Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
221 6.1 警告
Local
インテル Intel QuickAssist Technology インテルのIntel QuickAssist TechnologyにおけるNULL ポインタデリファレンスに関する脆弱性 New CWE-476
NULL ポインタデリファレンス
CVE-2026-20771 2026-05-18 12:08 2026-05-12 Show GitHub Exploit DB Packet Storm
222 6.6 警告
Local
インテル Intel QuickAssist Technology インテルのIntel QuickAssist Technologyにおける古典的バッファオーバーフローの脆弱性 New CWE-120
古典的バッファオーバーフロー
CVE-2026-20782 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
223 3.3
Local
インテル Intel QuickAssist Technology インテルのIntel QuickAssist Technologyにおける未チェックの戻り値に関する脆弱性 New CWE-252
未チェックの戻り値
CVE-2026-20793 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
224 5.5 警告
Local
インテル Intel QuickAssist Technology インテルのIntel QuickAssist Technologyにおけるゼロ除算に関する脆弱性 New CWE-369
ゼロ除算
CVE-2026-20881 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
225 6.6 警告
Local
インテル Intel QuickAssist Technology インテルのIntel QuickAssist Technologyにおける入力確認に関する脆弱性 New CWE-20
不適切な入力確認
CVE-2026-20905 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
226 5.5 警告
Local
インテル Intel QuickAssist Technology インテルのIntel QuickAssist TechnologyにおけるNULL ポインタデリファレンスに関する脆弱性 New CWE-476
NULL ポインタデリファレンス
CVE-2026-20914 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
227 7.2 重要
Network
strapi strapi strapiにおけるSQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2026-22599 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
228 6.5 警告
Network
strapi strapi strapiにおけるセッション期限に関する脆弱性 New CWE-613
不適切なセッション期限
CVE-2026-22706 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
229 5.4 警告
Network
strapi strapi strapiにおける複数の脆弱性 New CWE-434
CWE-693
CVE-2026-22707 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
230 7.5 重要
Network
アルバネットワークス株式会社 SD-WAN
ArubaOS
アルバネットワークス株式会社のArubaOS等の複数製品におけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-23824 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
731 5.4 MEDIUM
Network
arubanetworks arubaos
sd-wan
A session management vulnerability in AOS-8 allows previously authenticated users to retain network access after their accounts are administratively disabled. Existing sessions are not invalidated wh… CWE-613
 Insufficient Session Expiration
CVE-2026-44873 2026-05-15 21:44 2026-05-13 Show GitHub Exploit DB Packet Storm
732 4.9 MEDIUM
Network
arubanetworks arubaos A vulnerability exists in the web-based management interface of an AOS-10 Gateway that could allow an authenticated remote attacker to access sensitive files on the underlying operating system. Succe… CWE-284
Improper Access Control
CVE-2026-44874 2026-05-15 21:44 2026-05-13 Show GitHub Exploit DB Packet Storm
733 7.2 HIGH
Network
arubanetworks arubaos
sd-wan
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation of these vulnerabilities could allow an authenticated remo… CWE-77
Command Injection
CVE-2026-44865 2026-05-15 21:44 2026-05-13 Show GitHub Exploit DB Packet Storm
734 9.8 CRITICAL
Network
- - Reserved. Details will be published at disclosure. CWE-20
 Improper Input Validation 
CVE-2026-45392 2026-05-15 21:17 2026-05-12 Show GitHub Exploit DB Packet Storm
735 9.8 CRITICAL
Network
- - Reserved. Details will be published at disclosure. CWE-20
 Improper Input Validation 
CVE-2026-45391 2026-05-15 21:17 2026-05-12 Show GitHub Exploit DB Packet Storm
736 9.6 CRITICAL
Network
- - Due to improper Spring Security configuration, SAP Commerce Cloud allows an unauthenticated user to perform malicious input injection, resulting in arbitrary server-side code execution, leading to hi… CWE-459
 Incomplete Cleanup
CVE-2026-34263 2026-05-15 21:17 2026-05-12 Show GitHub Exploit DB Packet Storm
737 - - - In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate inherited ACE SID length smb_inherit_dacl() walks the parent directory DACL loaded from the security descriptor x… - CVE-2026-43490 2026-05-15 15:16 2026-05-15 Show GitHub Exploit DB Packet Storm
738 4.2 MEDIUM
Network
- - Inappropriate implementation in Views in Google Chrome on iOS prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform UI spoofing via a crafted HTML page… CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-8584 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm
739 5.3 MEDIUM
Network
- - Insufficient policy enforcement in WebXR in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive informa… CWE-693
 Protection Mechanism Failure
CVE-2026-8583 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm
740 5.3 MEDIUM
Network
- - Object lifecycle issue in Dawn in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium se… CWE-664
 Improper Control of a Resource Through its Lifetime
CVE-2026-8582 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm