Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3421 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおける重要な情報の平文保存に関する脆弱性 CWE-312
重要な情報の平文保存
CVE-2026-41385 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
3422 9.8 緊急
Network
OpenClaw OpenClaw OpenClawにおける特権 API の不適切な使用に関する脆弱性 CWE-648
特権 API の不適切な使用
CVE-2026-41386 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
3423 6.5 警告
Network
Wazuh Inc. Wazuh Wazuh Inc.のWazuhにおける複数の脆弱性 CWE-124
CWE-191
CVE-2026-41499 2026-05-7 12:04 2026-04-29 Show GitHub Exploit DB Packet Storm
3424 7.7 重要
Network
getoutline outline getoutlineのoutlineにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-41649 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
3425 7.5 重要
Network
PostgreSQL.org PostgreSQL JDBC ドライバ PostgreSQL.orgのPostgreSQL JDBC ドライバにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-42198 2026-05-7 12:04 2026-04-29 Show GitHub Exploit DB Packet Storm
3426 8.1 重要
Network
FreeBSD FreeBSD FreeBSDにおける引用構文の無害化に関する脆弱性 CWE-149
引用構文の不適切な無害化
CVE-2026-42511 2026-05-7 12:04 2026-04-30 Show GitHub Exploit DB Packet Storm
3427 8.1 重要
Network
FreeBSD FreeBSD FreeBSDにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-42512 2026-05-7 12:04 2026-04-30 Show GitHub Exploit DB Packet Storm
3428 9.8 緊急
Network
Apache Software Foundation MINA Apache Software FoundationのMINAにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-42778 2026-05-7 12:04 2026-05-1 Show GitHub Exploit DB Packet Storm
3429 9.8 緊急
Network
Apache Software Foundation MINA Apache Software FoundationのMINAにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-42779 2026-05-7 12:04 2026-05-1 Show GitHub Exploit DB Packet Storm
3430 7.5 重要
Network
レッドハット
GNOME Project
gdk-pixbuf
Red Hat Enterprise Linux Server TUS
Red Hat Enterprise Linux Server AUS
Red Hat Enterprise Linux
GNOME Project等の複数ベンダの製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-5201 2026-05-7 12:04 2026-03-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1351 9.6 CRITICAL
Network
- - Use after free in Base in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical) CWE-416
 Use After Free
CVE-2026-9886 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
1352 8.3 HIGH
Network
- - Insufficient validation of untrusted input in UI in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox es… CWE-20
 Improper Input Validation 
CVE-2026-9885 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
1353 9.0 CRITICAL
Network
- - Use after free in Bluetooth in Google Chrome on Mac prior to 148.0.7778.216 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a cra… CWE-416
 Use After Free
CVE-2026-9881 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
1354 7.3 HIGH
Network
- - A vulnerability was identified in KLiK SocialMediaWebsite 1.0. This issue affects some unknown processing of the component HTTP POST Request Parameter Handler. Such manipulation leads to injection. T… CWE-74
CWE-707
Injection
 Improper Enforcement of Message or Data Structure
CVE-2026-9422 2026-05-30 01:16 2026-05-25 Show GitHub Exploit DB Packet Storm
1355 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… - CVE-2026-9194 2026-05-30 01:16 2026-05-30 Show GitHub Exploit DB Packet Storm
1356 7.3 HIGH
Network
- - IO::Compress versions from 2.207 before 2.220 for Perl ship a zipdetails CLI tool that crashes with undefined subroutine on Info-ZIP Unix Extra Field with 8-byte UID or GID. When decode_ux() in bin/… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2026-48961 2026-05-30 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1357 7.5 HIGH
Network
- - IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward. fastForward() compares length $offset (the digit count of the offset, 1 to 19) agains… CWE-407
 Inefficient Algorithmic Complexity
CVE-2026-48959 2026-05-30 01:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1358 2.0 LOW
Network
- - AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. Prior to 1.13.0, an approved mobile device token created in single-user mod… CWE-285
CWE-639
Improper Authorization
 Authorization Bypass Through User-Controlled Key
CVE-2026-47713 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
1359 5.3 MEDIUM
Network
- - Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network ac… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-46843 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm
1360 5.3 MEDIUM
Network
- - Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network ac… CWE-284
Improper Access Control
CVE-2026-46842 2026-05-30 01:16 2026-05-29 Show GitHub Exploit DB Packet Storm