Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4031 9.3 緊急
Local
メディアテック nbiot sdk メディアテックのnbiot sdkにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-20407 2026-02-6 10:37 2026-02-2 Show GitHub Exploit DB Packet Storm
4032 8.8 重要
Adjacent
OpenWrt Project
メディアテック
openwrt
Software Development Kit
メディアテック等の複数ベンダの製品における複数の脆弱性 CWE-122
CWE-787
CVE-2026-20408 2026-02-6 10:37 2026-02-2 Show GitHub Exploit DB Packet Storm
4033 7.8 重要
Local
Google Android GoogleのAndroidにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-20409 2026-02-6 10:37 2026-02-2 Show GitHub Exploit DB Packet Storm
4034 6.7 警告
Local
Google Android GoogleのAndroidにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-20410 2026-02-6 10:37 2026-02-2 Show GitHub Exploit DB Packet Storm
4035 7.8 重要
Local
Google Android GoogleのAndroidにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-20411 2026-02-6 10:37 2026-02-2 Show GitHub Exploit DB Packet Storm
4036 7.8 重要
Local
Google Android GoogleのAndroidにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-20412 2026-02-6 10:36 2026-02-2 Show GitHub Exploit DB Packet Storm
4037 6.5 警告
Network
hono hono honoにおける不正な正規表現に関する脆弱性 CWE-185
不正な正規表現
CVE-2026-24398 2026-02-6 10:36 2026-01-27 Show GitHub Exploit DB Packet Storm
4038 5.3 警告
Network
hono hono honoにおける複数の脆弱性 CWE-524
CWE-613
CVE-2026-24472 2026-02-6 10:36 2026-01-27 Show GitHub Exploit DB Packet Storm
4039 5.3 警告
Network
hono hono honoにおける複数の脆弱性 CWE-200
CWE-284
CWE-668
CVE-2026-24473 2026-02-6 10:36 2026-01-27 Show GitHub Exploit DB Packet Storm
4040 4.9 警告
Network
nocodb nocodb nocodbにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-24766 2026-02-6 10:36 2026-01-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
431 7.2 HIGH
Network
- - Missing integrity verification in the Triton inference handler in Amazon SageMaker Python SDK v2 before v2.257.2 and v3 before v3.8.0 might allow a remote authenticated actor to achieve code executio… New CWE-354
 Improper Validation of Integrity Check Value
CVE-2026-8597 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
432 7.2 HIGH
Network
- - Cleartext storage of sensitive information in the ModelBuilder/Serve component in Amazon SageMaker Python SDK before v2.257.2 and v3 before v3.8.0 might allow a remote authenticated actor to extract … New CWE-312
 Cleartext Storage of Sensitive Information
CVE-2026-8596 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
433 - - - Improper input validation in the AMD OverDrive (AOD) System Management Mode (SMM) module could allow a privileged attacker to perform an out-of-bounds read, potentially resulting in loss of confident… New CWE-1274
 Improper Access Control for Volatile Memory Containing Boot Code
CVE-2024-36345 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
434 - - - Improper Input validation in the AMD Secure Processor (ASP) PCI driver may allow a local attacker to create a buffer overflow condition, potentially resulting in a crash or denial of service New CWE-120
Classic Buffer Overflow
CVE-2025-0045 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
435 - - - Incorrect default permissions in the installation directory for the AMD general-purpose input/output controller (GPIO) could allow an attacker to achieve privilege escalation resulting in arbitrary c… New CWE-276
Incorrect Default Permissions 
CVE-2025-48512 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
436 - - - An improper input validation vulnerability within the AMD Platform Management Framework (PMF) driver can allow a local attacker to read or write Out-of-Bounds, potentially resulting in privilege esca… New CWE-787
 Out-of-bounds Write
CVE-2025-48519 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
437 - - - An improper input validation vulnerability within the AMD Platform Management Framework (PMF) driver can allow a local attacker to read Out-of-Bounds potentially resulting in information disclosure o… New CWE-125
Out-of-bounds Read
CVE-2025-48520 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
438 - - - Improper input validation in the AMD Secure Processor (ASP) PCI driver could allow a local attacker to trigger a Use-After-Free (UAF) condition, potentially resulting in a loss of platform integrity … New CWE-416
 Use After Free
CVE-2025-48521 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
439 - - - An improper input validation vulnerability within the AMD Platform Management Framework (PMF) Driver can allow a local attacker to write Out-of-Bounds, potentially resulting in privilege escalation. New CWE-787
 Out-of-bounds Write
CVE-2025-52540 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
440 - - - Incorrect default permissions in the installation directory for the AMD chipset driver could allow an attacker to achieve privilege escalation resulting in arbitrary code execution. New CWE-276
Incorrect Default Permissions 
CVE-2026-0432 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm