Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2901 9.9 緊急
Network
Linux Foundation Spinnaker Linux FoundationのSpinnakerにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-32604 2026-04-27 11:22 2026-04-20 Show GitHub Exploit DB Packet Storm
2902 9.9 緊急
Network
Linux Foundation Spinnaker Linux FoundationのSpinnakerにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-32613 2026-04-27 11:22 2026-04-20 Show GitHub Exploit DB Packet Storm
2903 7.8 重要
Local
Podman project podman Podman projectのpodmanにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-33414 2026-04-27 11:22 2026-04-14 Show GitHub Exploit DB Packet Storm
2904 6.1 警告
Network
オラクル Oracle Identity Manager オラクルのOracle Identity Managerにおける複数の脆弱性 CWE-284
CWE-601
CVE-2026-34283 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2905 6.1 警告
Network
オラクル Oracle Business Process Management Suite オラクルのOracle Business Process Management Suiteにおける複数の脆弱性 CWE-284
CWE-601
CVE-2026-34284 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2906 8.7 重要
Network
オラクル Oracle HTTP Server オラクルのOracle HTTP Serverにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34291 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2907 7.2 重要
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34292 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2908 6.5 警告
Network
オラクル PeopleSoft Enterprise SCM Purchasing オラクルのPeopleSoft Enterprise SCM Purchasingにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34295 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2909 4.3 警告
Network
オラクル Oracle Agile Product Lifecycle Management for Process オラクルのOracle Agile Product Lifecycle Management for Processにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34296 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2910 7.5 重要
Network
オラクル Oracle HCM Common Architecture オラクルのOracle HCM Common Architectureにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34297 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1261 5.4 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.4.20 contains a tool policy bypass vulnerability allowing bundled MCP and LSP tools to circumvent configured tool restrictions. Attackers with local agent access can append restr… Update CWE-863
 Incorrect Authorization
CVE-2026-44998 2026-05-13 23:12 2026-05-12 Show GitHub Exploit DB Packet Storm
1262 4.3 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.4.22 contains a security envelope constraint bypass vulnerability allowing restricted subagents to spawn ACP child sessions that fail to inherit depth, child-count limits, contro… Update CWE-266
 Incorrect Privilege Assignment
CVE-2026-44997 2026-05-13 23:12 2026-05-12 Show GitHub Exploit DB Packet Storm
1263 3.7 LOW
Network
openclaw openclaw OpenClaw before 2026.4.15 contains an arbitrary local file read vulnerability in the webchat audio embedding helper that fails to apply local media root containment checks. Attackers can influence ag… Update CWE-22
Path Traversal
CVE-2026-44996 2026-05-13 23:12 2026-05-12 Show GitHub Exploit DB Packet Storm
1264 7.3 HIGH
Local
openclaw openclaw OpenClaw before 2026.4.20 contains an improper environment variable validation vulnerability in MCP stdio server configuration that allows attackers to execute arbitrary code. Malicious workspace con… Update CWE-829
 Inclusion of Functionality from Untrusted Control Sphere
CVE-2026-44995 2026-05-13 23:11 2026-05-12 Show GitHub Exploit DB Packet Storm
1265 5.3 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.4.22 contains an authentication bypass vulnerability in the Control UI bootstrap config endpoint that allows unauthenticated attackers to read sensitive configuration fields. Att… Update CWE-862
 Missing Authorization
CVE-2026-44994 2026-05-13 23:11 2026-05-12 Show GitHub Exploit DB Packet Storm
1266 5.4 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.4.20 contains a message classification vulnerability in Feishu card-action callbacks that misclassifies direct messages as group conversations. Attackers can bypass dmPolicy enfo… Update CWE-184
 Incomplete Blacklist
CVE-2026-44993 2026-05-13 23:11 2026-05-12 Show GitHub Exploit DB Packet Storm
1267 5.0 MEDIUM
Local
openclaw openclaw OpenClaw versions 2026.4.5 before 2026.4.20 contain an environment variable injection vulnerability allowing workspace dotenv to override MINIMAX_API_HOST. Attackers can redirect credentialed MiniMax… Update CWE-441
Confused Deputy
CVE-2026-44992 2026-05-13 23:10 2026-05-12 Show GitHub Exploit DB Packet Storm
1268 4.2 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.4.21 contains an authorization bypass vulnerability in command-auth.ts that allows non-owner senders to execute owner-enforced slash commands when wildcard inbound senders are co… Update CWE-863
 Incorrect Authorization
CVE-2026-44991 2026-05-13 23:10 2026-05-12 Show GitHub Exploit DB Packet Storm
1269 7.5 HIGH
Network
apple ipados
iphone_os
macos
tvos
visionos
The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5.… New CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-28940 2026-05-13 23:08 2026-05-12 Show GitHub Exploit DB Packet Storm
1270 7.5 HIGH
Network
apple ipados
iphone_os
macos
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5. An app may be able … New CWE-190
 Integer Overflow or Wraparound
CVE-2026-28952 2026-05-13 23:08 2026-05-12 Show GitHub Exploit DB Packet Storm