|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 6, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 2551 | 4.6 |
警告
Physics |
サムスン | android | サムスンのAndroidにおける不特定の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2026-20974 | 2026-02-4 18:36 | 2026-01-9 | Show | GitHub Exploit DB Packet Storm |
| 2552 | 7.5 |
重要
Network |
マイクロソフト | Microsoft Copilot Studio | Copilot Studio の情報漏えいの脆弱性 |
CWE-77
コマンドインジェクション |
CVE-2026-21520 | 2026-02-4 18:36 | 2026-01-22 | Show | GitHub Exploit DB Packet Storm |
| 2553 | 7.4 |
重要
Network |
マイクロソフト | Microsoft 365 Word Copilot | Word Copilot Information Disclosure Vulnerability |
CWE-150
エスケープ、メタ、またはコントロールシーケンスの不適切な無効化 |
CVE-2026-21521 | 2026-02-4 18:36 | 2026-01-22 | Show | GitHub Exploit DB Packet Storm |
| 2554 | 6.5 |
警告
Network |
Pterodactyl | Wings | PterodactylのWingsにおける複数の脆弱性 |
CWE-400 CWE-770 |
CVE-2026-21696 | 2026-02-4 18:36 | 2026-01-19 | Show | GitHub Exploit DB Packet Storm |
| 2555 | 7.5 |
重要
Network |
Anthropic PBC | Claude Code | Anthropic PBCのClaude Codeにおける認証情報の不十分な保護に関する脆弱性 |
CWE-522
認証情報の不十分な保護 |
CVE-2026-21852 | 2026-02-4 18:36 | 2026-01-21 | Show | GitHub Exploit DB Packet Storm |
| 2556 | 5.3 |
警告
Network |
Pallets project | Werkzeug | Pallets projectのWerkzeugにおけるWindows デバイス名の処理に関する脆弱性 |
CWE-67
Windows デバイス名の不適切な処理 |
CVE-2026-21860 | 2026-02-4 18:36 | 2026-01-8 | Show | GitHub Exploit DB Packet Storm |
| 2557 | 9.8 |
緊急
Network |
ggml.ai | llama.cpp | ggml.aiのllama.cppにおける境界外書き込みに関する脆弱性 |
CWE-787
境界外書き込み |
CVE-2026-21869 | 2026-02-4 18:36 | 2026-01-8 | Show | GitHub Exploit DB Packet Storm |
| 2558 | 5.7 |
警告
Network |
getkirby | kirby | getkirbyのkirbyにおける不正な認証に関する脆弱性 |
CWE-863
不正な認証 |
CVE-2026-21896 | 2026-02-4 18:36 | 2026-01-8 | Show | GitHub Exploit DB Packet Storm |
| 2559 | 8.1 |
重要
Network |
オラクル | Oracle FLEXCUBE Investor Servicing | オラクルのOracle FLEXCUBE Investor Servicingにおける不特定の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2026-21973 | 2026-02-4 18:36 | 2026-01-20 | Show | GitHub Exploit DB Packet Storm |
| 2560 | 6.5 |
警告
Network |
オラクル | Oracle FLEXCUBE Universal Banking | オラクルのOracle FLEXCUBE Universal Bankingにおける不特定の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2026-21978 | 2026-02-4 18:36 | 2026-01-20 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 6, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 641 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | TLS protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 allows denial of service |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2026-6528 | 2026-05-2 04:28 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 642 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | iLBC audio codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-122
Heap-based Buffer Overflow |
CVE-2026-6529 | 2026-05-2 04:28 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 643 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | DCP-ETSI protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-122
Heap-based Buffer Overflow |
CVE-2026-6530 | 2026-05-2 04:28 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 644 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | Monero protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-674
Uncontrolled Recursion |
CVE-2026-5409 | 2026-05-2 04:27 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 645 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | OpenFlow v5 protocol dissector infinite loops in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2026-6521 | 2026-05-2 04:27 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 646 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | RPKI-Router protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2026-6522 | 2026-05-2 04:27 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 647 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | GNW protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2026-6523 | 2026-05-2 04:27 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 648 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | MySQL protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-824
Access of Uninitialized Pointer |
CVE-2026-6524 | 2026-05-2 04:27 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 649 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | ICMPv6 PvD protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-674
Uncontrolled Recursion |
CVE-2026-5299 | 2026-05-2 04:26 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 650 | 5.5 |
MEDIUM
Local |
wireshark | wireshark | AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
CWE-674
Uncontrolled Recursion |
CVE-2026-5401 | 2026-05-2 04:26 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |