Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 12:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2911 6.3 警告
Network
neutrinolabs xrdp neutrinolabsのxrdpにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-33145 2026-04-28 10:13 2026-04-17 Show GitHub Exploit DB Packet Storm
2912 9.1 緊急
Network
neutrinolabs xrdp neutrinolabsのxrdpにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-33516 2026-04-28 10:13 2026-04-17 Show GitHub Exploit DB Packet Storm
2913 9.1 緊急
Network
neutrinolabs xrdp neutrinolabsのxrdpにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-33689 2026-04-28 10:13 2026-04-17 Show GitHub Exploit DB Packet Storm
2914 2.9
Local
オラクル Oracle GraalVM for JDK
Oracle GraalVM
JRE
JDK
オラクルのOracle GraalVM等の複数製品における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34268 2026-04-28 10:13 2026-04-21 Show GitHub Exploit DB Packet Storm
2915 9.8 緊急
Network
オラクル Oracle Advanced Inbound Telephony オラクルのOracle Advanced Inbound Telephonyにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-34275 2026-04-28 10:13 2026-04-21 Show GitHub Exploit DB Packet Storm
2916 7.5 重要
Network
オラクル Oracle GraalVM for JDK
Oracle GraalVM
JRE
JDK
オラクルのOracle GraalVM等の複数製品におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-34282 2026-04-28 10:13 2026-04-21 Show GitHub Exploit DB Packet Storm
2917 2.4
Network
オラクル Oracle Database オラクルのOracle Databaseにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34312 2026-04-28 10:13 2026-04-21 Show GitHub Exploit DB Packet Storm
2918 5.3 警告
Network
Electron electron Electronのelectronにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-34776 2026-04-28 10:13 2026-04-4 Show GitHub Exploit DB Packet Storm
2919 5.4 警告
Network
オラクル Oracle Fusion Middleware オラクルのOracle Fusion Middlewareにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35232 2026-04-28 10:13 2026-04-21 Show GitHub Exploit DB Packet Storm
2920 6.4 警告
Network
オラクル Oracle Fusion Middleware オラクルのOracle Fusion Middlewareにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35252 2026-04-28 10:13 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314361 7.5 HIGH
Network
linuxfoundation
rdkcentral
google
yocto
rdk-b
android
In wlan, there is a possible denial of service due to incorrect error handling. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not nee… CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2024-20089 2024-09-5 23:28 2024-09-2 Show GitHub Exploit DB Packet Storm
314362 4.4 MEDIUM
Local
google android In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not n… CWE-125
Out-of-bounds Read
CVE-2024-20088 2024-09-5 23:27 2024-09-2 Show GitHub Exploit DB Packet Storm
314363 6.7 MEDIUM
Local
google android In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not neede… CWE-787
 Out-of-bounds Write
CVE-2024-20087 2024-09-5 23:26 2024-09-2 Show GitHub Exploit DB Packet Storm
314364 6.7 MEDIUM
Local
google android In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not neede… CWE-787
 Out-of-bounds Write
CVE-2024-20086 2024-09-5 23:26 2024-09-2 Show GitHub Exploit DB Packet Storm
314365 7.5 HIGH
Network
abcd-community abcd A vulnerability classified as problematic was found in ABCD ABCD2 up to 2.2.0-beta-1. This vulnerability affects unknown code of the file /abcd/opac/php/otros_sitios.php. The manipulation of the argu… CWE-22
Path Traversal
CVE-2024-8410 2024-09-5 23:20 2024-09-5 Show GitHub Exploit DB Packet Storm
314366 7.5 HIGH
Network
abcd-community abcd A vulnerability classified as problematic has been found in ABCD ABCD2 up to 2.2.0-beta-1. This affects an unknown part of the file /common/show_image.php. The manipulation of the argument image lead… CWE-22
Path Traversal
CVE-2024-8409 2024-09-5 23:20 2024-09-5 Show GitHub Exploit DB Packet Storm
314367 4.3 MEDIUM
Network
abcd-community abcd A vulnerability, which was classified as problematic, has been found in ABCD ABCD2 up to 2.2.0-beta-1. This issue affects some unknown processing of the file /buscar_integrada.php. The manipulation o… CWE-79
Cross-site Scripting
CVE-2024-8411 2024-09-5 23:19 2024-09-5 Show GitHub Exploit DB Packet Storm
314368 7.8 HIGH
Local
yandex yandex_browser Yandex Browser for Desktop before 24.7.1.380 has a DLL Hijacking Vulnerability because an untrusted search path is used. CWE-426
 Untrusted Search Path
CVE-2024-6473 2024-09-5 23:19 2024-09-3 Show GitHub Exploit DB Packet Storm
314369 9.6 CRITICAL
Adjacent
progress openedge Local ABL Client bypass of the required PASOE security checks may allow an attacker to commit unauthorized code injection into Multi-Session Agents on supported OpenEdge LTS platforms up to OpenEdge … CWE-94
Code Injection
CVE-2024-7345 2024-09-5 23:11 2024-09-4 Show GitHub Exploit DB Packet Storm
314370 4.8 MEDIUM
Network
progress openedge Host name validation for TLS certificates is bypassed when the installed OpenEdge default certificates are used to perform the TLS handshake for a networked connection.  This has been corrected so th… CWE-287
Improper Authentication
CVE-2024-7346 2024-09-5 23:03 2024-09-4 Show GitHub Exploit DB Packet Storm