Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
991 8.8 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-8975 2026-05-22 10:51 2026-05-19 Show GitHub Exploit DB Packet Storm
992 3.3
Local
Siber Systems Inc. RoboForm Password Manager Androidアプリ「パスワード管理 ロボフォーム」のintent処理における検証不備の脆弱性 CWE-357
危険な操作に対する不十分な警告
CVE-2026-47782 2026-05-21 16:37 2026-05-20 Show GitHub Exploit DB Packet Storm
993 - - (複数のベンダ) (複数の製品) CISA ICS Advisory / ICS Medical Advisory(2026年05月19日) - - 2026-05-21 16:17 2026-05-20 Show GitHub Exploit DB Packet Storm
994 6.1 警告
Network
Northern.tech cfengine Northern.techのcfengineにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-24710 2026-05-21 10:55 2026-05-14 Show GitHub Exploit DB Packet Storm
995 5.3 警告
Network
Northern.tech cfengine Northern.techのcfengineにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-24711 2026-05-21 10:55 2026-05-14 Show GitHub Exploit DB Packet Storm
996 7.3 重要
Network
Northern.tech cfengine Northern.techのcfengineにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-24712 2026-05-21 10:55 2026-05-14 Show GitHub Exploit DB Packet Storm
997 9.8 緊急
Network
Open JS Foundation WebdriverIO Open JS FoundationのWebdriverIOにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-25244 2026-05-21 10:55 2026-05-18 Show GitHub Exploit DB Packet Storm
998 6.5 警告
Network
マイクロソフト Power Automate for Desktop Microsoft Power Automate デスクトップの情報漏えいの脆弱性 CWE-200
情報漏えい
CVE-2026-40374 2026-05-21 10:55 2026-05-12 Show GitHub Exploit DB Packet Storm
999 7.8 重要
Local
protobufjs project protobufjs-cli protobufjs projectのprotobufjs-cliにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-42290 2026-05-21 10:55 2026-05-13 Show GitHub Exploit DB Packet Storm
1000 6.1 警告
Network
beaugunderson ip-address beaugundersonのip-addressにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-42338 2026-05-21 10:55 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311011 - - - Observable timing discrepancy in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow information disclosure via network access. CWE-208
 Information Exposure Through Timing Discrepancy
CVE-2024-31074 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
311012 - - - Improper access control for some BigDL software maintained by Intel(R) before version 2.5.0 may allow an authenticated user to potentially enable escalation of privilege via adjacent access. - CVE-2024-29085 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
311013 - - - Incorrect default permissions in some Intel(R) Distribution for Python software before version 2024.2 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-276
Incorrect Default Permissions 
CVE-2024-29083 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
311014 - - - Improper access control in some JAM STAPL Player software before version 2.6.1 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-284
Improper Access Control
CVE-2024-29077 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
311015 - - - Uncaught exception for some Intel(R) CST software before version 8.7.10803 may allow an authenticated user to potentially enable denial of service via local access. CWE-248
 Uncaught Exception
CVE-2024-29076 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
311016 - - - Uncontrolled search path for some Intel(R) IPP software for Windows before version 2021.12.0 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-427
 Uncontrolled Search Path Element
CVE-2024-28952 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
311017 - - - Uncontrolled search path for some Intel(R) oneAPI Math Kernel Library software for Windows before version 2024.2 may allow an authenticated user to potentially enable escalation of privilege via loca… CWE-427
 Uncontrolled Search Path Element
CVE-2024-28950 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
311018 - - - Observable discrepancy in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow information disclosure via network access. CWE-203
 Information Exposure Through Discrepancy
CVE-2024-28885 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
311019 - - - Uncontrolled search path for some Intel(R) Fortran Compiler Classic software before version 2021.13 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-427
 Uncontrolled Search Path Element
CVE-2024-28881 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
311020 - - - Cleartext transmission of sensitive information for some BigDL software maintained by Intel(R) before version 2.5.0 may allow an authenticated user to potentially enable denial of service via adjacen… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2024-28169 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm