Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1891 8.1 重要
Network
Grafana Labs Grafana Grafana LabsのGrafanaにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-21721 2026-04-21 10:51 2026-01-27 Show GitHub Exploit DB Packet Storm
1892 5.3 警告
Network
Grafana Labs Loki Grafana LabsのLokiにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-21726 2026-04-21 10:51 2026-04-15 Show GitHub Exploit DB Packet Storm
1893 3.3
Network
Grafana Labs Grafana Grafana LabsのGrafanaにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-21727 2026-04-21 10:51 2026-04-15 Show GitHub Exploit DB Packet Storm
1894 4.8 警告
Network
フォーティネット FortiNAC-F フォーティネットのFortiNAC-Fにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-21741 2026-04-21 10:51 2026-04-14 Show GitHub Exploit DB Packet Storm
1895 8.8 重要
Network
AFFiNE AFFiNE AFFiNEにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-21853 2026-04-21 10:51 2026-03-2 Show GitHub Exploit DB Packet Storm
1896 5.7 警告
Network
デル data domain operating system デルのdata domain operating systemにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2026-23775 2026-04-21 10:51 2026-04-17 Show GitHub Exploit DB Packet Storm
1897 5.3 警告
Network
PowerDNS PowerDNS Recursor PowerDNSのPowerDNS RecursorにおけるCapture-replay による認証回避に関する脆弱性 CWE-294
Capture-replayによる認証回避
CVE-2026-24027 2026-04-21 10:51 2026-02-9 Show GitHub Exploit DB Packet Storm
1898 6.7 警告
Local
Acronis International GmbH True Image Acronis International GmbHのTrue Imageにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-27774 2026-04-21 10:51 2026-04-2 Show GitHub Exploit DB Packet Storm
1899 5.3 警告
Network
Talishar Talishar Talisharにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-28428 2026-04-21 10:51 2026-03-6 Show GitHub Exploit DB Packet Storm
1900 7.5 重要
Network
Talishar Talishar Talisharにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-28429 2026-04-21 10:50 2026-03-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 4, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
71 8.8 HIGH
Network
- - In the Linux kernel, the following vulnerability has been resolved: smb: client: validate the whole DACL before rewriting it in cifsacl build_sec_desc() and id_mode_to_cifs_acl() derive a DACL poin… New - CVE-2026-31709 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
72 8.1 HIGH
Network
- - In the Linux kernel, the following vulnerability has been resolved: smb: client: fix OOB read in smb2_ioctl_query_info QUERY_INFO path smb2_ioctl_query_info() has two response-copy branches: PASSTH… New - CVE-2026-31708 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
73 7.1 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate response sizes in ipc_validate_msg() ipc_validate_msg() computes the expected message size for each response type… New - CVE-2026-31707 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
74 8.8 HIGH
Network
- - In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate num_aces and harden ACE walk in smb_inherit_dacl() smb_inherit_dacl() trusts the on-disk num_aces value from the … New - CVE-2026-31706 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
75 9.8 CRITICAL
Network
- - In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bounds write in smb2_get_ea() EA alignment smb2_get_ea() applies 4-byte alignment padding via memset() after wr… New - CVE-2026-31705 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
76 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: writeback: Fix use after free in inode_switch_wbs_work_fn() inode_switch_wbs_work_fn() has a loop like: wb_get(new_wb); whil… New - CVE-2026-31703 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
77 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: net/packet: fix TOCTOU race on mmap'd vnet_hdr in tpacket_snd() In tpacket_snd(), when PACKET_VNET_HDR is enabled, vnet_hdr point… New - CVE-2026-31700 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
78 7.1 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy CSR to userspace if PSP command failed When retrieving the PEK CSR, don't attempt to copy the … New - CVE-2026-31699 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
79 7.1 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy PDH cert to userspace if PSP command failed When retrieving the PDH cert, don't attempt to cop… New - CVE-2026-31698 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm
80 7.1 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy ID to userspace if PSP command failed When retrieving the ID for the CPU, don't attempt to cop… New - CVE-2026-31697 2026-05-3 16:16 2026-05-1 Show GitHub Exploit DB Packet Storm