Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3291 8.8 重要
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおける二重解放に関する脆弱性 CWE-415
二重解放
CVE-2026-23918 2026-05-7 11:28 2026-05-4 Show GitHub Exploit DB Packet Storm
3292 8.8 重要
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP Serverにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-24072 2026-05-7 11:28 2026-05-4 Show GitHub Exploit DB Packet Storm
3293 9.8 緊急
Network
NVIDIA nvflare NVIDIAのnvflareにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-24178 2026-05-7 11:28 2026-04-28 Show GitHub Exploit DB Packet Storm
3294 8.8 重要
Network
NVIDIA nvflare NVIDIAのnvflareにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-24186 2026-05-7 11:28 2026-04-28 Show GitHub Exploit DB Packet Storm
3295 6.5 警告
Network
NVIDIA nvflare NVIDIAのnvflareにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-24204 2026-05-7 11:28 2026-04-28 Show GitHub Exploit DB Packet Storm
3296 5.3 警告
Network
GNOME Project
レッドハット
Red Hat Enterprise Linux
libsoup
GNOME Project等の複数ベンダの製品におけるHTTP リクエストスマグリングに関する脆弱性 CWE-444
HTTP リクエストスマグリング
CVE-2026-2708 2026-05-7 11:28 2026-04-23 Show GitHub Exploit DB Packet Storm
3297 7.1 重要
Network
Nimiq Nimiq Proof of Stake (core-rs-albatross) NimiqのNimiq Proof of Stake (core-rs-albatross)におけるデータの整合性検証不備に関する脆弱性 CWE-354
データの整合性検証不備
CVE-2026-28402 2026-05-7 11:28 2026-02-27 Show GitHub Exploit DB Packet Storm
3298 6.5 警告
Network
アップル Container アップルのContainerにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2026-28909 2026-05-7 11:28 2026-04-30 Show GitHub Exploit DB Packet Storm
3299 7.5 重要
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP ServerにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-29169 2026-05-7 11:28 2026-05-4 Show GitHub Exploit DB Packet Storm
3300 5.9 警告
Network
Hex Hex Hexにおける複数の脆弱性 CWE-354
CWE-494
CVE-2026-32148 2026-05-7 11:28 2026-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313571 4.4 MEDIUM
Local
google android In DRM service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed. CWE-787
 Out-of-bounds Write
CVE-2024-39439 2024-10-18 02:32 2024-10-9 Show GitHub Exploit DB Packet Storm
313572 8.1 HIGH
Network
paytium paytium The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the create_mollie_account function in versio… CWE-862
 Missing Authorization
CVE-2023-7291 2024-10-18 02:31 2024-10-16 Show GitHub Exploit DB Packet Storm
313573 4.3 MEDIUM
Network
paytium paytium The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the check_for_verified_profiles function in versio… CWE-862
 Missing Authorization
CVE-2023-7290 2024-10-18 02:30 2024-10-16 Show GitHub Exploit DB Packet Storm
313574 4.3 MEDIUM
Network
paytium paytium The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to unauthorized API key update due to a missing capability check on the paytium_sw_save_api_keys function in versions … CWE-862
 Missing Authorization
CVE-2023-7289 2024-10-18 02:29 2024-10-16 Show GitHub Exploit DB Packet Storm
313575 5.4 MEDIUM
Network
paytium paytium The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to unauthorized subscription cancellation due to a missing capability check on the pt_cancel_subscription function in … CWE-862
 Missing Authorization
CVE-2023-7287 2024-10-18 02:28 2024-10-16 Show GitHub Exploit DB Packet Storm
313576 4.3 MEDIUM
Network
paytium paytium The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability check on the update_profile_preference function in versi… CWE-862
 Missing Authorization
CVE-2023-7288 2024-10-18 02:27 2024-10-16 Show GitHub Exploit DB Packet Storm
313577 6.8 MEDIUM
Physics
microsoft windows_server_2022_23h2
windows_10_1809
windows_server_2019
windows_11_21h2
windows_10_21h2
windows_11_22h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
Windows Mobile Broadband Driver Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2024-43543 2024-10-18 02:23 2024-10-9 Show GitHub Exploit DB Packet Storm
313578 6.7 MEDIUM
Local
google android In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. CWE-77
Command Injection
CVE-2024-39438 2024-10-18 02:19 2024-10-9 Show GitHub Exploit DB Packet Storm
313579 6.7 MEDIUM
Local
google android In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. CWE-77
Command Injection
CVE-2024-39437 2024-10-18 02:18 2024-10-9 Show GitHub Exploit DB Packet Storm
313580 6.7 MEDIUM
Local
google android In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. CWE-77
Command Injection
CVE-2024-39436 2024-10-18 02:16 2024-10-9 Show GitHub Exploit DB Packet Storm