|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 23, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 1401 | 7.5 |
重要
Network |
- | アップルのmacOSにおける外部からアクセス可能なファイルまたはディレクトリに関する脆弱性 |
CWE-552
外部からアクセス可能なファイルまたはディレクトリ |
CVE-2026-39871 | 2026-05-14 10:19 | 2026-05-11 | Show | GitHub Exploit DB Packet Storm | |
| 1402 | 8.8 |
重要
Network |
Anthropic PBC | Claude Code | Anthropic PBCのClaude Codeにおける複数の脆弱性 |
CWE-20 CWE-77 CWE-noinfo |
CVE-2026-40068 | 2026-05-14 10:19 | 2026-05-5 | Show | GitHub Exploit DB Packet Storm |
| 1403 | 7.5 |
重要
Network |
OpenMRS | OpenMRS | OpenMRSにおけるパストラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2026-40075 | 2026-05-14 10:19 | 2026-05-5 | Show | GitHub Exploit DB Packet Storm |
| 1404 | 7.8 |
重要
Local |
デル |
Dell ObjectScale elastic cloud storage |
デルのelastic cloud storage等の複数製品におけるハードコードされた認証情報の使用に関する脆弱性 |
CWE-798
ハードコードされた認証情報の使用 |
CVE-2026-40636 | 2026-05-14 10:19 | 2026-05-11 | Show | GitHub Exploit DB Packet Storm |
| 1405 | 6.7 |
警告
Local |
デル | insightiq | デルのinsightiqにおける不要な特権による実行に関する脆弱性 |
CWE-250
不要な特権による実行 |
CVE-2026-40638 | 2026-05-14 10:19 | 2026-05-12 | Show | GitHub Exploit DB Packet Storm |
| 1406 | 7.5 |
重要
Network |
VMware | Spring Cloud Config | VMwareのSpring Cloud Configにおけるユーザ制御の鍵による認証回避に関する脆弱性 |
CWE-639
ユーザ制御の鍵による認証回避 |
CVE-2026-40981 | 2026-05-14 10:19 | 2026-05-7 | Show | GitHub Exploit DB Packet Storm |
| 1407 | 9.1 |
緊急
Network |
VMware | Spring Cloud Config | VMwareのSpring Cloud Configにおけるパストラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2026-40982 | 2026-05-14 10:19 | 2026-05-7 | Show | GitHub Exploit DB Packet Storm |
| 1408 | 8.1 |
重要
Network |
VMware | Spring Cloud Config | VMwareのSpring Cloud ConfigにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 |
CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態 |
CVE-2026-41002 | 2026-05-14 10:19 | 2026-05-7 | Show | GitHub Exploit DB Packet Storm |
| 1409 | 4.4 |
警告
Local |
VMware | Spring Cloud Config | VMwareのSpring Cloud Configにおけるログファイルからの情報漏えいに関する脆弱性 |
CWE-532
ログファイルからの情報漏えい |
CVE-2026-41004 | 2026-05-14 10:19 | 2026-05-7 | Show | GitHub Exploit DB Packet Storm |
| 1410 | 5.3 |
警告
Network |
Sync-in | Sync-in Server | Sync-inのSync-in Serverにおけるタイミングの違いに起因する情報漏えいに関する脆弱性 |
CWE-208
タイミングの違いに起因する情報漏えい |
CVE-2026-41161 | 2026-05-14 10:19 | 2026-05-8 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 23, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 346161 | - | apple |
darwin_streaming_server quicktime_streaming_server mac_os_x mac_os_x_server |
Buffer overflow in PSNormalizer for Apple Mac OS X 10.3.6 allows remote attackers to execute arbitrary code via a crafted PostScript input file. |
NVD-CWE-Other
|
CVE-2004-1086 | 2017-07-11 10:30 | 2004-12-2 | Show | GitHub Exploit DB Packet Storm | |
| 346162 | - | apple |
darwin_streaming_server quicktime_streaming_server mac_os_x mac_os_x_server |
Terminal for Apple Mac OS X 10.3.6 may indicate that "Secure Keyboard Entry" is enabled even when it is not, which could result in a false sense of security for the user. |
NVD-CWE-Other
|
CVE-2004-1087 | 2017-07-11 10:30 | 2004-12-2 | Show | GitHub Exploit DB Packet Storm | |
