Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2851 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2026-31672 2026-04-30 12:31 2026-04-24 Show GitHub Exploit DB Packet Storm
2852 8.1 重要
Network
xibosignage xibo xibosignageのxiboにおける複数の脆弱性 CWE-184
CWE-89
CVE-2026-31952 2026-04-30 12:31 2026-04-24 Show GitHub Exploit DB Packet Storm
2853 5.4 警告
Network
xibosignage xibo xibosignageのxiboにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-31953 2026-04-30 12:31 2026-04-24 Show GitHub Exploit DB Packet Storm
2854 4.9 警告
Network
xibosignage xibo xibosignageのxiboにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-31955 2026-04-30 12:31 2026-04-24 Show GitHub Exploit DB Packet Storm
2855 4.3 警告
Network
xibosignage xibo xibosignageのxiboにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-31956 2026-04-30 12:31 2026-04-24 Show GitHub Exploit DB Packet Storm
2856 8.8 重要
Network
マイクロソフト Azure Logic Apps Azure Logic Apps の特権昇格の脆弱性 CWE-522
認証情報の不十分な保護
CVE-2026-32171 2026-04-30 12:31 2026-04-14 Show GitHub Exploit DB Packet Storm
2857 7.5 重要
Network
getkirby kirby getkirbyのkirbyにおけるブラインド XPath インジェクションの脆弱性 CWE-91
ブラインド XPath インジェクション
CVE-2026-32870 2026-04-30 12:31 2026-04-24 Show GitHub Exploit DB Packet Storm
2858 9.8 緊急
Network
Roxy-WI Roxy-WI Roxy-WIにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-33076 2026-04-30 12:31 2026-04-24 Show GitHub Exploit DB Packet Storm
2859 7.5 重要
Network
Roxy-WI Roxy-WI Roxy-WIにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-33077 2026-04-30 12:30 2026-04-24 Show GitHub Exploit DB Packet Storm
2860 9.8 緊急
Network
Roxy-WI Roxy-WI Roxy-WIにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-33078 2026-04-30 12:30 2026-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314141 9.8 CRITICAL
Network
tenda i22_firmware A vulnerability has been found in Tenda i22 1.0.0.3(4687) and classified as critical. Affected by this vulnerability is the function formApPortalWebAuth of the file /goform/apPortalAuth. The manipula… CWE-120
Classic Buffer Overflow
CVE-2024-7585 2024-09-12 04:32 2024-08-8 Show GitHub Exploit DB Packet Storm
314142 9.8 CRITICAL
Network
tenda i22_firmware A vulnerability, which was classified as critical, was found in Tenda i22 1.0.0.3(4687). Affected is the function formApPortalPhoneAuth of the file /goform/apPortalPhoneAuth. The manipulation of the … CWE-120
Classic Buffer Overflow
CVE-2024-7584 2024-09-12 04:25 2024-08-8 Show GitHub Exploit DB Packet Storm
314143 7.8 HIGH
Local
jetbrains teamcity In JetBrains TeamCity before 2024.07.1 possible privilege escalation due to incorrect directory permissions CWE-276
Incorrect Default Permissions 
CVE-2024-43114 2024-09-12 04:11 2024-08-6 Show GitHub Exploit DB Packet Storm
314144 5.5 MEDIUM
Local
huawei emui
harmonyos
LaunchAnywhere vulnerability in the account module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. NVD-CWE-noinfo
CVE-2024-42034 2024-09-12 03:55 2024-08-8 Show GitHub Exploit DB Packet Storm
314145 7.8 HIGH
Local
huawei harmonyos
emui
Permission control vulnerability in the App Multiplier module Impact:Successful exploitation of this vulnerability may affect functionality and confidentiality. NVD-CWE-noinfo
CVE-2024-42035 2024-09-12 03:52 2024-08-8 Show GitHub Exploit DB Packet Storm
314146 8.8 HIGH
Network
pharmacy_management_system_project pharmacy_management_system A vulnerability was found in code-projects Pharmacy Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /index.php?action=editPharmacist. The mani… CWE-89
SQL Injection
CVE-2024-8147 2024-09-12 03:37 2024-08-25 Show GitHub Exploit DB Packet Storm
314147 5.5 MEDIUM
Local
logitech options\+ Logitech Options+ on MacOS prior 1.72 allows a local attacker to inject dynamic library within Options+ runtime and abuse permissions granted by the user to Options+ such as Camera. CWE-863
 Incorrect Authorization
CVE-2024-8011 2024-09-12 03:15 2024-08-25 Show GitHub Exploit DB Packet Storm
314148 5.3 MEDIUM
Network
purevpn purevpn PureVPN Linux client 2.0.2-Productions fails to properly handle DNS queries, allowing them to bypass the VPN tunnel and be sent directly to the ISP or default DNS servers. NVD-CWE-noinfo
CVE-2023-48957 2024-09-12 03:07 2024-08-26 Show GitHub Exploit DB Packet Storm
314149 5.4 MEDIUM
Network
sap netweaver_application_server_abap SAP NetWeaver Application Server ABAP allows an unauthenticated attacker to craft a URL link that could bypass allowlist controls. Depending on the web applications provided by this server, the … NVD-CWE-noinfo
CVE-2024-41732 2024-09-12 02:52 2024-08-13 Show GitHub Exploit DB Packet Storm
314150 4.3 MEDIUM
Network
sap business_objects_business_intelligence_platform SAP BusinessObjects Business Intelligence Platform allows an authenticated attacker to upload malicious code over the network, that could be executed by the application. On successful exploitation, t… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-41731 2024-09-12 02:48 2024-08-13 Show GitHub Exploit DB Packet Storm