Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207361 5 警告 The PHP Group
アップル
- PHP におけるアクセス制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2006-7243 2015-08-13 15:49 2006-12-18 Show GitHub Exploit DB Packet Storm
207362 7.2 危険 Clutter Project - Clutter のジェスチャ処理コードにおけるロックスクリーンを回避される脆弱性 CWE-Other
その他
CVE-2015-3213 2015-08-13 15:42 2015-06-1 Show GitHub Exploit DB Packet Storm
207363 - - OpenAFS - ** 削除 ** OpenAFS の vlserver におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2015-3287 2015-08-13 15:19 2015-07-29 Show GitHub Exploit DB Packet Storm
207364 4.6 警告 OpenAFS - OpenAFS の Solaris カーネルエクステンションにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-3286 2015-08-13 15:19 2015-07-29 Show GitHub Exploit DB Packet Storm
207365 2.1 注意 OpenAFS - OpenAFS の OSD FS コマンドの pioctl におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-3285 2015-08-13 15:19 2015-07-29 Show GitHub Exploit DB Packet Storm
207366 2.1 注意 OpenAFS - OpenAFS の pioctls におけるカーネルメモリを読まれる脆弱性 CWE-200
情報漏えい
CVE-2015-3284 2015-08-13 15:19 2015-07-29 Show GitHub Exploit DB Packet Storm
207367 6.8 警告 OpenAFS - OpenAFS における bos コマンドを偽造される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-3283 2015-08-13 15:19 2015-07-29 Show GitHub Exploit DB Packet Storm
207368 4.3 警告 OpenAFS - OpenAFS の vos におけるスタックデータを取得される脆弱性 CWE-200
情報漏えい
CVE-2015-3282 2015-08-13 15:19 2015-07-29 Show GitHub Exploit DB Packet Storm
207369 4.6 警告 Linux Containers - LXC の attach.c における AppArmor または SELinux の閉じ込めを回避される脆弱性 CWE-Other
その他
CVE-2015-1334 2015-08-13 14:52 2015-07-17 Show GitHub Exploit DB Packet Storm
207370 4.9 警告 Linux Containers - LXC の lxclock.c における任意のファイルを作成される脆弱性 CWE-59
リンク解釈の問題
CVE-2015-1331 2015-08-13 14:51 2015-07-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
401 7.5 HIGH
Network
- - Improper neutralization of special elements in M365 Copilot allows an unauthorized attacker to disclose information over a network. New CWE-138
 Improper Neutralization of Special Elements
CVE-2026-26129 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
402 7.5 HIGH
Network
- - Improper neutralization of special elements in output used by a downstream component ('injection') in M365 Copilot allows an unauthorized attacker to disclose information over a network. New CWE-74
Injection
CVE-2026-26164 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
403 8.8 HIGH
Network
- - Improper neutralization of input during web page generation ('cross-site scripting') in Azure Machine Learning allows an unauthorized attacker to perform spoofing over a network. New CWE-79
Cross-site Scripting
CVE-2026-32207 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
404 9.9 CRITICAL
Network
- - Improper access control in Azure Managed Instance for Apache Cassandra allows an authorized attacker to execute code over a network. New CWE-284
Improper Access Control
CVE-2026-33109 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
405 7.5 HIGH
Network
- - Improper neutralization of special elements used in a command ('command injection') in Copilot Chat (Microsoft Edge) allows an unauthorized attacker to disclose information over a network. New CWE-77
Command Injection
CVE-2026-33111 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
406 9.6 CRITICAL
Network
- - Improper authorization in Microsoft Teams allows an authorized attacker to disclose information over a network. New CWE-285
Improper Authorization
CVE-2026-33823 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
407 9.0 CRITICAL
Network
- - Improper input validation in Azure Managed Instance for Apache Cassandra allows an authorized attacker to execute code over a network. New CWE-20
 Improper Input Validation 
CVE-2026-33844 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
408 8.2 HIGH
Network
- - Externally controlled reference to a resource in another sphere in Microsoft Partner Center allows an unauthorized attacker to perform spoofing over a network. New CWE-610
Externally Controlled Reference to a Resource in Another Sphere
CVE-2026-34327 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
409 9.6 CRITICAL
Network
- - Improper neutralization of special elements used in a command ('command injection') in Azure Cloud Shell allows an unauthorized attacker to perform spoofing over a network. New CWE-77
Command Injection
CVE-2026-35428 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm
410 8.6 HIGH
Network
- - Improper access control in Azure AI Foundry M365 published agents allows an unauthorized attacker to elevate privileges over a network. New CWE-284
Improper Access Control
CVE-2026-35435 2026-05-9 00:47 2026-05-8 Show GitHub Exploit DB Packet Storm