Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4331 7.1 重要
Network
WWBN AVideo WWBNのAVideoにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-39370 2026-04-24 11:42 2026-04-7 Show GitHub Exploit DB Packet Storm
4332 7.8 重要
Local
Vim Vim Vimにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-39881 2026-04-24 11:42 2026-04-8 Show GitHub Exploit DB Packet Storm
4333 5.3 警告
Network
OpenEXR OpenEXR OpenEXRにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-39886 2026-04-24 11:42 2026-04-21 Show GitHub Exploit DB Packet Storm
4334 8.8 重要
Network
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAIにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-39891 2026-04-24 11:42 2026-04-8 Show GitHub Exploit DB Packet Storm
4335 4.3 警告
Network
lycheeorg lychee lycheeorgのLycheeにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-39957 2026-04-24 11:42 2026-04-9 Show GitHub Exploit DB Packet Storm
4336 9.6 緊急
Network
MISP MISP MISPにおけるLDAP インジェクションの脆弱性 CWE-90
LDAP インジェクション
CVE-2026-39962 2026-04-24 11:42 2026-04-9 Show GitHub Exploit DB Packet Storm
4337 6.9 警告
Network
s9y Serendipity s9yのSerendipityにおける検証および完全性チェックを行っていない Cookie への依存に関する脆弱性 CWE-565
検証および完全性チェックを行っていない Cookie への依存
CVE-2026-39963 2026-04-24 11:42 2026-04-15 Show GitHub Exploit DB Packet Storm
4338 7.2 重要
Network
s9y Serendipity s9yのSerendipityにおけるHTTP レスポンス分割に関する脆弱性 CWE-113
HTTP レスポンスの分割
CVE-2026-39971 2026-04-24 11:42 2026-04-15 Show GitHub Exploit DB Packet Storm
4339 7.1 重要
Local
apktool apktool Apktoolにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-39973 2026-04-24 11:42 2026-04-21 Show GitHub Exploit DB Packet Storm
4340 5.3 警告
Network
Apache Software Foundation Apache log4net Apache Software FoundationのApache log4netにおけるエンコードおよびエスケープに関する脆弱性 CWE-116
不適切なエンコード、または出力のエスケープ
CVE-2026-40021 2026-04-24 11:42 2026-04-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
811 5.5 MEDIUM
Local
- - Uncontrolled Recursion vulnerability in Samsung Open Source Escargot allows Excessive Allocation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3. CWE-674
 Uncontrolled Recursion
CVE-2026-47317 2026-05-19 23:25 2026-05-19 Show GitHub Exploit DB Packet Storm
812 5.4 MEDIUM
Network
- - A flaw was found in Keycloak. When both realm-level and client-level `notBefore` revocation policies are configured, Keycloak's OpenID Connect (OIDC) Introspection feature fails to properly honor the… CWE-303
 Incorrect Implementation of Authentication Algorithm
CVE-2026-8922 2026-05-19 23:25 2026-05-19 Show GitHub Exploit DB Packet Storm
813 8.1 HIGH
Network
- - in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps. CWE-364
 Signal Handler Race Condition
CVE-2026-24792 2026-05-19 23:25 2026-05-19 Show GitHub Exploit DB Packet Storm
814 3.3 LOW
Local
- - in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. CWE-476
 NULL Pointer Dereference
CVE-2026-25110 2026-05-19 23:25 2026-05-19 Show GitHub Exploit DB Packet Storm
815 8.4 HIGH
Local
- - in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS and it cannot be recovered. CWE-787
 Out-of-bounds Write
CVE-2026-25781 2026-05-19 23:25 2026-05-19 Show GitHub Exploit DB Packet Storm
816 5.5 MEDIUM
Local
- - in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak CWE-281
 Improper Preservation of Permissions
CVE-2026-25850 2026-05-19 23:25 2026-05-19 Show GitHub Exploit DB Packet Storm
817 8.8 HIGH
Network
- - in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps. CWE-787
 Out-of-bounds Write
CVE-2026-27648 2026-05-19 23:25 2026-05-19 Show GitHub Exploit DB Packet Storm
818 5.5 MEDIUM
Local
- - in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak. CWE-364
 Signal Handler Race Condition
CVE-2026-27766 2026-05-19 23:25 2026-05-19 Show GitHub Exploit DB Packet Storm
819 3.3 LOW
Local
- - in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. CWE-190
 Integer Overflow or Wraparound
CVE-2026-27781 2026-05-19 23:25 2026-05-19 Show GitHub Exploit DB Packet Storm
820 6.5 MEDIUM
Local
- - in OpenHarmony v6.0 and prior versions allow a local attacker arbitrary code execution. CWE-416
 Use After Free
CVE-2026-28733 2026-05-19 23:25 2026-05-19 Show GitHub Exploit DB Packet Storm