|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 19, 2026, noon
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 2731 | 7.5 |
重要
Network |
Patrick Juchli (patrickjuchli) | Basic FTP | Patrick Juchli (patrickjuchli)のBasic FTPにおける複数の脆弱性 |
CWE-400 CWE-770 |
CVE-2026-41324 | 2026-04-30 12:26 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 2732 | 8.8 |
重要
Network |
getkirby | kirby | getkirbyのkirbyにおける不正な認証に関する脆弱性 |
CWE-863
不正な認証 |
CVE-2026-41325 | 2026-04-30 12:26 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 2733 | 9.9 |
緊急
Network |
OpenClaw | OpenClaw | OpenClawにおける特権 API の不適切な使用に関する脆弱性 |
CWE-648
特権 API の不適切な使用 |
CVE-2026-41329 | 2026-04-30 12:26 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 2734 | 4.4 |
警告
Local |
OpenClaw | OpenClaw | OpenClawにおける変数の安全ではないデフォルト値への初期化に関する脆弱性 |
CWE-453
変数の安全ではないデフォルト値への初期化 |
CVE-2026-41330 | 2026-04-30 12:26 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 2735 | 9.8 |
緊急
Network |
socialengine | socialengine | socialengineにおけるSQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2026-41460 | 2026-04-30 12:26 | 2026-04-23 | Show | GitHub Exploit DB Packet Storm |
| 2736 | 8.5 |
重要
Network |
socialengine | socialengine | socialengineにおけるサーバサイドのリクエストフォージェリの脆弱性 |
CWE-918
サーバサイドリクエストフォージェリ |
CVE-2026-41461 | 2026-04-30 12:26 | 2026-04-23 | Show | GitHub Exploit DB Packet Storm |
| 2737 | 7.7 |
重要
Network |
The Kyverno Authors | Kyverno | The Kyverno AuthorsのKyvernoにおける到達可能なアサーションに関する脆弱性 |
CWE-617
到達可能なアサーション |
CVE-2026-41485 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 2738 | 4 |
警告
Local |
The GnuPG Project | Libgcrypt | The GnuPG ProjectのLibgcryptにおける境界外書き込みに関する脆弱性 |
CWE-787
境界外書き込み |
CVE-2026-41990 | 2026-04-30 12:25 | 2026-04-23 | Show | GitHub Exploit DB Packet Storm |
| 2739 | 7.4 |
重要
Network |
axios project | axios | axios projectのaxiosにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 |
CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染) |
CVE-2026-42033 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 2740 | 5.3 |
警告
Network |
axios project | axios | axios projectのaxiosにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 |
CWE-770
制限またはスロットリング無しのリソースの割り当て |
CVE-2026-42034 | 2026-04-30 12:25 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 19, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 314011 | 4.3 |
MEDIUM
Network |
loway | queuemetrics | Loway - CWE-444: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') |
CWE-444
HTTP Request Smuggling |
CVE-2024-42342 | 2024-09-12 00:56 | 2024-09-8 | Show | GitHub Exploit DB Packet Storm |
| 314012 | 5.5 |
MEDIUM
Local |
linux | linux_kernel | In the Linux kernel, the following vulnerability has been resolved: drm/i915/gt: Cleanup partial engine discovery failures If we abort driver initialisation in the middle of gt/engine discovery, so… |
CWE-459
Incomplete Cleanup |
CVE-2022-48893 | 2024-09-12 00:55 | 2024-08-21 | Show | GitHub Exploit DB Packet Storm |
| 314013 | 6.5 |
MEDIUM
Network |
learningdigital | orca_hcm | Orca HCM from LEARNING DIGITA does not properly restrict a specific parameter of the file download functionality, allowing a remote attacker with regular privileges to download arbitrary system files. |
CWE-22
Path Traversal |
CVE-2024-8585 | 2024-09-12 00:53 | 2024-09-9 | Show | GitHub Exploit DB Packet Storm |
| 314014 | 7.8 |
HIGH
Local |
iobit | driver_booster | A vulnerability was found in IObit Driver Booster 11.0.0.0. It has been rated as critical. Affected by this issue is some unknown functionality in the library VCL120.BPL of the component BPL Handler.… |
CWE-427
Uncontrolled Search Path Element |
CVE-2024-7325 | 2024-09-12 00:42 | 2024-08-1 | Show | GitHub Exploit DB Packet Storm |
| 314015 | 5.5 |
MEDIUM
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1380_firmware exynos_1330_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Mobile Processor, Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi… |
CWE-125
Out-of-bounds Read |
CVE-2024-27364 | 2024-09-12 00:27 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314016 | 5.5 |
MEDIUM
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1380_firmware exynos_1330_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor Exynos Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the… |
CWE-125
Out-of-bounds Read |
CVE-2024-27367 | 2024-09-12 00:26 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314017 | 5.5 |
MEDIUM
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1380_firmware exynos_1330_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor, Wearable Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In th… |
CWE-125
Out-of-bounds Read |
CVE-2024-27366 | 2024-09-12 00:26 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314018 | 7.8 |
HIGH
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1330_firmware exynos_1380_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_get_scan_extra_ies(), there is no input validation check on… |
CWE-787
Out-of-bounds Write |
CVE-2024-27383 | 2024-09-12 00:25 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314019 | 5.5 |
MEDIUM
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1380_firmware exynos_1330_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor Exynos Mobile Processor, Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, E… |
CWE-125
Out-of-bounds Read |
CVE-2024-27368 | 2024-09-12 00:25 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314020 | 7.8 |
HIGH
Local |
samsung |
exynos_1080_firmware exynos_1280_firmware exynos_1330_firmware exynos_1380_firmware exynos_1480_firmware exynos_850_firmware exynos_980_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_rx_range_done_ind(), there is no input validation check on … |
CWE-787
Out-of-bounds Write |
CVE-2024-27387 | 2024-09-12 00:23 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |