Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2001 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-Other
その他
CVE-2022-50429 2026-01-23 14:21 2025-10-1 Show GitHub Exploit DB Packet Storm
2002 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2022-50430 2026-01-23 14:21 2025-10-1 Show GitHub Exploit DB Packet Storm
2003 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2022-50435 2026-01-23 14:21 2025-10-1 Show GitHub Exploit DB Packet Storm
2004 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2022-50436 2026-01-23 14:21 2025-10-1 Show GitHub Exploit DB Packet Storm
2005 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2022-50437 2026-01-23 14:21 2025-10-1 Show GitHub Exploit DB Packet Storm
2006 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2022-50438 2026-01-23 14:21 2025-10-1 Show GitHub Exploit DB Packet Storm
2007 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2022-50439 2026-01-23 14:21 2025-10-1 Show GitHub Exploit DB Packet Storm
2008 5.5 警告
Local
Linux Linux Kernel LinuxのLinux KernelにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2022-50440 2026-01-23 14:21 2025-10-1 Show GitHub Exploit DB Packet Storm
2009 9.8 緊急
Network
watchtowerhq watchtower watchtowerhqのWordPress用watchtowerにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2023-25701 2026-01-23 14:21 2024-05-17 Show GitHub Exploit DB Packet Storm
2010 5.4 警告
Network
Automattic Inc. Jetpack Automattic Inc.のWordPress用Jetpackにおけるレンダリングされたユーザインターフェースレイヤまたはフレームの不適切な制限に関する脆弱性 CWE-1021
レンダリングされたユーザインターフェースレイヤまたはフレームの不適切な制限
CVE-2023-47774 2026-01-23 14:21 2024-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
81 6.5 MEDIUM
Network
firebirdsql firebird Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, the ClumpletReader::getClumpletSize() function can overflow the totalLength value when … Update CWE-190
CWE-835
 Integer Overflow or Wraparound
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-28214 2026-04-25 04:47 2026-04-18 Show GitHub Exploit DB Packet Storm
82 8.2 HIGH
Network
firebirdsql firebird Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, when the server receives an op_crypt_key_callback packet without prior authentication, … Update CWE-476
 NULL Pointer Dereference
CVE-2026-28224 2026-04-25 04:45 2026-04-18 Show GitHub Exploit DB Packet Storm
83 7.5 HIGH
Network
xiangshan nemu NEMU (OpenXiangShan/NEMU) before v2025.12.r2 contains an improper instruction-validation flaw in its RISC-V Vector (RVV) decoder. The decoder does not correctly validate the funct3 field when decodin… New CWE-131
CWE-1287
Incorrect Calculation of Buffer Size
 Improper Validation of Specified Type of Input
CVE-2026-29645 2026-04-25 04:25 2026-04-21 Show GitHub Exploit DB Packet Storm
84 9.8 CRITICAL
Network
xiangshan nemu NEMU contains an implementation flaw in its RISC-V Hypervisor CSR handling where henvcfg[7:4] (CBIE/CBCFE/CBZE-related fields) is incorrectly masked/updated based on menvcfg[7:4], so a machine-mode w… New CWE-693
 Protection Mechanism Failure
CVE-2026-29649 2026-04-25 04:23 2026-04-21 Show GitHub Exploit DB Packet Storm
85 3.3 LOW
Local
uutils coreutils A logic error in the cut utility of uutils coreutils causes the utility to ignore the -s (only-delimited) flag when using the -z (null-terminated) and -d '' (empty delimiter) options together. The im… New CWE-684
 Incorrect Provision of Specified Functionality
CVE-2026-35381 2026-04-25 04:19 2026-04-23 Show GitHub Exploit DB Packet Storm
86 6.5 MEDIUM
Network
roxy-wi roxy-wi Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. Prior to version 8.2.6.4, the POST /config/<service>/show API endpoint accepts a configver parameter that is dir… New CWE-24
 Path Traversal: '../filedir'
CVE-2026-33431 2026-04-25 04:19 2026-04-21 Show GitHub Exploit DB Packet Storm
87 6.3 MEDIUM
Local
uutils coreutils A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the mv utility of uutils coreutils during cross-device operations. The utility removes the destination path before recreating it throu… New CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-35364 2026-04-25 04:19 2026-04-23 Show GitHub Exploit DB Packet Storm
88 3.3 LOW
Local
uutils coreutils The nohup utility in uutils coreutils creates its default output file, nohup.out, without specifying explicit restricted permissions. This causes the file to inherit umask-based permissions, typicall… New CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2026-35367 2026-04-25 04:19 2026-04-23 Show GitHub Exploit DB Packet Storm
89 7.8 HIGH
Local
uutils coreutils A vulnerability exists in the chroot utility of uutils coreutils when using the --userspec option. The utility resolves the user specification via getpwnam() after entering the chroot but before drop… New CWE-426
 Untrusted Search Path
CVE-2026-35368 2026-04-25 04:18 2026-04-23 Show GitHub Exploit DB Packet Storm
90 9.1 CRITICAL
Network
roxy-wi roxy-wi Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions up to and including 8.2.8.2, when LDAP authentication is enabled, Roxy-WI constructs an LDAP search … New CWE-287
NVD-CWE-noinfo
Improper Authentication
CVE-2026-33432 2026-04-25 04:18 2026-04-21 Show GitHub Exploit DB Packet Storm