Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1071 4.4 警告
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows 10 22h2
Microsoft Windows 10 21h2
Microsoft Windows&…
Windows Hello のセキュリティ機能のバイパスの脆弱性 CWE-20
不適切な入力確認
CVE-2026-27906 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
1072 7.5 重要
Network
FFmpeg FFmpeg FFmpegにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-30997 2026-04-27 11:23 2026-04-13 Show GitHub Exploit DB Packet Storm
1073 7.5 重要
Network
FFmpeg FFmpeg FFmpegにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-30998 2026-04-27 11:23 2026-04-13 Show GitHub Exploit DB Packet Storm
1074 7.5 重要
Network
FFmpeg FFmpeg FFmpegにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-30999 2026-04-27 11:23 2026-04-13 Show GitHub Exploit DB Packet Storm
1075 8.8 重要
Network
Dolibarr ERP & CRM dolibarr erp/crm Dolibarr ERP & CRMのdolibarr erp/crmにおける複数の脆弱性 CWE-284
CWE-94
CVE-2026-31018 2026-04-27 11:23 2026-04-21 Show GitHub Exploit DB Packet Storm
1076 8.8 重要
Network
Dolibarr ERP & CRM dolibarr erp/crm Dolibarr ERP & CRMのdolibarr erp/crmにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-31019 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
1077 3.5
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるレンダリングされたユーザインターフェースレイヤまたはフレームの不適切な制限に関する脆弱性 CWE-1021
レンダリングされたユーザインターフェースレイヤまたはフレームの不適切な制限
CVE-2026-3254 2026-04-27 11:22 2026-04-22 Show GitHub Exploit DB Packet Storm
1078 9.9 緊急
Network
Linux Foundation Spinnaker Linux FoundationのSpinnakerにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-32604 2026-04-27 11:22 2026-04-20 Show GitHub Exploit DB Packet Storm
1079 9.9 緊急
Network
Linux Foundation Spinnaker Linux FoundationのSpinnakerにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-32613 2026-04-27 11:22 2026-04-20 Show GitHub Exploit DB Packet Storm
1080 7.8 重要
Local
Podman project podman Podman projectのpodmanにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-33414 2026-04-27 11:22 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313321 4.4 MEDIUM
Local
dell emc_idrac_service_module Dell iDRAC Service Module version 5.3.0.0 and prior, contain a Out of bound Write Vulnerability. A privileged local attacker could execute arbitrary code potentially resulting in a denial of service … CWE-787
 Out-of-bounds Write
CVE-2024-25948 2024-08-2 22:55 2024-08-1 Show GitHub Exploit DB Packet Storm
313322 4.4 MEDIUM
Local
dell emc_idrac_service_module Dell iDRAC Service Module version 5.3.0.0 and prior, contain an Out of bound Read Vulnerability. A privileged local attacker could execute arbitrary code potentially resulting in a denial of service … CWE-787
 Out-of-bounds Write
CVE-2024-25947 2024-08-2 22:55 2024-08-1 Show GitHub Exploit DB Packet Storm
313323 4.4 MEDIUM
Local
dell emc_idrac_service_module Dell iDRAC Service Module version 5.3.0.0 and prior, contain a Out of bound Write Vulnerability. A privileged local attacker could execute arbitrary code potentially resulting in a denial of service … CWE-787
 Out-of-bounds Write
CVE-2024-38490 2024-08-2 22:54 2024-08-1 Show GitHub Exploit DB Packet Storm
313324 4.4 MEDIUM
Local
dell emc_idrac_service_module Dell iDRAC Service Module version 5.3.0.0 and prior contains Out of bound write Vulnerability. A privileged local attacker could execute arbitrary code potentially resulting in a denial of service (p… CWE-787
 Out-of-bounds Write
CVE-2024-38489 2024-08-2 22:54 2024-08-1 Show GitHub Exploit DB Packet Storm
313325 4.4 MEDIUM
Local
dell emc_idrac_service_module Dell iDRAC Service Module version 5.3.0.0 and prior, contain a Out of bound Read Vulnerability. A privileged local attacker could execute arbitrary code potentially resulting in a denial of service e… CWE-125
Out-of-bounds Read
CVE-2024-38481 2024-08-2 22:54 2024-08-1 Show GitHub Exploit DB Packet Storm
313326 5.3 MEDIUM
Network
- - The Comments – wpDiscuz plugin for WordPress is vulnerable to HTML Injection in all versions up to, and including, 7.6.21. This is due to a lack of filtering of HTML tags in comments. This makes it p… - CVE-2024-6704 2024-08-2 21:59 2024-08-2 Show GitHub Exploit DB Packet Storm
313327 4.3 MEDIUM
Network
- - The specific API in HWATAIServiSign Windows Version from CHANGING Information Technology does not properly validate the length of server-side inputs. When a user visits a spoofed website, unauthentic… - CVE-2024-40723 2024-08-2 21:59 2024-08-2 Show GitHub Exploit DB Packet Storm
313328 4.3 MEDIUM
Network
- - The specific API in TCBServiSign Windows Version from CHANGING Information Technology does does not properly validate the length of server-side input. When a user visits a spoofed website, unauthenti… CWE-121
Stack-based Buffer Overflow
CVE-2024-40722 2024-08-2 21:59 2024-08-2 Show GitHub Exploit DB Packet Storm
313329 8.8 HIGH
Network
- - The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input. When a user visits a spoofed website, unauthenticated remote attack… CWE-20
 Improper Input Validation 
CVE-2024-40721 2024-08-2 21:59 2024-08-2 Show GitHub Exploit DB Packet Storm
313330 - - - The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input. When a user visits a spoofed website, unauthenticated remote attack… CWE-20
 Improper Input Validation 
CVE-2024-40720 2024-08-2 21:59 2024-08-2 Show GitHub Exploit DB Packet Storm