Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2481 8.2 重要
Network
Wazuh Inc. Wazuh Wazuh Inc.のWazuhにおける複数の脆弱性 CWE-121
CWE-400
CVE-2026-28221 2026-05-7 12:30 2026-04-29 Show GitHub Exploit DB Packet Storm
2482 9.9 緊急
Network
Wazuh Inc. Wazuh Wazuh Inc.のWazuhにおける複数の脆弱性 CWE-22
CWE-73
CVE-2026-30893 2026-05-7 12:30 2026-04-29 Show GitHub Exploit DB Packet Storm
2483 9 緊急
Network
angular Angular CLI angularのAngular CLIにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-32635 2026-05-7 12:30 2026-03-16 Show GitHub Exploit DB Packet Storm
2484 6.5 警告
Network
Ruby on Rails project rails Ruby on Rails projectのRailsにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-33658 2026-05-7 12:30 2026-03-26 Show GitHub Exploit DB Packet Storm
2485 9.8 緊急
Network
ggml.ai llama.cpp ggml.aiのllama.cppにおけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-34159 2026-05-7 12:30 2026-04-1 Show GitHub Exploit DB Packet Storm
2486 7.8 重要
Local
OpenClaw OpenClaw OpenClawにおける許容された入力値の許可リストに関する脆弱性 CWE-183
許容された入力値の許可リスト
CVE-2026-41387 2026-05-7 12:30 2026-04-28 Show GitHub Exploit DB Packet Storm
2487 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおける不完全な内部状態の区別に関する脆弱性 CWE-372
不完全な内部状態の区別
CVE-2026-41388 2026-05-7 12:30 2026-04-28 Show GitHub Exploit DB Packet Storm
2488 7.3 重要
Local
OpenClaw OpenClaw OpenClawにおけるセキュリティ決定の信頼できない入力への依存に関する脆弱性 CWE-807
セキュリティ決定の信頼できない入力への依存
CVE-2026-41390 2026-05-7 12:30 2026-04-28 Show GitHub Exploit DB Packet Storm
2489 6.1 警告
Local
OpenClaw OpenClaw OpenClawにおける不完全なブラックリストに関する脆弱性 CWE-184
不完全なブラックリスト
CVE-2026-41391 2026-05-7 12:30 2026-04-28 Show GitHub Exploit DB Packet Storm
2490 7.3 重要
Local
OpenClaw OpenClaw OpenClawにおける不完全なブラックリストに関する脆弱性 CWE-184
不完全なブラックリスト
CVE-2026-41392 2026-05-7 12:29 2026-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1451 - - - Use of uninitialized resource within the AMD Platform Management Framework (PMF) could allow an attacker to read a uninitialized kernel memory resulting in loss of confidentiality or availability. CWE-908
 Use of Uninitialized Resource
CVE-2025-48513 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1452 - - - Insecure default configuration state of DDR5 memory module by AGESA Bootloader Firmware could allow an attacker with local user privilege to abuse the unprotected PMIC interface to create a permanent… CWE-276
Incorrect Default Permissions 
CVE-2025-48516 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1453 - - - Improper handling of insufficient privileges in the AMD Secure Processor (ASP) could allow an attacker to provide an input value to a function without sufficient privileges and successfully write dat… CWE-274
 Improper Handling of Insufficient Privileges
CVE-2025-54511 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1454 - - - Out of bounds write in AMD AMDGV_CMD_GET_DIAG_DATA ioctl handler could allow a local user to escalate privileges via remote code execution. CWE-787
 Out-of-bounds Write
CVE-2025-54517 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1455 - - - Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_CHECK_TA_COMPAT to cause incorrect shared memory mapping, potentially resulting… CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2025-66660 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1456 - - - Insufficient parameter sanitization in AMD Secure Processor (ASP) TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_LOAD_GFX_IP_FW SR-IOV command to cause out-of-bounds read,… CWE-125
Out-of-bounds Read
CVE-2025-66664 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1457 - - - Improper cleanup of shared register resources in GPU firmware could allow an admin-privileged attacker from a Guest Virtual machine (VM) to access these shared resources from another Guest VM, potent… CWE-459
 Incomplete Cleanup
CVE-2026-0427 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1458 - - - Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_COPY_VF_CHIPLET_REGS to write invalid data to a remote Die, potentially resulti… CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2026-0428 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1459 - - - An out of bounds read in the remote management firmware could allow a privileged attacker read a limited section of memory outside of established bounds potentially resulting in loss of confidentiali… CWE-125
Out-of-bounds Read
CVE-2024-21950 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1460 - - - Improper isolation of VCN-JPEG HW register space could allow a malicious Guest Virtual Machine (VM) or a process to perform unauthorized access to the register space of the JPEG cores assigned a vict… CWE-284
Improper Access Control
CVE-2024-36323 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm