Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2811 6.1 警告
Network
NetFoundry zrok NetFoundryのzrokにおける複数の脆弱性 CWE-116
CWE-79
CVE-2026-40302 2026-04-27 11:27 2026-04-17 Show GitHub Exploit DB Packet Storm
2812 7.5 重要
Network
NetFoundry zrok NetFoundryのzrokにおける複数の脆弱性 CWE-400
CWE-789
CVE-2026-40303 2026-04-27 11:27 2026-04-17 Show GitHub Exploit DB Packet Storm
2813 5.3 警告
Network
NetFoundry zrok NetFoundryのzrokにおける複数の脆弱性 CWE-284
CWE-863
CVE-2026-40304 2026-04-27 11:27 2026-04-17 Show GitHub Exploit DB Packet Storm
2814 8.8 重要
Network
HKUDS OpenHarness HKUDSのOpenHarnessにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-40502 2026-04-27 11:27 2026-04-16 Show GitHub Exploit DB Packet Storm
2815 6.5 警告
Network
HKUDS OpenHarness HKUDSのOpenHarnessにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-40503 2026-04-27 11:27 2026-04-16 Show GitHub Exploit DB Packet Storm
2816 8.8 重要
Network
FreePBX API Module FreePBXのAPI ModuleにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-40520 2026-04-27 11:26 2026-04-21 Show GitHub Exploit DB Packet Storm
2817 6.1 警告
Network
Yusuke Inuzuka (yuin) goldmark Yusuke Inuzuka (yuin)のgoldmarkにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-5160 2026-04-27 11:26 2026-04-15 Show GitHub Exploit DB Packet Storm
2818 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-0186 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
2819 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-3922 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
2820 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-6016 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
315591 - - - Out-of-bounds write in appending paragraph in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege. - CVE-2024-34622 2024-08-7 11:15 2024-08-7 Show GitHub Exploit DB Packet Storm
315592 - - - Out-of-bounds read in applying binary with data in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory. - CVE-2024-34621 2024-08-7 11:15 2024-08-7 Show GitHub Exploit DB Packet Storm
315593 - - - Improper privilege management in SumeNNService prior to SMR Aug-2024 Release 1 allows local attackers to start privileged service. - CVE-2024-34620 2024-08-7 11:15 2024-08-7 Show GitHub Exploit DB Packet Storm
315594 - - - Improper input validation in librtp.so prior to SMR Aug-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulner… - CVE-2024-34619 2024-08-7 11:15 2024-08-7 Show GitHub Exploit DB Packet Storm
315595 - - - Improper access control in System property prior to SMR Aug-2024 Release 1 allows local attackers to access cell related information. - CVE-2024-34618 2024-08-7 11:15 2024-08-7 Show GitHub Exploit DB Packet Storm
315596 - - - Improper handling of insufficient permission in Telephony prior to SMR Aug-2024 Release 1 allows local attackers to configure default Message application. - CVE-2024-34617 2024-08-7 11:15 2024-08-7 Show GitHub Exploit DB Packet Storm
315597 - - - Improper handling of insufficient permission in KnoxDualDARPolicy prior to SMR Aug-2024 Release 1 allows local attackers to access sensitive data. - CVE-2024-34616 2024-08-7 11:15 2024-08-7 Show GitHub Exploit DB Packet Storm
315598 - - - Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to cause memory corruption. - CVE-2024-34615 2024-08-7 11:15 2024-08-7 Show GitHub Exploit DB Packet Storm
315599 - - - Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code. - CVE-2024-34614 2024-08-7 11:15 2024-08-7 Show GitHub Exploit DB Packet Storm
315600 - - - Improper access control in Galaxy Watch prior to SMR Aug-2024 Release 1 allows local attackers to access sensitive information of Galaxy watch. - CVE-2024-34613 2024-08-7 11:15 2024-08-7 Show GitHub Exploit DB Packet Storm