Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 2, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208641 4 警告 Linux
レッドハット
- Linux Kernel におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2014-3940 2015-05-12 17:29 2014-03-18 Show GitHub Exploit DB Packet Storm
208642 5 警告 Andreas Gohr - DokuWiki の inc/template.php における任意の画像にアクセスされる脆弱性 CWE-200
情報漏えい
CVE-2014-8761 2015-05-12 17:29 2014-06-25 Show GitHub Exploit DB Packet Storm
208643 6.4 警告 FreeType Project - FreeType の base/ftmac.c 内の parse_fond 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-9672 2015-05-12 17:27 2014-11-26 Show GitHub Exploit DB Packet Storm
208644 5 警告 Linux - Linux Kernel の net/mac80211/tx.c 内の ieee80211_fragment 関数における重要な平文情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-8709 2015-05-12 17:26 2014-02-22 Show GitHub Exploit DB Packet Storm
208645 7.5 危険 Mozilla Foundation - Mozilla Firefox および SeaMonkey の WebRTC の実装における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2014-8641 2015-05-12 17:25 2014-11-6 Show GitHub Exploit DB Packet Storm
208646 7.5 危険 FreeType Project - FreeType の sfnt/ttload.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-9667 2015-05-12 17:24 2014-11-12 Show GitHub Exploit DB Packet Storm
208647 7.5 危険 FreeType Project - FreeType の sfnt/ttsbit.c 内の tt_sbit_decoder_init 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2014-9666 2015-05-12 17:23 2014-11-12 Show GitHub Exploit DB Packet Storm
208648 6.8 警告 Mozilla Foundation - 複数の Mozilla 製品におけるセッション固定攻撃を実行される脆弱性 CWE-Other
その他
CVE-2014-8639 2015-05-12 17:23 2014-11-6 Show GitHub Exploit DB Packet Storm
208649 7.5 危険 FreeType Project - FreeType の cff/cf2ft.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-9662 2015-05-12 17:21 2014-11-22 Show GitHub Exploit DB Packet Storm
208650 4 警告 OpenBSD - Fedora などの製品で使用される OpenSSH サーバにおけるローカルログインを強制する認証要求を回避される脆弱性 CWE-Other
その他
CVE-2014-9278 2015-05-12 17:21 2014-12-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 2, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
371 7.6 HIGH
Network
openclaw openclaw OpenClaw before 2026.4.8 contains a server-side request forgery policy bypass vulnerability allowing attackers to trigger navigations bypassing normal SSRF checks. Attackers can exploit browser inter… New CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-41912 2026-05-1 04:38 2026-04-29 Show GitHub Exploit DB Packet Storm
372 6.5 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.4.8 contains a filesystem policy bypass vulnerability in docx upload processing that allows local file reads outside workspace boundaries. Attackers can exploit upload_file and u… New CWE-22
Path Traversal
CVE-2026-41911 2026-05-1 04:38 2026-04-29 Show GitHub Exploit DB Packet Storm
373 4.3 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.4.8 omits owner-only enforcement for cross-channel allowlist writes in the /allowlist endpoint. An authorized non-owner sender can bypass access controls to perform allowlist mod… New CWE-863
 Incorrect Authorization
CVE-2026-41910 2026-05-1 04:38 2026-04-29 Show GitHub Exploit DB Packet Storm
374 6.5 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.3.31 contains a resource exhaustion vulnerability in media downloads that bypasses core safety limits for file size, count, and cleanup operations. Attackers can exhaust disk spa… New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-41408 2026-05-1 04:38 2026-04-29 Show GitHub Exploit DB Packet Storm
375 5.3 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.4.2 contains a timing side channel vulnerability in shared-secret comparison call sites that use early length-mismatch checks instead of fixed-length comparison helpers. Attacker… New CWE-208
 Information Exposure Through Timing Discrepancy
CVE-2026-41407 2026-05-1 04:38 2026-04-29 Show GitHub Exploit DB Packet Storm
376 5.4 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.3.31 contains a sender allowlist bypass vulnerability that allows remote attackers to access restricted messages. Attackers can exploit fetched quoted, root, and thread context m… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-41406 2026-05-1 04:37 2026-04-29 Show GitHub Exploit DB Packet Storm
377 7.5 HIGH
Network
openclaw openclaw OpenClaw before 2026.3.31 parses MS Teams webhook request bodies before performing JWT validation, allowing unauthenticated attackers to trigger resource exhaustion. Remote attackers can send malicio… New CWE-408
 Incorrect Behavior Order: Early Amplification
CVE-2026-41405 2026-05-1 04:37 2026-04-29 Show GitHub Exploit DB Packet Storm
378 7.3 HIGH
Network
nextchat nextchat A weakness has been identified in ChatGPTNextWeb NextChat up to 2.16.1. This affects the function storeUrl of the file app/api/artifacts/route.ts of the component Artifacts Endpoint. This manipulatio… Update CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-7178 2026-05-1 04:26 2026-04-28 Show GitHub Exploit DB Packet Storm
379 7.3 HIGH
Network
nextchat nextchat A security flaw has been discovered in ChatGPTNextWeb NextChat up to 2.16.1. Affected by this issue is the function proxyHandler of the file app/api/[provider]/[...path]/route.ts. The manipulation re… Update CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-7177 2026-05-1 04:26 2026-04-28 Show GitHub Exploit DB Packet Storm
380 7.3 HIGH
Network
mozilla firefox
thunderbird
Memory safety bugs present in Thunderbird ESR 140.10.0 and Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have… Update CWE-119
CWE-787
Incorrect Access of Indexable Resource ('Range Error') 
 Out-of-bounds Write
CVE-2026-7323 2026-05-1 03:38 2026-04-29 Show GitHub Exploit DB Packet Storm