Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205741 5 警告 Google - Android のメディアサーバの libs/gui/IGraphicBufferConsumer.cpp における重要な情報を取得される脆弱性 CWE-200
CWE-Other
CVE-2016-0829 2016-03-22 15:57 2016-03-7 Show GitHub Exploit DB Packet Storm
205742 5 警告 Google - Android のメディアサーバの libs/gui/IGraphicBufferConsumer.cpp における重要な情報を取得される脆弱性 CWE-200
CWE-Other
CVE-2016-0828 2016-03-22 15:57 2016-03-7 Show GitHub Exploit DB Packet Storm
205743 9.3 危険 Google - Android のメディアサーバの libeffects における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2016-0827 2016-03-22 15:57 2016-03-7 Show GitHub Exploit DB Packet Storm
205744 9.3 危険 Google - Android のメディアサーバの libcameraservice における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-0826 2016-03-22 15:57 2016-03-7 Show GitHub Exploit DB Packet Storm
205745 5 警告 Google - Android の Widevine Trusted Application における重要な TrustZone セキュアストレージ情報を取得される脆弱性 CWE-200
CWE-Other
CVE-2016-0825 2016-03-22 15:57 2016-03-7 Show GitHub Exploit DB Packet Storm
205746 5 警告 Google - Android の libstagefright の libmpeg2 における重要な情報を取得される脆弱性 CWE-200
CWE-Other
CVE-2016-0824 2016-03-22 15:57 2016-03-7 Show GitHub Exploit DB Packet Storm
205747 2.1 注意 Google
Linux
- Android で使用される Linux Kernel の fs/proc/task_mmu.c における重要な物理アドレス情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-0823 2016-03-22 15:57 2016-03-7 Show GitHub Exploit DB Packet Storm
205748 7.6 危険 Google - Android の MediaTek 接続カーネルドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-0822 2016-03-22 15:57 2016-03-7 Show GitHub Exploit DB Packet Storm
205749 5 警告 Google
Linux
- Android で使用される Linux Kernel の include/linux/poison.h におけるポイズンポインタ保護メカニズムを回避される脆弱性 CWE-Other
その他
CVE-2016-0821 2016-03-22 15:57 2016-03-7 Show GitHub Exploit DB Packet Storm
205750 9.3 危険 Google - Android の MediaTek Wi-Fi カーネルドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-0820 2016-03-22 15:57 2016-03-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
151 7.7 HIGH
Network
- - Budibase is an open-source low-code platform. Prior to 3.39.0, the OAuth2 token fetch function in packages/server/src/sdk/workspace/oauth2/utils.ts uses raw fetch(config.url) with no SSRF protection.… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-48146 2026-05-29 01:16 2026-05-28 Show GitHub Exploit DB Packet Storm
152 5.3 MEDIUM
Network
- - Mojolicious::Plugin::Statsd versions through 0.04 for Perl allowed metric injections. The metric names and set values were not checked for newlines, colons or pipes. Metrics generated from untrusted… New CWE-93
CRLF Injection
CVE-2026-46740 2026-05-29 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm
153 7.7 HIGH
Network
- - Budibase is an open-source low-code platform. Prior to 3.38.3, removeSecrets at packages/server/src/sdk/workspace/datasources/datasources.ts masks only datasource config fields whose schema type is D… New CWE-200
Information Exposure
CVE-2026-46427 2026-05-29 01:16 2026-05-28 Show GitHub Exploit DB Packet Storm
154 4.2 MEDIUM
Network
- - Budibase is an open-source low-code platform. Prior to 3.38.2, the public API role unassignment endpoint (POST /api/public/v1/roles/unassign) updates user documents in CouchDB but does not invalidate… New CWE-269
 Improper Privilege Management
CVE-2026-46424 2026-05-29 01:16 2026-05-28 Show GitHub Exploit DB Packet Storm
155 5.4 MEDIUM
Network
- - Budibase is an open-source low-code platform. Prior to 3.38.1, the row action trigger endpoint (POST /api/tables/:sourceId/actions/:actionId/trigger) fails to validate that the user-supplied rowId is… New CWE-863
 Incorrect Authorization
CVE-2026-45718 2026-05-29 01:16 2026-05-28 Show GitHub Exploit DB Packet Storm
156 5.4 MEDIUM
Network
- - WeGIA is a web manager for charitable institutions. Prior to 3.7.3, an Open Redirect vulnerability was identified in the /WeGIA/controle/control.php endpoint of the WeGIA application, specifically th… New CWE-601
Open Redirect
CVE-2026-45335 2026-05-29 01:16 2026-05-28 Show GitHub Exploit DB Packet Storm
157 7.5 HIGH
Network
- - Dalfox is a powerful open-source XSS scanner and utility focused on automation. Prior to 2.13.0, ParameterAnalysis in pkg/scanning/parameterAnalysis.go runs two sequential worker stages that both wri… New CWE-362
CWE-404
Race Condition
 Improper Resource Shutdown or Release
CVE-2026-45090 2026-05-29 01:16 2026-05-28 Show GitHub Exploit DB Packet Storm
158 7.7 HIGH
Network
- - Budibase is an open-source low-code platform. Prior to 3.35.10, the Plugin URL upload endpoint (POST /api/plugin) validates the submitted URL with a single substring check: url.includes(".tar.gz"). A… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-45061 2026-05-29 01:16 2026-05-28 Show GitHub Exploit DB Packet Storm
159 8.8 HIGH
Network
- - LibVNCClient is a library for easy implementation of a VNC client. In 0.9.15 and earlier, LibVNCClient's Tight encoding decoder uses fixed-size 2048-pixel scratch buffers for the Gradient filter, but… New CWE-787
 Out-of-bounds Write
CVE-2026-44988 2026-05-29 01:16 2026-05-28 Show GitHub Exploit DB Packet Storm
160 5.9 MEDIUM
Network
- - view_component is a framework for building reusable, testable, and encapsulated view components in Ruby on Rails. From 3.0.0 to 4.9.0, the system test entrypoint canonicalizes a user-controlled file … New CWE-187
 Partial String Comparison
CVE-2026-44837 2026-05-29 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm