Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1531 5.5 警告
Local
レッドハット
gimp
Red Hat Enterprise Linux
gimp
gimp等の複数ベンダの製品における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-40916 2026-04-30 11:02 2026-04-15 Show GitHub Exploit DB Packet Storm
1532 7.1 重要
Local
レッドハット
gimp
Red Hat Enterprise Linux
gimp
gimp等の複数ベンダの製品における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-40917 2026-04-30 11:02 2026-04-15 Show GitHub Exploit DB Packet Storm
1533 5.5 警告
Local
レッドハット
gimp
Red Hat Enterprise Linux
gimp
gimp等の複数ベンダの製品におけるバッファサイズの計算の誤りに関する脆弱性 CWE-131
正しくないバッファサイズ計算
CVE-2026-40918 2026-04-30 11:02 2026-04-15 Show GitHub Exploit DB Packet Storm
1534 5.5 警告
Local
レッドハット
gimp
Red Hat Enterprise Linux
gimp
gimp等の複数ベンダの製品における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-40919 2026-04-30 11:02 2026-04-15 Show GitHub Exploit DB Packet Storm
1535 5.9 警告
Network
opentelemetry opentelemetry opentelemetryにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-41078 2026-04-30 11:02 2026-04-23 Show GitHub Exploit DB Packet Storm
1536 6.5 警告
Network
Apache Software Foundation Apache Storm Apache Software FoundationのApache Stormにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-41081 2026-04-30 11:02 2026-04-27 Show GitHub Exploit DB Packet Storm
1537 7.5 重要
Network
SQLAlchemy mako SQLAlchemyのmakoにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-41205 2026-04-30 11:01 2026-04-23 Show GitHub Exploit DB Packet Storm
1538 7.8 重要
Local
Tommaso Bona (ParzivalHack) PySpector Tommaso Bona (ParzivalHack)のPySpectorにおける不完全なブラックリストに関する脆弱性 CWE-184
不完全なブラックリスト
CVE-2026-41206 2026-04-30 11:01 2026-04-23 Show GitHub Exploit DB Packet Storm
1539 6.1 警告
Network
cure53 DOMPurify cure53のDOMPurifyにおける複数の脆弱性 CWE-183
CWE-79
CVE-2026-41240 2026-04-30 11:01 2026-04-23 Show GitHub Exploit DB Packet Storm
1540 5.4 警告
Network
pretalx pretalx pretalxにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-41241 2026-04-30 11:01 2026-04-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313691 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: USB: serial: mos7840: fix crash on resume Since commit c49cfa917025 ("USB: serial: use generic method if no alternative is provid… NVD-CWE-noinfo
CVE-2024-42244 2024-08-8 23:53 2024-08-8 Show GitHub Exploit DB Packet Storm
313692 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: mmc: sdhci: Fix max_seg_size for 64KiB PAGE_SIZE blk_queue_max_segment_size() ensured: if (max_size < PAGE_SIZE) max_size = P… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2024-42242 2024-08-8 23:53 2024-08-8 Show GitHub Exploit DB Packet Storm
313693 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: mm/filemap: make MAX_PAGECACHE_ORDER acceptable to xarray Patch series "mm/filemap: Limit page cache size to that supported by xa… NVD-CWE-noinfo
CVE-2024-42243 2024-08-8 23:53 2024-08-8 Show GitHub Exploit DB Packet Storm
313694 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: mm/shmem: disable PMD-sized page cache if needed For shmem files, it's possible that PMD-sized page cache can't be supported by x… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2024-42241 2024-08-8 23:53 2024-08-8 Show GitHub Exploit DB Packet Storm
313695 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: x86/bhi: Avoid warning in #DB handler due to BHI mitigation When BHI mitigation is enabled, if SYSENTER is invoked with the TF fl… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-42240 2024-08-8 23:53 2024-08-8 Show GitHub Exploit DB Packet Storm
313696 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: wireguard: allowedips: avoid unaligned 64-bit memory accesses On the parisc platform, the kernel issues kernel warnings because s… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2024-42247 2024-08-8 23:52 2024-08-8 Show GitHub Exploit DB Packet Storm
313697 - - - A SQL injection vulnerability in /smsa/teacher_login.php in Kashipara Responsive School Management System v1.0 allows an attacker to execute arbitrary SQL commands via the "username" parameter. - CVE-2024-41237 2024-08-8 23:35 2024-08-8 Show GitHub Exploit DB Packet Storm
313698 - - - 1Password 8 before 8.10.38 for macOS allows local attackers to exfiltrate vault items by bypassing macOS-specific security mechanisms. - CVE-2024-42218 2024-08-8 23:35 2024-08-7 Show GitHub Exploit DB Packet Storm
313699 - horde imp Horde IMP 2.2.7 allows remote attackers to obtain the full web root pathname via an HTTP request for (1) poppassd.php3, (2) login.php3?reason=chpass2, (3) spelling.php3, and (4) ldap.search.php3?ldap… NVD-CWE-Other
CVE-2002-2024 2024-08-8 23:35 2002-12-31 Show GitHub Exploit DB Packet Storm
313700 9.8 CRITICAL
Network
oretnom23 lot_reservation_management_system A vulnerability was found in SourceCodester Lot Reservation Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/ajax.php?action=login. … CWE-89
SQL Injection
CVE-2024-7279 2024-08-8 22:57 2024-07-31 Show GitHub Exploit DB Packet Storm