| 346163 | - | apple |
darwin_streaming_server quicktime_streaming_server mac_os_x mac_os_x_server |
Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote attackers to send mail without authentication by replaying authentication information. |
NVD-CWE-Other
|
CVE-2004-1088 | 2017-07-11 10:30 | 2004-12-2 | Show | GitHub Exploit DB Packet Storm | |
| 346164 | - | apple |
darwin_streaming_server quicktime_streaming_server mac_os_x mac_os_x_server |
Unknown vulnerability in Apple Mac OS X 10.3.6 server, when using Kerberos authentication and Cyrus IMAP allows local users to access mailboxes of other users. |
NVD-CWE-Other
|
CVE-2004-1089 | 2017-07-11 10:30 | 2004-12-2 | Show | GitHub Exploit DB Packet Storm | |
| 346165 | - |
midnight_commander debian gentoo redhat suse turbolinux |
midnight_commander debian_linux linux enterprise_linux linux_advanced_workstation suse_linux turbolinux_server turbolinux_workstation |
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service via "a corrupt section header." |
NVD-CWE-Other
|
CVE-2004-1090 | 2017-07-11 10:30 | 2005-04-14 | Show | GitHub Exploit DB Packet Storm | |
| 346166 | - |
midnight_commander debian gentoo redhat suse turbolinux |
midnight_commander debian_linux linux enterprise_linux linux_advanced_workstation suse_linux turbolinux_server turbolinux_workstation |
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service by triggering a null dereference. |
NVD-CWE-Other
|
CVE-2004-1091 | 2017-07-11 10:30 | 2005-04-14 | Show | GitHub Exploit DB Packet Storm | |
| 346167 | - |
midnight_commander debian gentoo redhat suse turbolinux |
midnight_commander debian_linux linux enterprise_linux linux_advanced_workstation suse_linux turbolinux_server turbolinux_workstation |
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service by causing mc to free unallocated memory. |
NVD-CWE-Other
|
CVE-2004-1092 | 2017-07-11 10:30 | 2005-04-14 | Show | GitHub Exploit DB Packet Storm | |
| 346168 | - |
midnight_commander debian gentoo redhat suse turbolinux |
midnight_commander debian_linux linux enterprise_linux linux_advanced_workstation suse_linux turbolinux_server turbolinux_workstation |
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service via "use of already freed memory." |
NVD-CWE-Other
|
CVE-2004-1093 | 2017-07-11 10:30 | 2005-04-14 | Show | GitHub Exploit DB Packet Storm | |
| 346169 | - |
zgv debian |
xzgv_image_viewer zgv_image_viewer debian_linux |
Multiple integer overflows in (1) readbmp.c, (2) readgif.c, (3) readgif.c, (4) readmrf.c, (5) readpcx.c, (6) readpng.c,(7) readpnm.c, (8) readprf.c, (9) readtiff.c, (10) readxbm.c, (11) readxpm.c in … |
NVD-CWE-Other
|
CVE-2004-1095 | 2017-07-11 10:30 | 2005-01-10 | Show | GitHub Exploit DB Packet Storm | |
| 346170 | - | cherokee | cherokee_httpd | Format string vulnerability in the cherokee_logger_ncsa_write_string function in Cherokee 0.4.17 and earlier, when authenticating via auth_pam, allows remote attackers to cause a denial of service (a… |
NVD-CWE-Other
|
CVE-2004-1097 | 2017-07-11 10:30 | 2005-01-10 | Show | GitHub Exploit DB Packet Storm |