Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2821 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-6016 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
2822 7.5 重要
Network
Nitro Software Inc. Nitro PDF Pro Nitro Software Inc.のNitro PDF ProにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-66769 2026-04-27 11:26 2026-04-13 Show GitHub Exploit DB Packet Storm
2823 7.5 重要
Network
Nitro Software Inc. Nitro PDF Pro Nitro Software Inc.のNitro PDF ProにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-69624 2026-04-27 11:26 2026-04-13 Show GitHub Exploit DB Packet Storm
2824 2.7
Network
GitLab.org GitLab GitLab.orgのGitLabにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2025-9957 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
2825 4.8 警告
Network
pega pega platform pegaのpega platformにおけるクロスサイトスクリプティングの脆弱性 CWE-80
クロスサイトスクリプティング (Basic XSS)
CVE-2026-1564 2026-04-27 11:26 2026-04-15 Show GitHub Exploit DB Packet Storm
2826 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-1660 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
2827 4.8 警告
Network
pega pega platform pegaのpega platformにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-1711 2026-04-27 11:26 2026-04-15 Show GitHub Exploit DB Packet Storm
2828 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-Other
その他
CVE-2026-23314 2026-04-27 11:26 2026-03-25 Show GitHub Exploit DB Packet Storm
2829 7.1 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-23315 2026-04-27 11:26 2026-03-25 Show GitHub Exploit DB Packet Storm
2830 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23316 2026-04-27 11:26 2026-03-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
531 3.1 LOW
Network
- - Use after free in GPU in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page. (Ch… New CWE-416
 Use After Free
CVE-2026-8553 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm
532 4.3 MEDIUM
Network
- - Heap buffer overflow in GPU in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity… New CWE-122
Heap-based Buffer Overflow
CVE-2026-8552 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm
533 6.5 MEDIUM
Network
- - Use after free in Google Lens in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memo… New CWE-416
 Use After Free
CVE-2026-8550 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm
534 8.3 HIGH
Network
- - Out of bounds write in Media in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML pag… New CWE-787
 Out-of-bounds Write
CVE-2026-8548 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm
535 5.3 MEDIUM
Network
- - Out of bounds read in GPU in Google Chrome on Mac and Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information fr… New CWE-125
Out-of-bounds Read
CVE-2026-8546 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm
536 5.3 MEDIUM
Network
- - Out of bounds read in FileSystem in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker who convinced a user to engage in specific UI gestures to obtain potentially sensitive infor… New CWE-125
Out-of-bounds Read
CVE-2026-8543 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm
537 8.3 HIGH
Network
- - Use after free in Core in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTM… New CWE-416
 Use After Free
CVE-2026-8542 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm
538 5.3 MEDIUM
Network
- - Out of bounds read in UI in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory vi… New CWE-125
Out-of-bounds Read
CVE-2026-8541 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm
539 5.4 MEDIUM
Network
- - Script injection in SanitizerAPI in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security s… New CWE-94
Code Injection
CVE-2026-8539 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm
540 5.3 MEDIUM
Network
- - Insufficient validation of untrusted input in GPU in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform a denial of service via a craf… New CWE-20
 Improper Input Validation 
CVE-2026-8538 2026-05-15 07:16 2026-05-15 Show GitHub Exploit DB Packet Storm