|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 18, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 2291 | 4.4 |
警告
Local |
オラクル | Oracle Linux | オラクルのOracle Linuxにおける境界外読み取りに関する脆弱性 |
CWE-125
境界外読み取り |
CVE-2026-35233 | 2026-05-7 10:51 | 2026-05-1 | Show | GitHub Exploit DB Packet Storm |
| 2292 | 5.2 |
警告
Network |
オラクル | Hyperion Infrastructure Technology | オラクルのHyperion Infrastructure Technologyにおけるアクセス制御に関する脆弱性 |
CWE-284
不適切なアクセス制御 |
CVE-2026-35244 | 2026-05-7 10:51 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 2293 | 9.1 |
緊急
Network |
Volcengine | OpenViking | VolcengineのOpenVikingにおける安全でない失敗処理に関する脆弱性 |
CWE-636
安全でない失敗処理 |
CVE-2026-40525 | 2026-05-7 10:51 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 2294 | 7.1 |
重要
Network |
Apache Software Foundation | Apache Atlas | Apache Software FoundationのApache Atlasにおけるコードインジェクションの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2026-40563 | 2026-05-7 10:51 | 2026-05-4 | Show | GitHub Exploit DB Packet Storm |
| 2295 | 8.8 |
重要
Adjacent |
Espressif Systems | ESP32 Arduino | Espressif SystemsのESP32 Arduinoにおけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-121
スタックオーバーフロー |
CVE-2026-41429 | 2026-05-7 10:51 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 2296 | 9 |
緊急
Network |
Jenkins プロジェクト | GitHub | JenkinsのGitHubにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2026-42523 | 2026-05-7 10:51 | 2026-04-29 | Show | GitHub Exploit DB Packet Storm |
| 2297 | 8 |
重要
Network |
Jenkins プロジェクト | HTML Publisher Plugin | JenkinsのHTML Publisher Pluginにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2026-42524 | 2026-05-7 10:51 | 2026-04-29 | Show | GitHub Exploit DB Packet Storm |
| 2298 | 4.3 |
警告
Network |
Jenkins プロジェクト | Azure AD | JenkinsのAzure ADにおけるオープンリダイレクトの脆弱性 |
CWE-601
オープンリダイレクト |
CVE-2026-42525 | 2026-05-7 10:51 | 2026-04-29 | Show | GitHub Exploit DB Packet Storm |
| 2299 | 8.8 |
重要
Adjacent |
TP-LINK Technologies | TL-WR841N ファームウェア | TP-LINK TechnologiesのTL-WR841N ファームウェアにおけるデフォルトの暗号鍵の使用に関する脆弱性 |
CWE-1394
デフォルトの暗号鍵の使用 |
CVE-2026-5039 | 2026-05-7 10:51 | 2026-04-23 | Show | GitHub Exploit DB Packet Storm |
| 2300 | 7.3 |
重要
Network |
GNU Project | GNU C Library | GNU ProjectのGNU C Libraryにおける境界外書き込みに関する脆弱性 |
CWE-787
境界外書き込み |
CVE-2026-5435 | 2026-05-7 10:51 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 19, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 313411 | 8.1 |
HIGH
Network |
microsoft |
windows_server_2019 windows_server_2022 windows_server_2022_23h2 windows_11_24h2 windows_10_22h2 windows_11_23h2 windows_11_22h2 windows_11_21h2 windows_10_1809 windows_10_… |
Windows TCP/IP Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38045 | 2024-09-19 00:04 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313412 | 8.8 |
HIGH
Network |
microsoft | sharepoint_server | Microsoft SharePoint Server Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38018 | 2024-09-19 00:04 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313413 | 7.8 |
HIGH
Local |
microsoft |
windows_10_1507 windows_server_2019 windows_server_2022 windows_server_2022_23h2 windows_11_24h2 windows_10_1607 windows_server_2016 windows_10_22h2 windows_11_23h2 windows… |
PowerShell Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38046 | 2024-09-19 00:02 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313414 | 6.5 |
MEDIUM
Network |
microsoft | outlook | Microsoft Outlook for iOS Information Disclosure Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43482 | 2024-09-18 23:11 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313415 | 6.5 |
MEDIUM
Network |
microsoft |
windows_server_2012 windows_10_1507 windows_10_1809 windows_server_2019 windows_10_21h2 windows_10_1607 windows_server_2016 windows_10_22h2 |
Windows Mark of the Web Security Feature Bypass Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43487 | 2024-09-18 23:10 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313416 | 7.8 |
HIGH
Local |
microsoft | autoupdate | Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43492 | 2024-09-18 22:57 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313417 | 7.3 |
HIGH
Local |
microsoft |
windows_11_22h2 windows_server_2022_23h2 windows_11_23h2 |
Windows libarchive Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43495 | 2024-09-18 22:55 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313418 | 7.8 |
HIGH
Local |
android | there is a possible escalation of privilege due to an unusual root cause. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not need… |
NVD-CWE-noinfo
|
CVE-2024-29779 | 2024-09-18 22:52 | 2024-09-14 | Show | GitHub Exploit DB Packet Storm | |
| 313419 | 7.8 |
HIGH
Local |
android | In TBD of TBD, there is a possible LCS signing enforcement missing due to test/debugging code left in a production build. This could lead to local escalation of privilege with no additional executio… |
NVD-CWE-noinfo
|
CVE-2024-44092 | 2024-09-18 22:51 | 2024-09-14 | Show | GitHub Exploit DB Packet Storm | |
| 313420 | 7.8 |
HIGH
Local |
android | In ppmp_unprotect_buf of drm/code/drm_fw.c, there is a possible memory corruption due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privi… |
CWE-787
Out-of-bounds Write |
CVE-2024-44093 | 2024-09-18 22:42 | 2024-09-14 | Show | GitHub Exploit DB Packet Storm |