Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
981 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-43374 2026-05-18 11:26 2026-05-8 Show GitHub Exploit DB Packet Storm
982 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2026-43375 2026-05-18 11:26 2026-05-8 Show GitHub Exploit DB Packet Storm
983 9.8 緊急
Network
Linux Linux Kernel LinuxのLinux Kernelにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-43376 2026-05-18 11:26 2026-05-8 Show GitHub Exploit DB Packet Storm
984 8.1 重要
Network
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-43377 2026-05-18 11:26 2026-05-8 Show GitHub Exploit DB Packet Storm
985 9.8 緊急
Network
Apache Software Foundation Apache Tomcat Apache Software FoundationのApache Tomcatにおける認証回避に関する脆弱性 CWE-592
認証回避の問題
CVE-2026-43512 2026-05-18 11:26 2026-05-12 Show GitHub Exploit DB Packet Storm
986 7.5 重要
Network
Apache Software Foundation Apache Tomcat Apache Software FoundationのApache Tomcatにおける大文字と小文字の区別の不適切な処理に関する脆弱性 CWE-178
大文字と小文字の区別の不適切な処理
CVE-2026-43513 2026-05-18 11:25 2026-05-12 Show GitHub Exploit DB Packet Storm
987 9.1 緊急
Network
Apache Software Foundation Apache Tomcat Apache Software FoundationのApache Tomcatにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-43515 2026-05-18 11:25 2026-05-12 Show GitHub Exploit DB Packet Storm
988 7.5 重要
Network
Web Technologies Change Detection Web TechnologiesのChange Detectionにおけるファイル名やパス名の外部制御に関する脆弱性 CWE-73
ファイル名やパス名の外部制御
CVE-2026-43891 2026-05-18 11:25 2026-05-12 Show GitHub Exploit DB Packet Storm
989 8.7 重要
Network
Daniel Garcia Vaultwarden Daniel GarciaのVaultwardenにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-43912 2026-05-18 11:25 2026-05-11 Show GitHub Exploit DB Packet Storm
990 9.1 緊急
Network
OPNsense project OPNsense OPNsenseにおける引数の挿入または変更に関する脆弱性 CWE-88
引数の挿入または変更
CVE-2026-44193 2026-05-18 11:25 2026-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1811 7.2 HIGH
Network
arubanetworks arubaos
sd-wan
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to upload arb… CWE-77
Command Injection
CVE-2026-44854 2026-05-15 00:12 2026-05-13 Show GitHub Exploit DB Packet Storm
1812 7.2 HIGH
Network
arubanetworks arubaos
sd-wan
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to upload arb… CWE-77
Command Injection
CVE-2026-44853 2026-05-15 00:05 2026-05-13 Show GitHub Exploit DB Packet Storm
1813 7.0 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Double free in Windows Link-Layer Discovery Protocol (LLDP) allows an authorized attacker to elevate privileges locally. CWE-415
 Double Free
CVE-2026-34341 2026-05-15 00:00 2026-05-13 Show GitHub Exploit DB Packet Storm
1814 7.0 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally. CWE-362
Race Condition
CVE-2026-34342 2026-05-14 23:59 2026-05-13 Show GitHub Exploit DB Packet Storm
1815 7.8 HIGH
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Heap-based buffer overflow in Windows Application Identity (AppID) Subsystem allows an authorized attacker to elevate privileges locally. CWE-122
Heap-based Buffer Overflow
CVE-2026-34343 2026-05-14 23:58 2026-05-13 Show GitHub Exploit DB Packet Storm
1816 7.8 HIGH
Local
ashlar argon
cobalt
cobalt_share
lithium
xenon
An Out-of-Bounds Write vulnerability is present in Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions 12.6.1204.216 and prior that could allow an attacker to execute arbitrary cod… CWE-787
 Out-of-bounds Write
CVE-2025-65086 2026-05-14 23:57 2026-05-13 Show GitHub Exploit DB Packet Storm
1817 7.8 HIGH
Local
ashlar argon
cobalt
cobalt_share
lithium
xenon
An Out-of-Bounds Read vulnerability is present in Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions 12.6.1204.216 and prior that could allow an attacker to disclose information o… CWE-125
Out-of-bounds Read
CVE-2025-65087 2026-05-14 23:57 2026-05-13 Show GitHub Exploit DB Packet Storm
1818 7.8 HIGH
Local
ashlar argon
cobalt
cobalt_share
lithium
xenon
An Out-of-Bounds Read vulnerability is present in Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions 12.6.1204.216 and prior that could allow an attacker to disclose information o… CWE-125
Out-of-bounds Read
CVE-2025-65088 2026-05-14 23:57 2026-05-13 Show GitHub Exploit DB Packet Storm
1819 8.8 HIGH
Network
requarks wiki.js Wiki.js is an open source wiki app built on Node.js. Prior to 2.5.313, the users.update GraphQL mutation accepts an arbitrary groups array and applies it directly to the database with no validation o… CWE-269
NVD-CWE-noinfo
 Improper Privilege Management
CVE-2026-44224 2026-05-14 23:56 2026-05-13 Show GitHub Exploit DB Packet Storm
1820 6.7 MEDIUM
Local
microsoft windows_10_1607
windows_10_1809
windows_10_21h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
windows_11_25h2
windows_11_26h1
windows_server_2012
windows_server_2016
w…
Double free in Windows Rich Text Edit allows an authorized attacker to elevate privileges locally. CWE-415
 Double Free
CVE-2026-21530 2026-05-14 23:56 2026-05-13 Show GitHub Exploit DB Packet Storm