Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1841 6.5 警告
Network
アップル tvOS
iOS
watchOS
visionos
iPadOS
アップルのiPadOS等の複数製品における複数の脆弱性 CWE-125
CWE-787
CVE-2026-28918 2026-05-15 10:52 2026-05-11 Show GitHub Exploit DB Packet Storm
1842 - - クアルコム (複数の製品) Intel製品に対するアップデート(2026年5月) - - 2026-05-14 17:11 2026-05-13 Show GitHub Exploit DB Packet Storm
1843 - - (複数のベンダ) (複数の製品) CISA ICS Advisory / ICS Medical Advisory(2026年05月12日) - - 2026-05-14 17:11 2026-05-13 Show GitHub Exploit DB Packet Storm
1844 - - シーメンス (複数の製品) Siemens製品に対するアップデート(2026年5月) - CVE-2024-3596
CVE-2026-27446
2026-05-14 17:11 2026-05-13 Show GitHub Exploit DB Packet Storm
1845 7.8 重要
Local
wps
キングソフト株式会社
WPS Office2
WPS Cloud
WPS Cloud Pro
KINGSOFT PDF Pro
WPS Officeで使用される名前付きパイプに対するアクセス制御不備の脆弱性 CWE-Other
その他
CVE-2018-6400 2026-05-14 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
1846 6.5 警告
Network
Augmentt Technology Augmentt Augmentt TechnologyのAugmenttにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-6355 2026-05-14 10:23 2026-04-22 Show GitHub Exploit DB Packet Storm
1847 9.6 緊急
Network
Augmentt Technology Augmentt Augmentt TechnologyのAugmenttにおけるアクセス制御の不十分な粒度に関する脆弱性 CWE-1220
アクセス制御の不十分な粒度
CVE-2026-6356 2026-05-14 10:23 2026-04-22 Show GitHub Exploit DB Packet Storm
1848 5.1 警告
Local
Mozilla Foundation thin-vec Mozilla Foundationのthin-vecにおける複数の脆弱性 CWE-415
CWE-416
CVE-2026-6654 2026-05-14 10:23 2026-04-20 Show GitHub Exploit DB Packet Storm
1849 7.2 重要
Network
SUN NET TECHNOLOGIES CO., LTD. eHRD CPAS
eHRD CTMS
SUN NET TECHNOLOGIES CO., LTD.のeHRD CPAS等の複数製品における危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2026-7490 2026-05-14 10:23 2026-05-2 Show GitHub Exploit DB Packet Storm
1850 6.3 警告
Network
Router-For.ME CLI Proxy API Router-For.MEのCLI Proxy APIにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-8081 2026-05-14 10:23 2026-05-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311911 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: microchip: vcap api: Fix memory leaks in vcap_api_encode_rule_test() Commit a3c1e45156ad ("net: microchip: vcap: Fix use-aft… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2024-50084 2024-10-30 23:56 2024-10-29 Show GitHub Exploit DB Packet Storm
311912 9.8 CRITICAL
Network
snyk snyk_cli The package Snyk CLI before 1.1294.0 is vulnerable to Code Injection when scanning an untrusted PHP project. The vulnerability can be triggered if Snyk test is run inside the untrusted project due to… CWE-78
OS Command 
CVE-2024-48963 2024-10-30 23:54 2024-10-24 Show GitHub Exploit DB Packet Storm
311913 9.8 CRITICAL
Network
razormist payroll_management_system A vulnerability classified as critical has been found in SourceCodester Payroll Management System 1.0. This affects the function login of the file main. The manipulation leads to buffer overflow. The… CWE-120
Classic Buffer Overflow
CVE-2024-10371 2024-10-30 23:51 2024-10-25 Show GitHub Exploit DB Packet Storm
311914 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_subflow Syzkaller reported this splat: =====================================… CWE-416
 Use After Free
CVE-2024-50085 2024-10-30 23:49 2024-10-29 Show GitHub Exploit DB Packet Storm
311915 8.8 HIGH
Network
liferay digital_experience_platform
liferay_portal
The workflow component in Liferay Portal 7.3.2 through 7.4.3.111, and Liferay DXP 2023.Q4.0 through 2023.Q4.5, 2023.Q3.1 through 2023.Q3.8, 7.4 GA through update 92 and 7.3 GA through update 36 does … CWE-863
 Incorrect Authorization
CVE-2024-38002 2024-10-30 23:47 2024-10-23 Show GitHub Exploit DB Packet Storm
311916 6.1 MEDIUM
Network
liferay digital_experience_platform
liferay_portal
The Script Console in Liferay Portal 7.0.0 through 7.4.3.101, and Liferay DXP 2023.Q3.1 through 2023.Q3.4, 7.4 GA through update 92, 7.3 GA through update 35, 7.2 GA through fix pack 20, 7.1 GA throu… CWE-352
 Origin Validation Error
CVE-2024-8980 2024-10-30 23:46 2024-10-23 Show GitHub Exploit DB Packet Storm
311917 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: btrfs: fix uninitialized pointer free on read_alloc_one_name() error The function read_alloc_one_name() does not initialize the n… CWE-824
 Access of Uninitialized Pointer
CVE-2024-50087 2024-10-30 23:40 2024-10-29 Show GitHub Exploit DB Packet Storm
311918 - - - A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 18.1 and iPadOS 18.1, watchOS 11.1, visionOS 2.1, tvOS 18.1. An app may be able to cause unexpected sy… - CVE-2024-44285 2024-10-30 23:35 2024-10-29 Show GitHub Exploit DB Packet Storm
311919 - - - An information disclosure issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 18.1 and iPadOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, macOS Ventura 13.7.1… - CVE-2024-44278 2024-10-30 23:35 2024-10-29 Show GitHub Exploit DB Packet Storm
311920 5.4 MEDIUM
Network
vtiger vtiger_crm Vtiger CRM v8.2.0 has a HTML Injection vulnerability in the module parameter. Authenticated users can inject arbitrary HTML. CWE-79
Cross-site Scripting
CVE-2024-48119 2024-10-30 23:32 2024-10-14 Show GitHub Exploit DB Packet Storm