|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 23, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 2811 | 6.3 |
警告
Local |
Uutils | uutils coreutils | Uutilsのuutils coreutilsにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 |
CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態 |
CVE-2026-35374 | 2026-05-7 11:26 | 2026-04-22 | Show | GitHub Exploit DB Packet Storm |
| 2812 | 3.3 |
低
Local |
Uutils | uutils coreutils | Uutilsのuutils coreutilsにおけるUnicode エンコーディングの処理に関する脆弱性 |
CWE-176
Unicode エンコーディングの不適切な処理 |
CVE-2026-35375 | 2026-05-7 11:26 | 2026-04-22 | Show | GitHub Exploit DB Packet Storm |
| 2813 | 5.8 |
警告
Local |
Uutils | uutils coreutils | Uutilsのuutils coreutilsにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 |
CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態 |
CVE-2026-35376 | 2026-05-7 11:26 | 2026-04-22 | Show | GitHub Exploit DB Packet Storm |
| 2814 | 8.8 |
重要
Network |
DBitNet | N300 T1 Pro ファームウェア | DBitNetのN300 T1 Pro ファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2026-36956 | 2026-05-7 11:26 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 2815 | 7.5 |
重要
Network |
DBitNet | N300 T1 Pro ファームウェア | DBitNetのN300 T1 Pro ファームウェアにおけるリソースの枯渇に関する脆弱性 |
CWE-400
リソースの枯渇 |
CVE-2026-36957 | 2026-05-7 11:26 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 2816 | 4.4 |
警告
Local |
Absolute Software | secure access | Absolute Softwareのsecure accessにおけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-121
スタックオーバーフロー |
CVE-2026-40949 | 2026-05-7 11:26 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 2817 | 6.5 |
警告
Network |
Absolute Software | secure access | Absolute Softwareのsecure accessにおけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-121
スタックオーバーフロー |
CVE-2026-40950 | 2026-05-7 11:26 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 2818 | 5.5 |
警告
Local |
Absolute Software | secure access | Absolute Softwareのsecure accessにおけるリソースの枯渇に関する脆弱性 |
CWE-400
リソースの枯渇 |
CVE-2026-40951 | 2026-05-7 11:26 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 2819 | 9.8 |
緊急
Network |
flowiseai | flowise | flowiseaiのflowiseにおけるデータクエリロジックの特殊要素の不適切な中立化に関する脆弱性 |
CWE-943
データクエリロジックの特殊要素の不適切な中立化 |
CVE-2026-41274 | 2026-05-7 11:26 | 2026-04-23 | Show | GitHub Exploit DB Packet Storm |
| 2820 | 7.5 |
重要
Network |
JetBrains | IntelliJ IDEA | JetBrainsのIntelliJ IDEAにおけるリンク解釈に関する脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2026-41882 | 2026-05-7 11:26 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 23, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 313601 | 9.8 |
CRITICAL
Network |
dlink | dar-7000_firmware | A vulnerability classified as critical has been found in D-Link DAR-7000 up to 20240912. Affected is an unknown function of the file /view/DBManage/Backup_Server_commit.php. The manipulation of the a… |
CWE-78
OS Command |
CVE-2024-9004 | 2024-09-24 02:29 | 2024-09-20 | Show | GitHub Exploit DB Packet Storm |
| 313602 | 8.8 |
HIGH
Network |
microsoft |
sql_2016_azure_connect_feature_pack sql_server_2016 sql_server_2017 sql_server_2019 sql_server_2022 |
Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-37340 | 2024-09-24 02:08 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313603 | 8.8 |
HIGH
Network |
microsoft |
sql_2016_azure_connect_feature_pack sql_server_2016 sql_server_2017 sql_server_2019 sql_server_2022 |
Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-37338 | 2024-09-24 02:04 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313604 | 4.3 |
MEDIUM
Network |
microsoft |
sql_2016_azure_connect_feature_pack sql_server_2016 sql_server_2017 sql_server_2019 sql_server_2022 |
Microsoft SQL Server Native Scoring Information Disclosure Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-37337 | 2024-09-24 02:00 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313605 | 8.8 |
HIGH
Network |
microsoft |
sql_2016_azure_connect_feature_pack sql_server_2016 sql_server_2017 sql_server_2019 sql_server_2022 |
Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-37335 | 2024-09-24 01:58 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313606 | 9.8 |
CRITICAL
Network |
fabianros | hospital_management_system | A vulnerability, which was classified as critical, was found in code-projects Hospital Management System 1.0. This affects an unknown part of the file check_availability.php. The manipulation of the … |
CWE-89
SQL Injection |
CVE-2024-8944 | 2024-09-24 01:56 | 2024-09-18 | Show | GitHub Exploit DB Packet Storm |
| 313607 | 5.5 |
MEDIUM
Local |
linux | linux_kernel | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check denominator crb_pipes before used [WHAT & HOW] A denominator cannot be 0, and is checked before used. Thi… |
CWE-369
Divide By Zero |
CVE-2024-46772 | 2024-09-24 01:52 | 2024-09-18 | Show | GitHub Exploit DB Packet Storm |
| 313608 | 5.5 |
MEDIUM
Local |
linux | linux_kernel | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check denominator pbn_div before used [WHAT & HOW] A denominator cannot be 0, and is checked before used. This … |
CWE-369
Divide By Zero |
CVE-2024-46773 | 2024-09-24 01:51 | 2024-09-18 | Show | GitHub Exploit DB Packet Storm |
| 313609 | 8.8 |
HIGH
Network |
microsoft |
sql_2016_azure_connect_feature_pack sql_server_2016 sql_server_2017 sql_server_2019 sql_server_2022 |
Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-26191 | 2024-09-24 01:51 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 313610 | 8.8 |
HIGH
Network |
microsoft |
sql_2016_azure_connect_feature_pack sql_server_2016 sql_server_2017 sql_server_2019 sql_server_2022 |
Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-26186 | 2024-09-24 01:48 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |