Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2761 3.7
Network
Smallstep Step CA SmallstepのStep CAにおける配列インデックスの検証に関する脆弱性 CWE-129
配列インデックスの不適切な検証
CVE-2026-40097 2026-04-28 10:11 2026-04-10 Show GitHub Exploit DB Packet Storm
2762 8.2 重要
Network
Saltcorn Saltcorn Saltcornにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-40163 2026-04-28 10:11 2026-04-10 Show GitHub Exploit DB Packet Storm
2763 6.1 警告
Network
AdonisJS adonisjs/http-server
AdonisJS Core
AdonisJSのAdonisJS Core等の複数製品におけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-40255 2026-04-28 10:11 2026-04-16 Show GitHub Exploit DB Packet Storm
2764 9.3 緊急
Local
MinecAnton209 NovumOS MinecAnton209のNovumOSにおける複数の脆弱性 CWE-20
CWE-269
CVE-2026-40317 2026-04-28 10:11 2026-04-18 Show GitHub Exploit DB Packet Storm
2765 9 緊急
Local
MinecAnton209 NovumOS MinecAnton209のNovumOSにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-40572 2026-04-28 10:10 2026-04-18 Show GitHub Exploit DB Packet Storm
2766 - - (複数のベンダ) (複数の製品) CISA ICS Advisory / ICS Medical Advisory(2026年04月23日) - - 2026-04-27 13:37 2026-04-24 Show GitHub Exploit DB Packet Storm
2767 7.8 重要
Local
Giskard Giskard Giskardにおけるテンプレートエンジンで使用される特殊な要素の不適切な無効化に関する脆弱性 CWE-1336
テンプレートエンジンで使用される特殊な要素の不適切な無効化
CVE-2026-40320 2026-04-27 11:29 2026-04-17 Show GitHub Exploit DB Packet Storm
2768 7.5 重要
Network
monetr monetr monetrにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-40481 2026-04-27 11:29 2026-04-17 Show GitHub Exploit DB Packet Storm
2769 5.5 警告
Local
HKUDS OpenHarness HKUDSのOpenHarnessにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-40515 2026-04-27 11:29 2026-04-17 Show GitHub Exploit DB Packet Storm
2770 6.3 警告
Local
HKUDS OpenHarness HKUDSのOpenHarnessにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-40516 2026-04-27 11:29 2026-04-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314251 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: md/raid5: avoid BUG_ON() while continue reshape after reassembling Currently, mdadm support --revert-reshape to abort the reshape… NVD-CWE-noinfo
CVE-2024-43914 2024-09-6 03:03 2024-08-26 Show GitHub Exploit DB Packet Storm
314252 4.6 MEDIUM
Physics
samsung android Improper input validation in ThemeCenter prior to SMR Sep-2024 Release 1 allows physical attackers to install privileged applications. NVD-CWE-noinfo
CVE-2024-34645 2024-09-6 03:02 2024-09-4 Show GitHub Exploit DB Packet Storm
314253 5.5 MEDIUM
Local
samsung android Improper access control in DualDarManagerProxy prior to SMR Sep-2024 Release 1 allows local attackers to cause local permanent denial of service. NVD-CWE-Other
CVE-2024-34646 2024-09-6 03:01 2024-09-4 Show GitHub Exploit DB Packet Storm
314254 5.5 MEDIUM
Local
samsung android Incorrect use of privileged API in UniversalCredentialManager prior to SMR Sep-2024 Release 1 allows local attackers to access privileged API related to UniversalCredentialManager. NVD-CWE-noinfo
CVE-2024-34655 2024-09-6 03:00 2024-09-4 Show GitHub Exploit DB Packet Storm
314255 5.5 MEDIUM
Local
samsung android Improper Export of android application component in My Files prior to SMR Sep-2024 Release 1 allows local attackers to access files with My Files' privilege. NVD-CWE-noinfo
CVE-2024-34654 2024-09-6 03:00 2024-09-4 Show GitHub Exploit DB Packet Storm
314256 5.5 MEDIUM
Local
samsung android Incorrect use of privileged API in DualDarManagerProxy prior to SMR Sep-2024 Release 1 allows local attackers to access privileged APIs related to knox without proper license. NVD-CWE-noinfo
CVE-2024-34647 2024-09-6 03:00 2024-09-4 Show GitHub Exploit DB Packet Storm
314257 3.3 LOW
Local
samsung android Incorrect authorization in kperfmon prior to SMR Sep-2024 Release 1 allows local attackers to access information related to performance including app usage. CWE-863
 Incorrect Authorization
CVE-2024-34652 2024-09-6 02:59 2024-09-4 Show GitHub Exploit DB Packet Storm
314258 5.5 MEDIUM
Local
samsung android Improper authorization in My Files prior to SMR Sep-2024 Release 1 allows local attackers to access restricted data in My Files. CWE-863
 Incorrect Authorization
CVE-2024-34651 2024-09-6 02:59 2024-09-4 Show GitHub Exploit DB Packet Storm
314259 3.3 LOW
Local
samsung android Incorrect authorization in CocktailbarService prior to SMR Sep-2024 Release 1 allows local attackers to access privileged APIs related to Edge panel. CWE-863
 Incorrect Authorization
CVE-2024-34650 2024-09-6 02:59 2024-09-4 Show GitHub Exploit DB Packet Storm
314260 2.4 LOW
Physics
samsung android Improper access control in new Dex Mode in multitasking framework prior to SMR Sep-2024 Release 1 allows physical attackers to temporarily access an unlocked screen. NVD-CWE-Other
CVE-2024-34649 2024-09-6 02:59 2024-09-4 Show GitHub Exploit DB Packet Storm