Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208041 4.9 警告 Linux - Linux Kernel の ipc/util.c の ipc_rcu_putref 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2013-4483 2015-06-9 18:00 2013-05-1 Show GitHub Exploit DB Packet Storm
208042 4.3 警告 lxml - lxml の lxml.html.clean モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-Other
その他
CVE-2014-3146 2015-06-9 18:00 2014-04-18 Show GitHub Exploit DB Packet Storm
208043 6.9 警告 Linux - Linux Kernel の Whiteheat USB シリアルドライバの drivers/usb/serial/whiteheat.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-3185 2015-06-9 18:00 2014-09-5 Show GitHub Exploit DB Packet Storm
208044 4.9 警告 Linux - Linux Kernel の KVM サブシステムの arch/x86/kvm/i8254.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2014-3611 2015-06-9 18:00 2014-10-24 Show GitHub Exploit DB Packet Storm
208045 2.1 注意 Linux - Linux Kernel の KVM サブシステムの arch/x86/kvm/vmx.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3645 2015-06-9 18:00 2014-09-21 Show GitHub Exploit DB Packet Storm
208046 2.1 注意 Linux - Linux Kernel の KVM サブシステムの arch/x86/kvm/vmx.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3646 2015-06-9 18:00 2014-10-24 Show GitHub Exploit DB Packet Storm
208047 7.5 危険 Samba Project - Paul の PPP パッケージの pppd の options.c 内の getword 関数における整数オーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-3158 2015-06-9 18:00 2014-08-9 Show GitHub Exploit DB Packet Storm
208048 5 警告 ヒューレット・パッカード
OpenSSL Project
- OpenSSL の DTLS の実装の d1_both.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-3507 2015-06-9 18:00 2014-08-6 Show GitHub Exploit DB Packet Storm
208049 5 警告 ヒューレット・パッカード
OpenSSL Project
- OpenSSL の DTLS の実装の d1_both.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-3506 2015-06-9 17:59 2014-08-6 Show GitHub Exploit DB Packet Storm
208050 5 警告 ヒューレット・パッカード
OpenSSL Project
- OpenSSL の DTLS の実装の d1_both.c におけるメモリ二重解放の脆弱性 CWE-Other
その他
CVE-2014-3505 2015-06-9 17:58 2014-08-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 3, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
261 - - - CVE-2026-40950 is a buffer overflow vulnerability in the Secure Access server prior to 14.50. Attackers with control of a modified client can send a specially crafted message to the server and caus… New CWE-121
Stack-based Buffer Overflow
CVE-2026-40950 2026-05-2 00:28 2026-05-1 Show GitHub Exploit DB Packet Storm
262 - - - CVE-2026-40951 is a memory corruption vulnerability on Secure Access Windows clients prior to 14.50. Attackers with local control of the Windows client can send malformed data to an API and trigger… New CWE-400
 Uncontrolled Resource Consumption
CVE-2026-40951 2026-05-2 00:28 2026-05-1 Show GitHub Exploit DB Packet Storm
263 5.0 MEDIUM
Network
- - Route Services can be leveraged to send app traffic to network destinations outside of an app's configured egress rules. As a result, a malicious developer with access to Cloudfoundry could configure… New CWE-923
 Improper Restriction of Communication Channel to Intended Endpoints
CVE-2026-22726 2026-05-2 00:28 2026-05-1 Show GitHub Exploit DB Packet Storm
264 7.8 HIGH
Local
- - The LabOne Q serialization framework uses a class-loading mechanism (import_cls) to dynamically import and instantiate Python classes during deserialization. Prior to the fix, this mechanism accepted… New CWE-502
 Deserialization of Untrusted Data
CVE-2026-7584 2026-05-2 00:28 2026-05-1 Show GitHub Exploit DB Packet Storm
265 7.3 HIGH
Network
mozilla firefox
thunderbird
Memory safety bugs present in Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitr… Update CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-7324 2026-05-2 00:27 2026-04-29 Show GitHub Exploit DB Packet Storm
266 6.5 MEDIUM
Network
- - IBM Langflow Desktop 1.0.0 through 1.8.4 IBM Langflow is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, pote… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-3340 2026-05-2 00:27 2026-05-1 Show GitHub Exploit DB Packet Storm
267 6.4 MEDIUM
Network
- - IBM Langflow Desktop 1.6.0 through 1.8.4 Lanflow is vulnerable to stored cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus al… New CWE-89
SQL Injection
CVE-2026-3346 2026-05-2 00:27 2026-05-1 Show GitHub Exploit DB Packet Storm
268 6.5 MEDIUM
Network
- - IBM Langflow Desktop 1.2.0 through 1.8.4 Langflow could allow an authenticated attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot d… New CWE-22
Path Traversal
CVE-2026-4502 2026-05-2 00:27 2026-05-1 Show GitHub Exploit DB Packet Storm
269 7.5 HIGH
Network
- - IBM Langflow Desktop 1.0.0 through 1.8.4 Langflow could allow an unauthenticated user to view other users' images due to an indirect object reference through a user-controlled key. New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-4503 2026-05-2 00:27 2026-05-1 Show GitHub Exploit DB Packet Storm
270 5.3 MEDIUM
Adjacent
- - IBM watsonx.data 2.2 through 2.3 IBM Lakehouse does not properly restrict communication between pods which could allow an attacker to transfer data between pods without restrictions. New CWE-923
 Improper Restriction of Communication Channel to Intended Endpoints
CVE-2025-36180 2026-05-2 00:27 2026-05-1 Show GitHub Exploit DB Packet Storm