|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 19, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 2341 | 9.3 |
緊急
Network |
マイクロソフト | Microsoft 365 Copilot | Microsoft 365 Copilot の特権昇格の脆弱性 |
CWE-601
オープンリダイレクト |
CVE-2026-33102 | 2026-05-1 10:48 | 2026-04-23 | Show | GitHub Exploit DB Packet Storm |
| 2342 | 8.4 |
重要
Local |
マイクロソフト |
Microsoft 365 Apps Office Long Term Servicing Channel (LTSC) |
Microsoft Word のリモートでコードが実行される脆弱性 |
CWE-822
信頼性のないポインタデリファレンス |
CVE-2026-33114 | 2026-05-1 10:48 | 2026-04-14 | Show | GitHub Exploit DB Packet Storm |
| 2343 | 8.4 |
重要
Local |
マイクロソフト |
Microsoft 365 Apps Office Long Term Servicing Channel (LTSC) |
Microsoft Word のリモートでコードが実行される脆弱性 |
CWE-416
解放済みメモリの使用 |
CVE-2026-33115 | 2026-05-1 10:47 | 2026-04-14 | Show | GitHub Exploit DB Packet Storm |
| 2344 | 7.8 |
重要
Local |
ggml.ai | llama.cpp | ggml.aiのllama.cppにおける複数の脆弱性 |
CWE-122 CWE-190 |
CVE-2026-33298 | 2026-05-1 10:47 | 2026-03-24 | Show | GitHub Exploit DB Packet Storm |
| 2345 | 6.1 |
警告
Local |
マイクロソフト |
Microsoft 365 Apps Office Long Term Servicing Channel (LTSC) |
Microsoft Word の情報漏えいの脆弱性 |
CWE-125
境界外読み取り |
CVE-2026-33822 | 2026-05-1 10:47 | 2026-04-14 | Show | GitHub Exploit DB Packet Storm |
| 2346 | 5.2 |
警告
Physics |
wolfSSL Inc. | wolfSSL | wolfSSL Inc.のwolfSSLにおけるPRNG におけるシードの不正な使用に関する脆弱性 |
CWE-335
PRNGにおけるシードの不正な使用 |
CVE-2026-3503 | 2026-05-1 10:47 | 2026-03-19 | Show | GitHub Exploit DB Packet Storm |
| 2347 | 9.8 |
緊急
Network |
wolfSSL Inc. | wolfSSL | wolfSSL Inc.のwolfSSLにおける複数の脆弱性 |
CWE-122 CWE-787 CWE-787 |
CVE-2026-3548 | 2026-05-1 10:47 | 2026-03-19 | Show | GitHub Exploit DB Packet Storm |
| 2348 | 5.9 |
警告
Network |
VMware | Spring AI | VMwareのSpring AIにおけるアクセス制御に関する脆弱性 |
CWE-284
不適切なアクセス制御 |
CVE-2026-40966 | 2026-05-1 10:47 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
| 2349 | 8.6 |
重要
Network |
VMware | Spring AI | VMwareのSpring AIにおけるコードインジェクションの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2026-40967 | 2026-05-1 10:47 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
| 2350 | 7.5 |
重要
Adjacent |
VMware | Spring Boot | VMwareのSpring Bootにおけるタイミングの違いに起因する情報漏えいに関する脆弱性 |
CWE-208
タイミングの違いに起因する情報漏えい |
CVE-2026-40972 | 2026-05-1 10:47 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 19, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 313411 | 8.1 |
HIGH
Network |
microsoft |
windows_server_2019 windows_server_2022 windows_server_2022_23h2 windows_11_24h2 windows_10_22h2 windows_11_23h2 windows_11_22h2 windows_11_21h2 windows_10_1809 windows_10_… |
Windows TCP/IP Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38045 | 2024-09-19 00:04 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313412 | 8.8 |
HIGH
Network |
microsoft | sharepoint_server | Microsoft SharePoint Server Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38018 | 2024-09-19 00:04 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313413 | 7.8 |
HIGH
Local |
microsoft |
windows_10_1507 windows_server_2019 windows_server_2022 windows_server_2022_23h2 windows_11_24h2 windows_10_1607 windows_server_2016 windows_10_22h2 windows_11_23h2 windows… |
PowerShell Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38046 | 2024-09-19 00:02 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313414 | 6.5 |
MEDIUM
Network |
microsoft | outlook | Microsoft Outlook for iOS Information Disclosure Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43482 | 2024-09-18 23:11 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313415 | 6.5 |
MEDIUM
Network |
microsoft |
windows_server_2012 windows_10_1507 windows_10_1809 windows_server_2019 windows_10_21h2 windows_10_1607 windows_server_2016 windows_10_22h2 |
Windows Mark of the Web Security Feature Bypass Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43487 | 2024-09-18 23:10 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313416 | 7.8 |
HIGH
Local |
microsoft | autoupdate | Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43492 | 2024-09-18 22:57 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313417 | 7.3 |
HIGH
Local |
microsoft |
windows_11_22h2 windows_server_2022_23h2 windows_11_23h2 |
Windows libarchive Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43495 | 2024-09-18 22:55 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313418 | 7.8 |
HIGH
Local |
android | there is a possible escalation of privilege due to an unusual root cause. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not need… |
NVD-CWE-noinfo
|
CVE-2024-29779 | 2024-09-18 22:52 | 2024-09-14 | Show | GitHub Exploit DB Packet Storm | |
| 313419 | 7.8 |
HIGH
Local |
android | In TBD of TBD, there is a possible LCS signing enforcement missing due to test/debugging code left in a production build. This could lead to local escalation of privilege with no additional executio… |
NVD-CWE-noinfo
|
CVE-2024-44092 | 2024-09-18 22:51 | 2024-09-14 | Show | GitHub Exploit DB Packet Storm | |
| 313420 | 7.8 |
HIGH
Local |
android | In ppmp_unprotect_buf of drm/code/drm_fw.c, there is a possible memory corruption due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privi… |
CWE-787
Out-of-bounds Write |
CVE-2024-44093 | 2024-09-18 22:42 | 2024-09-14 | Show | GitHub Exploit DB Packet Storm |