|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 24, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 3261 | 6.5 |
警告
Network |
OpenFGA | OpenFGA | OpenFGAにおける情報漏えいに関する脆弱性 |
CWE-200
情報漏えい |
CVE-2026-40293 | 2026-04-30 12:28 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3262 | 9.9 |
緊急
Network |
FirebirdSQL | Firebird | FirebirdSQLのFirebirdにおける複数の脆弱性 |
CWE-22 CWE-427 CWE-73 CWE-94 |
CVE-2026-40342 | 2026-04-30 12:28 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3263 | 8.2 |
重要
Network |
Minio Inc. | Minio | Minio Inc.のMinioにおける複数の脆弱性 |
CWE-287 CWE-306 |
CVE-2026-40344 | 2026-04-30 12:28 | 2026-04-22 | Show | GitHub Exploit DB Packet Storm |
| 3264 | 9.8 |
緊急
Network |
FastGPT | FastGPT | FastGPTにおけるデータクエリロジックの特殊要素の不適切な中立化に関する脆弱性 |
CWE-943
データクエリロジックの特殊要素の不適切な中立化 |
CVE-2026-40351 | 2026-04-30 12:28 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3265 | 8.8 |
重要
Network |
FastGPT | FastGPT | FastGPTにおけるデータクエリロジックの特殊要素の不適切な中立化に関する脆弱性 |
CWE-943
データクエリロジックの特殊要素の不適切な中立化 |
CVE-2026-40352 | 2026-04-30 12:28 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3266 | 9.1 |
緊急
Network |
マイクロソフト | ASP.NET Core | ASP.NET Core Elevation of Privilege Vulnerability |
CWE-347
デジタル署名の不適切な検証 |
CVE-2026-40372 | 2026-04-30 12:28 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 3267 | 5.4 |
警告
Network |
Kimai project | kimai | Kimai projectのKimaiにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2026-40479 | 2026-04-30 12:28 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3268 | 4.3 |
警告
Network |
Kimai project | kimai | Kimai projectのKimaiにおける動的に決定されたオブジェクト属性の不適切に制御された変更に関する脆弱性 |
CWE-915
動的に決定されたオブジェクト属性の不適切に制御された変更 |
CVE-2026-40486 | 2026-04-30 12:28 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3269 | 6.8 |
警告
Network |
oauth2_proxy project | oauth2_proxy | oauth2_proxy projectのoauth2_proxyにおける不正な認証に関する脆弱性 |
CWE-863
不正な認証 |
CVE-2026-40574 | 2026-04-30 12:28 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 3270 | 9.1 |
緊急
Network |
oauth2_proxy project | oauth2_proxy | oauth2_proxy projectのoauth2_proxyにおけるスプーフィングによる認証回避に関する脆弱性 |
CWE-290
スプーフィングによる認証回避 |
CVE-2026-40575 | 2026-04-30 12:28 | 2026-04-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 25, 2026, 4:01 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 314081 | 8.1 |
HIGH
Network |
microsoft |
windows_server_2019 windows_server_2022 windows_server_2022_23h2 windows_11_24h2 windows_10_22h2 windows_11_23h2 windows_11_22h2 windows_11_21h2 windows_10_1809 windows_10_… |
Windows TCP/IP Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38045 | 2024-09-19 00:04 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 314082 | 8.8 |
HIGH
Network |
microsoft | sharepoint_server | Microsoft SharePoint Server Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38018 | 2024-09-19 00:04 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 314083 | 7.8 |
HIGH
Local |
microsoft |
windows_10_1507 windows_server_2019 windows_server_2022 windows_server_2022_23h2 windows_11_24h2 windows_10_1607 windows_server_2016 windows_10_22h2 windows_11_23h2 windows… |
PowerShell Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38046 | 2024-09-19 00:02 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 314084 | 6.5 |
MEDIUM
Network |
microsoft | outlook | Microsoft Outlook for iOS Information Disclosure Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43482 | 2024-09-18 23:11 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 314085 | 6.5 |
MEDIUM
Network |
microsoft |
windows_server_2012 windows_10_1507 windows_10_1809 windows_server_2019 windows_10_21h2 windows_10_1607 windows_server_2016 windows_10_22h2 |
Windows Mark of the Web Security Feature Bypass Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43487 | 2024-09-18 23:10 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 314086 | 7.8 |
HIGH
Local |
microsoft | autoupdate | Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43492 | 2024-09-18 22:57 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 314087 | 7.3 |
HIGH
Local |
microsoft |
windows_11_22h2 windows_server_2022_23h2 windows_11_23h2 |
Windows libarchive Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43495 | 2024-09-18 22:55 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
| 314088 | 7.8 |
HIGH
Local |
android | there is a possible escalation of privilege due to an unusual root cause. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not need… |
NVD-CWE-noinfo
|
CVE-2024-29779 | 2024-09-18 22:52 | 2024-09-14 | Show | GitHub Exploit DB Packet Storm | |
| 314089 | 7.8 |
HIGH
Local |
android | In TBD of TBD, there is a possible LCS signing enforcement missing due to test/debugging code left in a production build. This could lead to local escalation of privilege with no additional executio… |
NVD-CWE-noinfo
|
CVE-2024-44092 | 2024-09-18 22:51 | 2024-09-14 | Show | GitHub Exploit DB Packet Storm | |
| 314090 | 7.8 |
HIGH
Local |
android | In ppmp_unprotect_buf of drm/code/drm_fw.c, there is a possible memory corruption due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privi… |
CWE-787
Out-of-bounds Write |
CVE-2024-44093 | 2024-09-18 22:42 | 2024-09-14 | Show | GitHub Exploit DB Packet Storm |