Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2321 7.5 重要
Network
Linaro OP-TEE Trusted OS LinaroのOP-TEE Trusted OSにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-33662 2026-04-30 11:03 2026-04-24 Show GitHub Exploit DB Packet Storm
2322 7.4 重要
Network
OpenProject OpenProject OpenProjectにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2026-33667 2026-04-30 11:03 2026-04-15 Show GitHub Exploit DB Packet Storm
2323 6.7 警告
Local
デル data domain operating system デルのdata domain operating systemにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-35154 2026-04-30 11:03 2026-04-20 Show GitHub Exploit DB Packet Storm
2324 3.3
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおける指定された機能の不適切な提供に関する脆弱性 CWE-684
指定された機能の不適切な提供
CVE-2026-35379 2026-04-30 11:03 2026-04-22 Show GitHub Exploit DB Packet Storm
2325 5.5 警告
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおける入力確認に関する脆弱性 CWE-20
CWE-noinfo
CVE-2026-35380 2026-04-30 11:03 2026-04-22 Show GitHub Exploit DB Packet Storm
2326 10 緊急
Network
マイクロソフト Microsoft Entra ID Microsoft Entra ID Entitlement Management Spoofing Vulnerability CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-35431 2026-04-30 11:03 2026-04-23 Show GitHub Exploit DB Packet Storm
2327 5.3 警告
Network
oobabooga TextGen oobaboogaのTextGenにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-35484 2026-04-30 11:03 2026-04-7 Show GitHub Exploit DB Packet Storm
2328 7.5 重要
Network
oobabooga TextGen oobaboogaのTextGenにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-35485 2026-04-30 11:03 2026-04-7 Show GitHub Exploit DB Packet Storm
2329 8.8 重要
Network
Pi-hole FTLDNS Pi-holeのFTLDNSにおける複数の脆弱性 CWE-78
CWE-93
CVE-2026-35517 2026-04-30 11:03 2026-04-7 Show GitHub Exploit DB Packet Storm
2330 8.8 重要
Network
Pi-hole FTLDNS Pi-holeのFTLDNSにおける複数の脆弱性 CWE-78
CWE-93
CVE-2026-35518 2026-04-30 11:03 2026-04-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313901 4.9 MEDIUM
Network
zyxel zld_firmware A buffer overflow vulnerability in the CGI program of Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series fi… CWE-120
Classic Buffer Overflow
CVE-2024-6343 2024-09-5 23:35 2024-09-3 Show GitHub Exploit DB Packet Storm
313902 7.2 HIGH
Network
zyxel zld_firmware A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4.60 through V5.38 and USG FLEX series firmware versions from V4.60 through V5.38 could allow an auth… CWE-78
OS Command 
CVE-2024-7203 2024-09-5 23:33 2024-09-3 Show GitHub Exploit DB Packet Storm
313903 6.1 MEDIUM
Network
zyxel zld_firmware A reflected cross-site scripting (XSS) vulnerability in the CGI program "dynamic_script.cgi" of Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.… CWE-79
Cross-site Scripting
CVE-2024-42061 2024-09-5 23:32 2024-09-3 Show GitHub Exploit DB Packet Storm
313904 9.8 CRITICAL
Network
linen linen Linen before cd37c3e does not verify that the domain is linen.dev or www.linen.dev when resetting a password. This occurs in create in apps/web/pages/api/forgot-password/index.ts. NVD-CWE-Other
CVE-2024-45522 2024-09-5 23:29 2024-09-2 Show GitHub Exploit DB Packet Storm
313905 7.5 HIGH
Network
linuxfoundation
rdkcentral
google
yocto
rdk-b
android
In wlan, there is a possible denial of service due to incorrect error handling. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not nee… CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2024-20089 2024-09-5 23:28 2024-09-2 Show GitHub Exploit DB Packet Storm
313906 4.4 MEDIUM
Local
google android In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not n… CWE-125
Out-of-bounds Read
CVE-2024-20088 2024-09-5 23:27 2024-09-2 Show GitHub Exploit DB Packet Storm
313907 6.7 MEDIUM
Local
google android In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not neede… CWE-787
 Out-of-bounds Write
CVE-2024-20087 2024-09-5 23:26 2024-09-2 Show GitHub Exploit DB Packet Storm
313908 6.7 MEDIUM
Local
google android In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not neede… CWE-787
 Out-of-bounds Write
CVE-2024-20086 2024-09-5 23:26 2024-09-2 Show GitHub Exploit DB Packet Storm
313909 7.5 HIGH
Network
abcd-community abcd A vulnerability classified as problematic was found in ABCD ABCD2 up to 2.2.0-beta-1. This vulnerability affects unknown code of the file /abcd/opac/php/otros_sitios.php. The manipulation of the argu… CWE-22
Path Traversal
CVE-2024-8410 2024-09-5 23:20 2024-09-5 Show GitHub Exploit DB Packet Storm
313910 7.5 HIGH
Network
abcd-community abcd A vulnerability classified as problematic has been found in ABCD ABCD2 up to 2.2.0-beta-1. This affects an unknown part of the file /common/show_image.php. The manipulation of the argument image lead… CWE-22
Path Traversal
CVE-2024-8409 2024-09-5 23:20 2024-09-5 Show GitHub Exploit DB Packet Storm