Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3401 8.2 重要
Network
traefik traefik traefikにおける誤って解決された名前や参照の使用に関する脆弱性 CWE-706
誤って解決された名前や参照の使用
CVE-2026-40912 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
3402 5.9 警告
Network
Apache Software Foundation Apache Airflow Apache Software FoundationのApache Airflowにおける証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2026-41016 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
3403 6.4 警告
Network
traefik traefik traefikにおける複数の脆弱性 CWE-653
CWE-863
CVE-2026-41174 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
3404 3.7
Network
traefik traefik traefikにおけるタイミングの違いに起因する情報漏えいに関する脆弱性 CWE-208
タイミングの違いに起因する情報漏えい
CVE-2026-41263 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
3405 8.1 重要
Network
OpenClaw OpenClaw OpenClawにおける不変と仮定される Web パラメータの外部制御に関する脆弱性 CWE-472
不変と仮定される Web パラメータの外部制御
CVE-2026-41353 2026-05-7 12:05 2026-04-23 Show GitHub Exploit DB Packet Storm
3406 5.3 警告
Network
OpenClaw OpenClaw OpenClawにおける誤って解決された名前や参照の使用に関する脆弱性 CWE-706
誤って解決された名前や参照の使用
CVE-2026-41354 2026-05-7 12:05 2026-04-23 Show GitHub Exploit DB Packet Storm
3407 7.3 重要
Local
OpenClaw OpenClaw OpenClawにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-41355 2026-05-7 12:05 2026-04-23 Show GitHub Exploit DB Packet Storm
3408 5.4 警告
Network
OpenClaw OpenClaw OpenClawにおける同一生成元ポリシー違反に関する脆弱性 CWE-346
同一生成元ポリシー違反
CVE-2026-41358 2026-05-7 12:05 2026-04-23 Show GitHub Exploit DB Packet Storm
3409 6.7 警告
Local
OpenClaw OpenClaw OpenClawにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-41360 2026-05-7 12:05 2026-04-23 Show GitHub Exploit DB Packet Storm
3410 6.1 警告
Local
OpenClaw OpenClaw OpenClawにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-41373 2026-05-7 12:05 2026-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313341 4.4 MEDIUM
Local
google android In vdec, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed … CWE-125
Out-of-bounds Read
CVE-2024-20091 2024-10-27 12:35 2024-10-7 Show GitHub Exploit DB Packet Storm
313342 4.4 MEDIUM
Local
linuxfoundation
rdkcentral
google
openwrt
yocto
rdk-b
android
openwrt
In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed… CWE-125
Out-of-bounds Read
CVE-2024-20085 2024-10-27 12:35 2024-09-2 Show GitHub Exploit DB Packet Storm
313343 4.4 MEDIUM
Local
linuxfoundation
rdkcentral
google
openwrt
yocto
rdk-b
android
openwrt
In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed… CWE-125
Out-of-bounds Read
CVE-2024-20084 2024-10-27 12:35 2024-09-2 Show GitHub Exploit DB Packet Storm
313344 - - - A stack buffer overflow was addressed through improved input validation. This issue is fixed in Apple TV 1.5.0.152 for Windows, iTunes 12.13.3 for Windows. Parsing a maliciously crafted video file ma… - CVE-2024-44157 2024-10-27 11:35 2024-10-12 Show GitHub Exploit DB Packet Storm
313345 8.8 HIGH
Network
elecom wrc-2533gs2-b_firmware
wrc-2533gs2-w_firmware
wrc-2533gs2v-b_firmware
wrc-x6000xs-g_firmware
wrc-x1500gs-b_firmware
wrc-x1500gsa-b_firmware
Cross-site request forgery vulnerability exists in ELECOM wireless LAN routers. Viewing a malicious page while logging in to the affected product with an administrative privilege, the user may be dir… CWE-352
 Origin Validation Error
CVE-2024-40883 2024-10-27 10:35 2024-08-1 Show GitHub Exploit DB Packet Storm
313346 7.1 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: NFC: nci: Bounds check struct nfc_target arrays While running under CONFIG_FORTIFY_SOURCE=y, syzkaller reported: memcpy: detec… CWE-129
 Improper Validation of Array Index
CVE-2022-48967 2024-10-26 06:27 2024-10-22 Show GitHub Exploit DB Packet Storm
313347 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: Fix potential memory leak in otx2_init_tc() In otx2_init_tc(), if rhashtable_init() failed, it does not free tc->tc… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2022-48968 2024-10-26 06:26 2024-10-22 Show GitHub Exploit DB Packet Storm
313348 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: xen-netfront: Fix NULL sring after live migration A NAPI is setup for each network sring to poll data to kernel The sring with so… CWE-476
 NULL Pointer Dereference
CVE-2022-48969 2024-10-26 06:22 2024-10-22 Show GitHub Exploit DB Packet Storm
313349 5.3 MEDIUM
Network
servmask all-in-one_wp_migration The All-in-One WP Migration and Backup plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7.86 through publicly exposed log files. This makes i… NVD-CWE-noinfo
CVE-2024-8852 2024-10-26 06:20 2024-10-22 Show GitHub Exploit DB Packet Storm
313350 8.8 HIGH
Network
roveridx rover_idx The Rover IDX plugin for WordPress is vulnerable to Authentication Bypass in versions up to, and including, 3.0.0.2905. This is due to insufficient validation and capability check on the 'rover_idx_r… CWE-306
Missing Authentication for Critical Function
CVE-2024-10002 2024-10-26 06:20 2024-10-22 Show GitHub Exploit DB Packet Storm