Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 2:21 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1961 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23371 2026-04-27 10:54 2026-03-25 Show GitHub Exploit DB Packet Storm
1962 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23372 2026-04-27 10:54 2026-03-25 Show GitHub Exploit DB Packet Storm
1963 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23373 2026-04-27 10:54 2026-03-25 Show GitHub Exploit DB Packet Storm
1964 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23374 2026-04-27 10:54 2026-03-25 Show GitHub Exploit DB Packet Storm
1965 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-23375 2026-04-27 10:54 2026-03-25 Show GitHub Exploit DB Packet Storm
1966 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23376 2026-04-27 10:54 2026-03-25 Show GitHub Exploit DB Packet Storm
1967 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23377 2026-04-27 10:54 2026-03-25 Show GitHub Exploit DB Packet Storm
1968 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-23378 2026-04-27 10:54 2026-03-25 Show GitHub Exploit DB Packet Storm
1969 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおけるゼロ除算に関する脆弱性 CWE-369
ゼロ除算
CVE-2026-23379 2026-04-27 10:54 2026-03-25 Show GitHub Exploit DB Packet Storm
1970 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-23380 2026-04-27 10:54 2026-03-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
521 7.8 HIGH
Local
google chrome Insufficient validation of untrusted input in Updater in Google Chrome on Mac prior to 148.0.7778.96 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium … New CWE-20
 Improper Input Validation 
CVE-2026-7997 2026-05-7 08:18 2026-05-7 Show GitHub Exploit DB Packet Storm
522 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. New - CVE-2026-6278 2026-05-7 08:16 2026-05-7 Show GitHub Exploit DB Packet Storm
523 9.4 CRITICAL
Network
- - Note Mark is an open-source note-taking application. In version 0.19.2, IsPasswordMatch in backend/db/models.go falls back to a hard-coded bcrypt("null") placeholder whenever a user has no stored pas… Update CWE-287
Improper Authentication
CVE-2026-41571 2026-05-7 06:25 2026-05-5 Show GitHub Exploit DB Packet Storm
524 - - - FacturaScripts is an open source accounting and invoicing software. In versions 2025.92 and earlier, the application fails to validate the nick parameter during a POST request to the EditUser control… New CWE-472
 External Control of Assumed-Immutable Web Parameter
CVE-2026-32699 2026-05-7 06:25 2026-05-6 Show GitHub Exploit DB Packet Storm
525 - - - Masa CMS is a content management system forked from Mura CMS. In versions 7.5.2 and earlier, the cUsers.updateAddress function does not properly validate anti-CSRF tokens for user address management … New CWE-352
 Origin Validation Error
CVE-2026-40174 2026-05-7 06:22 2026-05-7 Show GitHub Exploit DB Packet Storm
526 - - - Masa CMS is a content management system forked from Mura CMS. In versions 7.5.2 and earlier, the cTrash.empty function does not validate anti-CSRF tokens for trash management requests. An attacker ca… New CWE-352
 Origin Validation Error
CVE-2026-40309 2026-05-7 06:22 2026-05-7 Show GitHub Exploit DB Packet Storm
527 - - - Masa CMS is a content management system forked from Mura CMS. In versions 7.5.2 and earlier, the `cTrash.restore` function does not properly validate anti-CSRF tokens for content restoration requests… New CWE-352
 Origin Validation Error
CVE-2026-40325 2026-05-7 06:22 2026-05-7 Show GitHub Exploit DB Packet Storm
528 - - - Masa CMS is a content management system forked from Mura CMS. In versions 7.5.2 and earlier, the createBundle method in `csettings.cfc` does not properly validate anti-CSRF tokens for site bundle cre… New CWE-352
 Origin Validation Error
CVE-2026-40326 2026-05-7 06:22 2026-05-7 Show GitHub Exploit DB Packet Storm
529 - - - Masa CMS is affected by an Open Redirect vulnerability due to improper handling of scheme-relative URLs. The application incorrectly interprets paths beginning with double slashes (//) as internal pa… New CWE-601
Open Redirect
CVE-2026-40332 2026-05-7 06:22 2026-05-7 Show GitHub Exploit DB Packet Storm
530 6.3 MEDIUM
Network
- - OpenClaw before 2026.4.10 contains a server-side request forgery vulnerability in browser navigation policy that allows attackers to bypass hostname validation through DNS rebinding attacks. Attacker… New CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-43582 2026-05-7 06:20 2026-05-7 Show GitHub Exploit DB Packet Storm