Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1771 6.5 警告
Network
pypdf project pypdf pypdf projectのpypdfにおける過剰なサイズ値のメモリ割り当てに関する脆弱性 CWE-789
過剰なサイズ値のメモリ割り当て
CVE-2026-41314 2026-04-30 12:26 2026-04-22 Show GitHub Exploit DB Packet Storm
1772 5.4 警告
Network
mintplexlabs anythingllm mintplexlabsのanythingllmにおける複数の脆弱性 CWE-116
CWE-1336
CWE-79
CVE-2026-41318 2026-04-30 12:26 2026-04-24 Show GitHub Exploit DB Packet Storm
1773 9.1 緊急
Network
The Kyverno Authors Kyverno The Kyverno AuthorsのKyvernoにおける複数の脆弱性 CWE-200
CWE-918
CVE-2026-41323 2026-04-30 12:26 2026-04-24 Show GitHub Exploit DB Packet Storm
1774 7.5 重要
Network
Patrick Juchli (patrickjuchli) Basic FTP Patrick Juchli (patrickjuchli)のBasic FTPにおける複数の脆弱性 CWE-400
CWE-770
CVE-2026-41324 2026-04-30 12:26 2026-04-24 Show GitHub Exploit DB Packet Storm
1775 8.8 重要
Network
getkirby kirby getkirbyのkirbyにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-41325 2026-04-30 12:26 2026-04-24 Show GitHub Exploit DB Packet Storm
1776 9.9 緊急
Network
OpenClaw OpenClaw OpenClawにおける特権 API の不適切な使用に関する脆弱性 CWE-648
特権 API の不適切な使用
CVE-2026-41329 2026-04-30 12:26 2026-04-21 Show GitHub Exploit DB Packet Storm
1777 4.4 警告
Local
OpenClaw OpenClaw OpenClawにおける変数の安全ではないデフォルト値への初期化に関する脆弱性 CWE-453
変数の安全ではないデフォルト値への初期化
CVE-2026-41330 2026-04-30 12:26 2026-04-21 Show GitHub Exploit DB Packet Storm
1778 9.8 緊急
Network
socialengine socialengine socialengineにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-41460 2026-04-30 12:26 2026-04-23 Show GitHub Exploit DB Packet Storm
1779 8.5 重要
Network
socialengine socialengine socialengineにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-41461 2026-04-30 12:26 2026-04-23 Show GitHub Exploit DB Packet Storm
1780 7.7 重要
Network
The Kyverno Authors Kyverno The Kyverno AuthorsのKyvernoにおける到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-41485 2026-04-30 12:25 2026-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313311 7.8 HIGH
Local
qualcomm 315_5g_iot_firmware
aqt1000_firmware
ar8031_firmware
ar8035_firmware
c-v2x_9150_firmware
csra6620_firmware
csra6640_firmware
fastconnect_6200_firmware
fastconnect_6700_firmwar…
Memory corruption when two threads try to map and unmap a single node simultaneously. CWE-416
 Use After Free
CVE-2024-33060 2024-09-5 02:06 2024-09-2 Show GitHub Exploit DB Packet Storm
313312 7.5 HIGH
Network
qualcomm ar8035_firmware
csr8811_firmware
fastconnect_6700_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
flight_rb5_5g_firmware
immersive_home_214_firmware
immersive_home_2…
Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location. CWE-125
Out-of-bounds Read
CVE-2024-33057 2024-09-5 02:06 2024-09-2 Show GitHub Exploit DB Packet Storm
313313 7.8 HIGH
Local
qualcomm ar8035_firmware
c-v2x_9150_firmware
fastconnect_7800_firmware
qca6574a_firmware
qca6584au_firmware
qca6595au_firmware
qca6696_firmware
qca6698aq_firmware
qca8081_firmware
q…
Memory corruption while processing concurrent IOCTL calls. CWE-416
 Use After Free
CVE-2024-38401 2024-09-5 02:05 2024-09-2 Show GitHub Exploit DB Packet Storm
313314 4.3 MEDIUM
Network
mattermost mattermost_server Mattermost versions 9.9.x <= 9.9.0, 9.5.x <= 9.5.6, 9.7.x <= 9.7.5 and 9.8.x <= 9.8.1 fail to disallow the modification of local channels by a remote, when shared channels are enabled, which allows a… NVD-CWE-noinfo
CVE-2024-41162 2024-09-5 02:03 2024-08-2 Show GitHub Exploit DB Packet Storm
313315 7.8 HIGH
Local
openatom openharmony in OpenHarmony v4.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. CWE-787
 Out-of-bounds Write
CVE-2024-38386 2024-09-5 01:56 2024-09-2 Show GitHub Exploit DB Packet Storm
313316 4.3 MEDIUM
Network
mattermost mattermost_server Mattermost versions 9.9.x <= 9.9.0 and 9.5.x <= 9.5.6 fail to validate the source of sync messages and only allow the correct remote IDs, which allows a malicious remote to set arbitrary RemoteId val… CWE-346
 Origin Validation Error
CVE-2024-41926 2024-09-5 01:55 2024-08-2 Show GitHub Exploit DB Packet Storm
313317 6.5 MEDIUM
Network
misp misp In MISP through 2.4.196, app/Controller/BookmarksController.php does not properly restrict access to bookmarks data in the case where the user is not an org admin. CWE-863
 Incorrect Authorization
CVE-2024-45509 2024-09-5 01:45 2024-09-2 Show GitHub Exploit DB Packet Storm
313318 9.8 CRITICAL
Network
htmldoc_project htmldoc HTMLDOC before 1.9.19 has an out-of-bounds write in parse_paragraph in ps-pdf.cxx because of an attempt to strip leading whitespace from a whitespace-only node. CWE-787
 Out-of-bounds Write
CVE-2024-45508 2024-09-5 01:44 2024-09-2 Show GitHub Exploit DB Packet Storm
313319 9.8 CRITICAL
Network
oretnom23 computer_laboratory_management_system A vulnerability, which was classified as critical, has been found in SourceCodester Computer Laboratory Management System 1.0. Affected by this issue is the function delete_category of the file /clas… CWE-89
SQL Injection
CVE-2024-8348 2024-09-5 01:43 2024-08-31 Show GitHub Exploit DB Packet Storm
313320 9.8 CRITICAL
Network
oretnom23 computer_laboratory_management_system A vulnerability classified as critical was found in SourceCodester Computer Laboratory Management System 1.0. Affected by this vulnerability is the function delete_record of the file /classes/Master.… CWE-89
SQL Injection
CVE-2024-8347 2024-09-5 01:42 2024-08-31 Show GitHub Exploit DB Packet Storm