Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2571 6.8 警告
Network
Weblate Weblate Weblateにおける複数の脆弱性 CWE-200
CWE-22
CVE-2026-33220 2026-04-23 10:13 2026-04-15 Show GitHub Exploit DB Packet Storm
2572 8 重要
Network
Weblate Weblate Weblateにおける複数の脆弱性 CWE-23
CWE-434
CWE-94
CVE-2026-33435 2026-04-23 10:13 2026-04-15 Show GitHub Exploit DB Packet Storm
2573 5 警告
Network
Weblate Weblate Weblateにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-33440 2026-04-23 10:13 2026-04-15 Show GitHub Exploit DB Packet Storm
2574 4.3 警告
Network
Elasticsearch B.V. Kibana Elasticsearch B.V.のKibanaにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-33460 2026-04-23 10:13 2026-04-8 Show GitHub Exploit DB Packet Storm
2575 9.8 緊急
Network
Elasticsearch B.V. Logstash Elasticsearch B.V.のLogstashにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-33466 2026-04-23 10:13 2026-04-8 Show GitHub Exploit DB Packet Storm
2576 4.3 警告
Network
EspoCRM EspoCRM EspoCRMにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-33534 2026-04-23 10:13 2026-04-13 Show GitHub Exploit DB Packet Storm
2577 7.8 重要
Local
Craig J. Bass (craigjbass) ClearanceKit Craig J. Bass (craigjbass)のClearanceKitにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-33632 2026-04-23 10:13 2026-03-26 Show GitHub Exploit DB Packet Storm
2578 5.4 警告
Network
EspoCRM EspoCRM EspoCRMにおける複数の脆弱性 CWE-116
CWE-80
CVE-2026-33657 2026-04-23 10:13 2026-04-13 Show GitHub Exploit DB Packet Storm
2579 3.1
Network
EspoCRM EspoCRM EspoCRMにおける複数の脆弱性 CWE-367
CWE-918
CVE-2026-33659 2026-04-23 10:12 2026-04-13 Show GitHub Exploit DB Packet Storm
2580 5.4 警告
Network
EspoCRM EspoCRM EspoCRMにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-33740 2026-04-23 10:12 2026-04-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
51 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: pstore: ram_core: fix incorrect success return when vmap() fails In persistent_ram_vmap(), vmap() may return NULL on failure. If… New CWE-476
 NULL Pointer Dereference
CVE-2026-43124 2026-05-9 03:02 2026-05-6 Show GitHub Exploit DB Packet Storm
52 5.3 MEDIUM
Network
zfnd zebra-chain
zebra-network
zebrad
ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad version 4.4.0, prior to zebra-chain version 7.0.0, and prior to zebra-network version 6.0.0, several inbound deserialization paths in Z… New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-44500 2026-05-9 03:01 2026-05-9 Show GitHub Exploit DB Packet Storm
53 8.8 HIGH
Adjacent
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: wifi: wl1251: validate packet IDs before indexing tx_frames wl1251_tx_packet_cb() uses the firmware completion ID directly to ind… New CWE-476
 NULL Pointer Dereference
CVE-2026-43113 2026-05-9 02:58 2026-05-6 Show GitHub Exploit DB Packet Storm
54 9.8 CRITICAL
Network
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: dlm: validate length in dlm_search_rsb_tree The len parameter in dlm_dump_rsb_name() is not validated and comes from network mess… New CWE-787
 Out-of-bounds Write
CVE-2026-43125 2026-05-9 02:57 2026-05-6 Show GitHub Exploit DB Packet Storm
55 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ALSA: mixer: oss: Add card disconnect checkpoints ALSA OSS mixer layer calls the kcontrol ops rather individually, and pending ca… New NVD-CWE-noinfo
CVE-2026-43126 2026-05-9 02:56 2026-05-6 Show GitHub Exploit DB Packet Storm
56 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ntfs3: fix circular locking dependency in run_unpack_ex Syzbot reported a circular locking dependency between wnd->rw_lock (sbi->… New CWE-667
 Improper Locking
CVE-2026-43127 2026-05-9 02:54 2026-05-6 Show GitHub Exploit DB Packet Storm
57 9.4 CRITICAL
Network
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo_avx2: don't return non-matching entry on expiry New test case fails unexpectedly when avx2 matching fun… New NVD-CWE-noinfo
CVE-2026-43114 2026-05-9 02:54 2026-05-6 Show GitHub Exploit DB Packet Storm
58 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: RDMA/umem: Fix double dma_buf_unpin in failure path In ib_umem_dmabuf_get_pinned_with_dma_device(), the call to ib_umem_dmabuf_ma… New CWE-415
 Double Free
CVE-2026-43128 2026-05-9 02:52 2026-05-6 Show GitHub Exploit DB Packet Storm
59 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: srcu: Use irq_work to start GP in tiny SRCU Tiny SRCU's srcu_gp_start_if_needed() directly calls schedule_work(), which acquires … New NVD-CWE-noinfo
CVE-2026-43115 2026-05-9 02:51 2026-05-6 Show GitHub Exploit DB Packet Storm
60 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: ensure safe access to master conntrack Holding reference on the expectation is not sufficient, the master c… New CWE-362
Race Condition
CVE-2026-43116 2026-05-9 02:49 2026-05-6 Show GitHub Exploit DB Packet Storm