|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 19, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 2761 | 9 |
緊急
Network |
craftycontrol | crafty controller | craftycontrolのcrafty controllerにおけるユーザ制御の鍵による認証回避に関する脆弱性 |
CWE-639
ユーザ制御の鍵による認証回避 |
CVE-2026-5652 | 2026-04-30 12:24 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 2762 | 7.5 |
重要
Network |
HashiCorp | Vault | HashiCorpのVaultにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 |
CWE-770
制限またはスロットリング無しのリソースの割り当て |
CVE-2026-5807 | 2026-04-30 12:24 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 2763 | 7.1 |
重要
Local |
radare | radare2 | radareのradare2におけるパストラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2026-6940 | 2026-04-30 12:24 | 2026-04-23 | Show | GitHub Exploit DB Packet Storm |
| 2764 | 7.8 |
重要
Local |
radare | radare2 | radareのradare2における複数の脆弱性 |
CWE-22 CWE-59 |
CVE-2026-6941 | 2026-04-30 12:24 | 2026-04-23 | Show | GitHub Exploit DB Packet Storm |
| 2765 | 7.5 |
重要
Network |
Sgbett | BSV Ruby SDK (bsv-sdk) | SgbettのBSV Ruby SDK (bsv-sdk)における例外的な状態のチェックに関する脆弱性 |
CWE-754
例外的な状態における不適切なチェック |
CVE-2026-40069 | 2026-04-30 12:18 | 2026-04-9 | Show | GitHub Exploit DB Packet Storm |
| 2766 | 5.3 |
警告
Network |
SenseLive | X3500 Firmware | SenseLiveのX3500 Firmwareにおける重要な情報の平文での送信に関する脆弱性 |
CWE-319
重要な情報の平文での送信 |
CVE-2026-40431 | 2026-04-30 12:18 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 2767 | 9.8 |
緊急
Network |
SenseLive | X3500 Firmware | SenseLiveのX3500 Firmwareにおける重要な機能に対する認証の欠如に関する脆弱性 |
CWE-306
重要な機能に対する認証の欠如 解説 |
CVE-2026-40620 | 2026-04-30 12:18 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 2768 | 8.1 |
重要
Network |
SenseLive | X3500 Firmware | SenseLiveのX3500 Firmwareにおける認証の欠如に関する脆弱性 |
CWE-862
認証の欠如 |
CVE-2026-40623 | 2026-04-30 12:18 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 2769 | 9.8 |
緊急
Network |
SenseLive | X3500 Firmware | SenseLiveのX3500 Firmwareにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 |
CWE-288
代替パスまたはチャネルを使用した認証回避 |
CVE-2026-40630 | 2026-04-30 12:18 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
| 2770 | 5.3 |
警告
Network |
opentelemetry |
opentelemetry OpenTelemetry.Extensions.Propagators Opentelemetry.api |
opentelemetryのOpentelemetry.api等の複数製品における過剰なサイズ値のメモリ割り当てに関する脆弱性 |
CWE-789
過剰なサイズ値のメモリ割り当て |
CVE-2026-40894 | 2026-04-30 12:18 | 2026-04-23 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 19, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 314011 | 4.3 |
MEDIUM
Network |
loway | queuemetrics | Loway - CWE-444: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') |
CWE-444
HTTP Request Smuggling |
CVE-2024-42342 | 2024-09-12 00:56 | 2024-09-8 | Show | GitHub Exploit DB Packet Storm |
| 314012 | 5.5 |
MEDIUM
Local |
linux | linux_kernel | In the Linux kernel, the following vulnerability has been resolved: drm/i915/gt: Cleanup partial engine discovery failures If we abort driver initialisation in the middle of gt/engine discovery, so… |
CWE-459
Incomplete Cleanup |
CVE-2022-48893 | 2024-09-12 00:55 | 2024-08-21 | Show | GitHub Exploit DB Packet Storm |
| 314013 | 6.5 |
MEDIUM
Network |
learningdigital | orca_hcm | Orca HCM from LEARNING DIGITA does not properly restrict a specific parameter of the file download functionality, allowing a remote attacker with regular privileges to download arbitrary system files. |
CWE-22
Path Traversal |
CVE-2024-8585 | 2024-09-12 00:53 | 2024-09-9 | Show | GitHub Exploit DB Packet Storm |
| 314014 | 7.8 |
HIGH
Local |
iobit | driver_booster | A vulnerability was found in IObit Driver Booster 11.0.0.0. It has been rated as critical. Affected by this issue is some unknown functionality in the library VCL120.BPL of the component BPL Handler.… |
CWE-427
Uncontrolled Search Path Element |
CVE-2024-7325 | 2024-09-12 00:42 | 2024-08-1 | Show | GitHub Exploit DB Packet Storm |
| 314015 | 5.5 |
MEDIUM
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1380_firmware exynos_1330_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Mobile Processor, Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi… |
CWE-125
Out-of-bounds Read |
CVE-2024-27364 | 2024-09-12 00:27 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314016 | 5.5 |
MEDIUM
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1380_firmware exynos_1330_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor Exynos Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the… |
CWE-125
Out-of-bounds Read |
CVE-2024-27367 | 2024-09-12 00:26 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314017 | 5.5 |
MEDIUM
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1380_firmware exynos_1330_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor, Wearable Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In th… |
CWE-125
Out-of-bounds Read |
CVE-2024-27366 | 2024-09-12 00:26 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314018 | 7.8 |
HIGH
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1330_firmware exynos_1380_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_get_scan_extra_ies(), there is no input validation check on… |
CWE-787
Out-of-bounds Write |
CVE-2024-27383 | 2024-09-12 00:25 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314019 | 5.5 |
MEDIUM
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1380_firmware exynos_1330_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor Exynos Mobile Processor, Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, E… |
CWE-125
Out-of-bounds Read |
CVE-2024-27368 | 2024-09-12 00:25 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314020 | 7.8 |
HIGH
Local |
samsung |
exynos_1080_firmware exynos_1280_firmware exynos_1330_firmware exynos_1380_firmware exynos_1480_firmware exynos_850_firmware exynos_980_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_rx_range_done_ind(), there is no input validation check on … |
CWE-787
Out-of-bounds Write |
CVE-2024-27387 | 2024-09-12 00:23 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |