Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3381 7.8 重要
Local
Curtis Galloway libexif Libexif ProjectのLibexifにおける整数アンダーフローの脆弱性 CWE-191
整数アンダーフロー
CVE-2026-32775 2026-04-23 10:13 2026-03-16 Show GitHub Exploit DB Packet Storm
3382 3.1
Network
Weblate Weblate Weblateにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-33212 2026-04-23 10:13 2026-04-15 Show GitHub Exploit DB Packet Storm
3383 4.3 警告
Network
Weblate Weblate Weblateにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-33214 2026-04-23 10:13 2026-04-15 Show GitHub Exploit DB Packet Storm
3384 6.8 警告
Network
Weblate Weblate Weblateにおける複数の脆弱性 CWE-200
CWE-22
CVE-2026-33220 2026-04-23 10:13 2026-04-15 Show GitHub Exploit DB Packet Storm
3385 8 重要
Network
Weblate Weblate Weblateにおける複数の脆弱性 CWE-23
CWE-434
CWE-94
CVE-2026-33435 2026-04-23 10:13 2026-04-15 Show GitHub Exploit DB Packet Storm
3386 5 警告
Network
Weblate Weblate Weblateにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-33440 2026-04-23 10:13 2026-04-15 Show GitHub Exploit DB Packet Storm
3387 4.3 警告
Network
Elasticsearch B.V. Kibana Elasticsearch B.V.のKibanaにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-33460 2026-04-23 10:13 2026-04-8 Show GitHub Exploit DB Packet Storm
3388 9.8 緊急
Network
Elasticsearch B.V. Logstash Elasticsearch B.V.のLogstashにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-33466 2026-04-23 10:13 2026-04-8 Show GitHub Exploit DB Packet Storm
3389 4.3 警告
Network
EspoCRM EspoCRM EspoCRMにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-33534 2026-04-23 10:13 2026-04-13 Show GitHub Exploit DB Packet Storm
3390 7.8 重要
Local
Craig J. Bass (craigjbass) ClearanceKit Craig J. Bass (craigjbass)のClearanceKitにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-33632 2026-04-23 10:13 2026-03-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
811 - - - In the Linux kernel, the following vulnerability has been resolved: iio: light: bh1780: fix PM runtime leak on error path Move pm_runtime_put_autosuspend() before the error check to ensure the PM r… Update - CVE-2026-43355 2026-05-12 23:10 2026-05-9 Show GitHub Exploit DB Packet Storm
812 - - - In the Linux kernel, the following vulnerability has been resolved: iio: gyro: mpu3050-core: fix pm_runtime error handling The return value of pm_runtime_get_sync() is not checked, allowing the dri… Update - CVE-2026-43357 2026-05-12 23:10 2026-05-9 Show GitHub Exploit DB Packet Storm
813 - - - In the Linux kernel, the following vulnerability has been resolved: btrfs: add missing RCU unlock in error path in try_release_subpage_extent_buffer() Call rcu_read_lock() before exiting the loop i… Update - CVE-2026-43358 2026-05-12 23:10 2026-05-9 Show GitHub Exploit DB Packet Storm
814 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: io_uring/kbuf: check if target buffer list is still legacy on recycle There's a gap between when the buffer was grabbed and when … Update - CVE-2026-43366 2026-05-12 23:10 2026-05-9 Show GitHub Exploit DB Packet Storm
815 8.8 HIGH
Adjacent
- - In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: Fix UAF in le_read_features_complete This fixes the following backtrace caused by hci_conn being freed befor… Update - CVE-2026-43322 2026-05-12 23:10 2026-05-8 Show GitHub Exploit DB Packet Storm
816 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: USB: dummy-hcd: Fix interrupt synchronization error This fixes an error in synchronization in the dummy-hcd driver. The error ha… Update - CVE-2026-43324 2026-05-12 23:10 2026-05-8 Show GitHub Exploit DB Packet Storm
817 - - - In the Linux kernel, the following vulnerability has been resolved: drm/amd: Fix a few more NULL pointer dereference in device cleanup I found a few more paths that cleanup fails due to a NULL vers… Update - CVE-2026-43367 2026-05-12 23:10 2026-05-9 Show GitHub Exploit DB Packet Storm
818 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix use-after-free race in VM acquire Replace non-atomic vm->process_info assignment with cmpxchg() to prevent race w… Update - CVE-2026-43370 2026-05-12 23:10 2026-05-9 Show GitHub Exploit DB Packet Storm
819 - - - In the Linux kernel, the following vulnerability has been resolved: sched_ext: Fix SCX_KICK_WAIT deadlock by deferring wait to balance callback SCX_KICK_WAIT busy-waits in kick_cpus_irq_workfn() us… Update - CVE-2026-43326 2026-05-12 23:10 2026-05-8 Show GitHub Exploit DB Packet Storm
820 - - - In the Linux kernel, the following vulnerability has been resolved: USB: dummy-hcd: Fix locking/synchronization error Syzbot testing was able to provoke an addressing exception and crash in the usb… Update - CVE-2026-43327 2026-05-12 23:10 2026-05-8 Show GitHub Exploit DB Packet Storm