Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1111 6.7 警告
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows リッチ テキスト エディットの特権昇格の脆弱性 CWE-415
二重解放
CVE-2026-21530 2026-05-18 12:19 2026-05-12 Show GitHub Exploit DB Packet Storm
1112 6.5 警告
Network
アップル visionos
watchOS
iOS
tvOS
iPadOS
アップルのiPadOS等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-28847 2026-05-18 12:19 2026-05-11 Show GitHub Exploit DB Packet Storm
1113 7.5 重要
Network
アップル iOS
iPadOS
アップルのiPadOS等の複数製品における不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-28873 2026-05-18 12:19 2026-05-11 Show GitHub Exploit DB Packet Storm
1114 6.5 警告
Network
アップル visionos
watchOS
iOS
tvOS
iPadOS
アップルのiPadOS等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-28902 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
1115 6.5 警告
Network
アップル visionos
watchOS
iOS
tvOS
iPadOS
アップルのiPadOS等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-28903 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
1116 8.1 重要
Network
アップル visionos
watchOS
iOS
tvOS
iPadOS
アップルのiPadOS等の複数製品における複数の脆弱性 CWE-116
CWE-20
CVE-2026-28907 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
1117 5.5 警告
Local
- アップルのmacOSにおける複数の脆弱性 CWE-358
CWE-693
CVE-2026-28914 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
1118 7.8 重要
Local
- アップルのmacOSにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-28915 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
1119 6.5 警告
Network
アップル visionos
watchOS
iOS
tvOS
iPadOS
アップルのiPadOS等の複数製品における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-28920 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
1120 7.5 重要
Network
- アップルのmacOSにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-28930 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
319061 - - - There are vulnerabilities in the Soft AP Daemon Service which could allow a threat actor to execute an unauthenticated RCE attack. Successful exploitation could allow an attacker to execute arbitrary… - CVE-2024-42393 2024-08-8 00:17 2024-08-7 Show GitHub Exploit DB Packet Storm
319062 - - - An issue in Koha ILS 23.05 and before allows a remote attacker to execute arbitrary code via a crafted script to the format parameter. - CVE-2024-28739 2024-08-8 00:17 2024-08-7 Show GitHub Exploit DB Packet Storm
319063 - - - matrix-react-sdk is a react-based SDK for inserting a Matrix chat/voip client into a web page. A malicious homeserver could manipulate a user's account data to cause the client to enable URL preview… - CVE-2024-42347 2024-08-8 00:17 2024-08-7 Show GitHub Exploit DB Packet Storm
319064 - - - Qwik is a performance focused javascript framework. A potential mutation XSS vulnerability exists in Qwik for versions up to but not including 1.6.0. Qwik improperly escapes HTML on server-side rende… - CVE-2024-41677 2024-08-8 00:17 2024-08-7 Show GitHub Exploit DB Packet Storm
319065 - - - A crafted DPA file could force Delta Electronics DIAScreen to overflow a stack-based buffer, which could allow an attacker to execute arbitrary code. - CVE-2024-7502 2024-08-8 00:17 2024-08-7 Show GitHub Exploit DB Packet Storm
319066 - - - PDFio is a simple C library for reading and writing PDF files. There is a denial of service (DOS) vulnerability in the TTF parser. Maliciously crafted TTF files can cause the program to utilize 100% … - CVE-2024-42358 2024-08-8 00:17 2024-08-7 Show GitHub Exploit DB Packet Storm
319067 - - - The lacks CSRF checks allowing a user to invite any user to any group (including private groups) - CVE-2024-2232 2024-08-7 23:35 2024-08-5 Show GitHub Exploit DB Packet Storm
319068 - - - The Light Poll WordPress plugin through 1.0.0 does not have CSRF checks when deleting polls, which could allow attackers to make logged in users perform such action via a CSRF attack - CVE-2024-6496 2024-08-7 23:35 2024-08-1 Show GitHub Exploit DB Packet Storm
319069 - - - ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DIR-600 up to 2.18. It has been rated as critical. This issue affects the function soapcgi_main of the file /soap.cgi. The manipula… CWE-78
OS Command 
CVE-2024-7357 2024-08-7 23:15 2024-08-1 Show GitHub Exploit DB Packet Storm
319070 - - - Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTM… - CVE-2024-7000 2024-08-7 22:35 2024-08-7 Show GitHub Exploit DB Packet Storm