Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2571 5.5 警告
Local
Electron electron Electronのelectronにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-34764 2026-05-7 12:06 2026-04-6 Show GitHub Exploit DB Packet Storm
2572 10 緊急
Network
traefik traefik traefikにおけるデータの信頼性についての不十分な検証に関する脆弱性 CWE-345
データの信頼性についての不十分な検証
CVE-2026-35051 2026-05-7 12:06 2026-04-30 Show GitHub Exploit DB Packet Storm
2573 7.1 重要
Network
デル iDRAC10 Firmware デルのiDRAC10 Firmwareにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2026-35155 2026-05-7 12:06 2026-04-29 Show GitHub Exploit DB Packet Storm
2574 7.2 重要
Network
Progress Software Corporation ECS Connection Manager
loadmaster
Connection Manager for ObjectScale
Progress Software CorporationのConnection Manager for ObjectScale等の複数製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-3517 2026-05-7 12:06 2026-04-20 Show GitHub Exploit DB Packet Storm
2575 7.2 重要
Network
Progress Software Corporation ECS Connection Manager
loadmaster
Connection Manager for ObjectScale
Progress Software CorporationのConnection Manager for ObjectScale等の複数製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-3518 2026-05-7 12:06 2026-04-20 Show GitHub Exploit DB Packet Storm
2576 7.2 重要
Network
Progress Software Corporation ECS Connection Manager
loadmaster
Connection Manager for ObjectScale
Progress Software CorporationのConnection Manager for ObjectScale等の複数製品におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-3519 2026-05-7 12:06 2026-04-20 Show GitHub Exploit DB Packet Storm
2577 8.1 重要
Network
FreeBSD FreeBSD FreeBSDにおける複数の脆弱性 CWE-122
CWE-130
CVE-2026-35547 2026-05-7 12:06 2026-04-30 Show GitHub Exploit DB Packet Storm
2578 7.5 重要
Network
libsndfile project libsndfile libsndfile projectのlibsndfileにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-37555 2026-05-7 12:06 2026-04-29 Show GitHub Exploit DB Packet Storm
2579 6.5 警告
Network
Grokability, Inc. Snipe-IT Grokability, Inc.のSnipe-ITにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-38533 2026-05-7 12:05 2026-04-14 Show GitHub Exploit DB Packet Storm
2580 7.5 重要
Network
Apache Software Foundation ActiveMQ Broker
Apache ActiveMQ
Apache Software FoundationのApache ActiveMQ等の複数製品におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-39304 2026-05-7 12:05 2026-04-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1461 - - - An unchecked return value within the AMD Platform Management Framework (PMF) could allow an attacker to write to an arbitrary memory address resulting in denial of service or arbitrary code execution. CWE-252
 Unchecked Return Value
CVE-2025-29938 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1462 - - - A buffer overflow vulnerability within AMD Sensor Fusion Hub Driver can allow a local attacker to write out of bounds, potentially resulting in denial of service or crash CWE-120
Classic Buffer Overflow
CVE-2025-29944 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1463 - - - Use of uninitialized resource within the AMD Platform Management Framework (PMF) could allow an attacker to read a uninitialized kernel memory resulting in loss of confidentiality or availability. CWE-908
 Use of Uninitialized Resource
CVE-2025-48513 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1464 - - - Insecure default configuration state of DDR5 memory module by AGESA Bootloader Firmware could allow an attacker with local user privilege to abuse the unprotected PMIC interface to create a permanent… CWE-276
Incorrect Default Permissions 
CVE-2025-48516 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1465 - - - Improper handling of insufficient privileges in the AMD Secure Processor (ASP) could allow an attacker to provide an input value to a function without sufficient privileges and successfully write dat… CWE-274
 Improper Handling of Insufficient Privileges
CVE-2025-54511 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1466 - - - Out of bounds write in AMD AMDGV_CMD_GET_DIAG_DATA ioctl handler could allow a local user to escalate privileges via remote code execution. CWE-787
 Out-of-bounds Write
CVE-2025-54517 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1467 - - - Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_CHECK_TA_COMPAT to cause incorrect shared memory mapping, potentially resulting… CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2025-66660 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1468 - - - Insufficient parameter sanitization in AMD Secure Processor (ASP) TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_LOAD_GFX_IP_FW SR-IOV command to cause out-of-bounds read,… CWE-125
Out-of-bounds Read
CVE-2025-66664 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1469 - - - Improper cleanup of shared register resources in GPU firmware could allow an admin-privileged attacker from a Guest Virtual machine (VM) to access these shared resources from another Guest VM, potent… CWE-459
 Incomplete Cleanup
CVE-2026-0427 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm
1470 - - - Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_COPY_VF_CHIPLET_REGS to write invalid data to a remote Die, potentially resulti… CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2026-0428 2026-05-15 23:10 2026-05-15 Show GitHub Exploit DB Packet Storm