Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4461 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows カーネルの情報漏えいの脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2026-32217 2026-04-21 10:49 2026-04-14 Show GitHub Exploit DB Packet Storm
4462 5.5 警告
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows 10 22h2
Microsoft Windows 10 21h2
Microsoft Windows&…
Windows カーネルの情報漏えいの脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2026-32218 2026-04-21 10:49 2026-04-14 Show GitHub Exploit DB Packet Storm
4463 7 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft Windows 11 25h2
Microsoft Resilient File System の特権昇格の脆弱性 CWE-362
CWE-415
CVE-2026-32219 2026-04-21 10:49 2026-04-14 Show GitHub Exploit DB Packet Storm
4464 9.8 緊急
Network
DataEase DataEase DataEaseにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-33082 2026-04-21 10:49 2026-04-16 Show GitHub Exploit DB Packet Storm
4465 8.8 重要
Network
DataEase DataEase DataEaseにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-33083 2026-04-21 10:49 2026-04-16 Show GitHub Exploit DB Packet Storm
4466 8.8 重要
Network
DataEase DataEase DataEaseにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-33084 2026-04-21 10:49 2026-04-16 Show GitHub Exploit DB Packet Storm
4467 8.8 重要
Network
DataEase DataEase DataEaseにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-33121 2026-04-21 10:49 2026-04-16 Show GitHub Exploit DB Packet Storm
4468 9.8 緊急
Network
DataEase DataEase DataEaseにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-33122 2026-04-21 10:49 2026-04-16 Show GitHub Exploit DB Packet Storm
4469 8.8 重要
Network
DataEase DataEase DataEaseにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-33207 2026-04-21 10:49 2026-04-16 Show GitHub Exploit DB Packet Storm
4470 6.7 警告
Local
Acronis International GmbH True Image Acronis International GmbHのTrue Imageにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-33271 2026-04-21 10:49 2026-04-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
11 7.5 HIGH
Network
h2o h2o A vulnerability was identified in h2oai h2o-3 up to 7402. Affected by this issue is the function importFiles of the file h2o-core/src/main/java/water/persist/PersistNFS.java of the component ImportFi… New CWE-200
CWE-284
NVD-CWE-noinfo
Information Exposure
Improper Access Control
CVE-2026-8750 2026-05-20 03:22 2026-05-17 Show GitHub Exploit DB Packet Storm
12 6.5 MEDIUM
Network
- - Audiobookshelf is a self-hosted audiobook and podcast server. Prior to 2.32.2, the GET /api/libraries/:id/download endpoint validates that the requesting user has access to the library specified in t… Update CWE-863
 Incorrect Authorization
CVE-2026-42883 2026-05-20 03:19 2026-05-12 Show GitHub Exploit DB Packet Storm
13 6.2 MEDIUM
Network
- - LobeHub is a work-and-lifestyle space to find, build, and collaborate with agent teammates that grow with you. Prior to 2.1.48, when LobeChat processes custom tags in the Render process of src/featur… Update CWE-79
Cross-site Scripting
CVE-2026-42045 2026-05-20 03:19 2026-05-13 Show GitHub Exploit DB Packet Storm
14 9.8 CRITICAL
Network
- - Memory safety bugs present in Thunderbird 140.10 and Thunderbird 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been expl… New CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-8975 2026-05-20 03:16 2026-05-19 Show GitHub Exploit DB Packet Storm
15 9.8 CRITICAL
Network
- - Memory safety bugs present in Thunderbird 140.10 and Thunderbird 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been expl… New CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-8974 2026-05-20 03:16 2026-05-19 Show GitHub Exploit DB Packet Storm
16 9.8 CRITICAL
Network
- - Memory safety bugs present in Thunderbird 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary … New CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-8973 2026-05-20 03:16 2026-05-19 Show GitHub Exploit DB Packet Storm
17 6.5 MEDIUM
Network
- - Privilege escalation in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. New CWE-269
 Improper Privilege Management
CVE-2026-8972 2026-05-20 03:16 2026-05-19 Show GitHub Exploit DB Packet Storm
18 6.5 MEDIUM
Network
- - Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. New CWE-346
 Origin Validation Error
CVE-2026-8971 2026-05-20 03:16 2026-05-19 Show GitHub Exploit DB Packet Storm
19 7.3 HIGH
Network
- - Privilege escalation in the Security component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. New CWE-269
 Improper Privilege Management
CVE-2026-8970 2026-05-20 03:16 2026-05-19 Show GitHub Exploit DB Packet Storm
20 8.1 HIGH
Network
- - Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. New CWE-693
 Protection Mechanism Failure
CVE-2026-8969 2026-05-20 03:16 2026-05-19 Show GitHub Exploit DB Packet Storm