Update CWE-190
 Integer Overflow or Wraparound
CVE-2026-33666 2026-04-29 03:32 2026-04-25 Show GitHub Exploit DB Packet Storm
47 9.1 CRITICAL
Network
dgraph dgraph Dgraph is an open source distributed GraphQL database. Prior to 25.3.3, a vulnerability has been found in Dgraph that gives an unauthenticated attacker full read access to every piece of data in the … Update CWE-943
 Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-41327 2026-04-29 03:31 2026-04-25 Show GitHub Exploit DB Packet Storm
48 9.1 CRITICAL
Network
dgraph dgraph Dgraph is an open source distributed GraphQL database. Prior to 25.3.3, a vulnerability has been found in Dgraph that gives an unauthenticated attacker full read access to every piece of data in the … Update CWE-943
 Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-41328 2026-04-29 03:31 2026-04-25 Show GitHub Exploit DB Packet Storm
49 9.1 CRITICAL
Network
teluu pjsip PJSIP is a free and open source multimedia communication library written in C. In 2.16 and earlier, there is an out-of-bounds read when parsing a malformed Content-ID URI in SIP multipart message bod… Update CWE-125
Out-of-bounds Read
CVE-2026-41415 2026-04-29 03:30 2026-04-25 Show GitHub Exploit DB Packet Storm
50 7.5 HIGH
Network
teluu pjsip PJSIP is a free and open source multimedia communication library written in C. In 2.16 and earlier, there is an integer overflow in media stream buffer size calculation when processing SDP with asymm… Update CWE-190
 Integer Overflow or Wraparound
CVE-2026-41416 2026-04-29 03:30 2026-04-25 Show GitHub Exploit DB Packet Storm