Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3261 5.4 警告
Network
lfprojects mlflow lfprojectsのmlflowにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-33865 2026-04-21 10:43 2026-04-7 Show GitHub Exploit DB Packet Storm
3262 4.3 警告
Network
lfprojects mlflow lfprojectsのmlflowにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-33866 2026-04-21 10:43 2026-04-7 Show GitHub Exploit DB Packet Storm
3263 9.1 緊急
Network
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAIにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-40313 2026-04-21 10:43 2026-04-14 Show GitHub Exploit DB Packet Storm
3264 6.5 警告
Network
PAC4J pac4j PAC4Jのpac4jにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-40458 2026-04-21 10:43 2026-04-17 Show GitHub Exploit DB Packet Storm
3265 8.8 重要
Network
PAC4J pac4j PAC4Jのpac4jにおけるLDAP インジェクションの脆弱性 CWE-90
LDAP インジェクション
CVE-2026-40459 2026-04-21 10:43 2026-04-17 Show GitHub Exploit DB Packet Storm
3266 7.8 重要
Local
Rubicon Communications, LLC (Netgate). NETGATE Registry Cleaner Rubicon Communications, LLC (Netgate).のNETGATE Registry Cleanerにおける引用されない検索パスまたは要素に関する脆弱性 CWE-428
引用されない検索パスまたは要素
CVE-2016-20057 2026-04-21 10:43 2026-04-4 Show GitHub Exploit DB Packet Storm
3267 6.1 警告
Network
Thank You/Like System project Thank You/Like System MyBB GroupのThank You/Like Systemにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2018-25247 2026-04-21 10:43 2026-04-4 Show GitHub Exploit DB Packet Storm
3268 6.1 警告
Network
MyBB Group MyBB Last User's Threads MyBB GroupのMyBB Last User's Threadsにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2018-25250 2026-04-21 10:43 2026-04-4 Show GitHub Exploit DB Packet Storm
3269 5.5 警告
Local
AnyBurn AnyBurn AnyBurnにおける再利用前に削除されていないリソース内重要情報に関する脆弱性 CWE-226
再利用前に削除されていないリソース内重要情報
CVE-2019-25657 2026-04-21 10:43 2026-04-5 Show GitHub Exploit DB Packet Storm
3270 5.5 警告
Local
Hainsoft.com LanHelper Hainsoft.comのLanHelperにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2019-25660 2026-04-21 10:43 2026-04-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
821 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: strictly check for maximum number of actions The maximum number of flowtable hardware offload actions in IP… Update - CVE-2026-43329 2026-05-12 23:10 2026-05-8 Show GitHub Exploit DB Packet Storm
822 - - - In the Linux kernel, the following vulnerability has been resolved: x86/kexec: Disable KCOV instrumentation after load_segments() The load_segments() function changes segment registers, invalidatin… Update - CVE-2026-43331 2026-05-12 23:10 2026-05-8 Show GitHub Exploit DB Packet Storm
823 - - - In the Linux kernel, the following vulnerability has been resolved: net: dsa: microchip: Fix error path in PTP IRQ setup If request_threaded_irq() fails during the PTP message IRQ setup, the newly … Update - CVE-2026-43372 2026-05-12 23:10 2026-05-9 Show GitHub Exploit DB Packet Storm
824 7.5 HIGH
Network
- - In the Linux kernel, the following vulnerability has been resolved: net: ncsi: fix skb leak in error paths Early return paths in NCSI RX and AEN handlers fail to release the received skb, resulting… Update - CVE-2026-43373 2026-05-12 23:10 2026-05-9 Show GitHub Exploit DB Packet Storm
825 - - - In the Linux kernel, the following vulnerability has been resolved: net: mctp: fix device leak on probe failure Driver core holds a reference to the USB interface and its parent USB device while th… Update - CVE-2026-43375 2026-05-12 23:10 2026-05-9 Show GitHub Exploit DB Packet Storm
826 8.1 HIGH
Network
- - In the Linux kernel, the following vulnerability has been resolved: ksmbd: Don't log keys in SMB3 signing and encryption key generation When KSMBD_DEBUG_AUTH logging is enabled, generate_smb3signin… Update - CVE-2026-43377 2026-05-12 23:10 2026-05-9 Show GitHub Exploit DB Packet Storm
827 8.8 HIGH
Adjacent
- - In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SMP: force responder MITM requirements before building the pairing response smp_cmd_pairing_req() currently builds the… Update - CVE-2026-43334 2026-05-12 23:10 2026-05-8 Show GitHub Exploit DB Packet Storm
828 - - - In the Linux kernel, the following vulnerability has been resolved: interconnect: qcom: sm8450: Fix NULL pointer dereference in icc_link_nodes() The change to dynamic IDs for SM8450 platform interc… Update - CVE-2026-43335 2026-05-12 23:10 2026-05-8 Show GitHub Exploit DB Packet Storm
829 7.5 HIGH
Network
- - In the Linux kernel, the following vulnerability has been resolved: lib/crypto: chacha: Zeroize permuted_state before it leaves scope Since the ChaCha permutation is invertible, the local variable … Update - CVE-2026-43336 2026-05-12 23:10 2026-05-8 Show GitHub Exploit DB Packet Storm
830 - - - In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix NULL pointer dereference in dcn401_init_hw() dcn401_init_hw() assumes that update_bw_bounding_box() is valid… Update - CVE-2026-43337 2026-05-12 23:10 2026-05-8 Show GitHub Exploit DB Packet Storm