|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 31, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 3451 | 8.6 |
重要
Network |
VMware | Spring AI | VMwareのSpring AIにおけるコードインジェクションの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2026-40967 | 2026-05-1 10:47 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
| 3452 | 7.5 |
重要
Adjacent |
VMware | Spring Boot | VMwareのSpring Bootにおけるタイミングの違いに起因する情報漏えいに関する脆弱性 |
CWE-208
タイミングの違いに起因する情報漏えい |
CVE-2026-40972 | 2026-05-1 10:47 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
| 3453 | 7 |
重要
Local |
VMware | Spring Boot | VMwareのSpring Bootにおける安全でない一時ファイルに関する脆弱性 |
CWE-377
安全でない一時ファイル |
CVE-2026-40973 | 2026-05-1 10:47 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
| 3454 | 7.5 |
重要
Network |
VMware | Spring Boot | VMwareのSpring Bootにおける不十分なランダム値の使用に関する脆弱性 |
CWE-330
不十分なランダム値の使用 |
CVE-2026-40975 | 2026-05-1 10:47 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
| 3455 | 9.1 |
緊急
Network |
VMware | Spring Boot | VMwareのSpring Bootにおける認証の欠如に関する脆弱性 |
CWE-862
認証の欠如 |
CVE-2026-40976 | 2026-05-1 10:47 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
| 3456 | 6.7 |
警告
Local |
VMware | Spring Boot | VMwareのSpring Bootにおけるリンク解釈に関する脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2026-40977 | 2026-05-1 10:47 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
| 3457 | 8.8 |
重要
Network |
VMware | Spring AI | VMwareのSpring AIにおけるSQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2026-40978 | 2026-05-1 10:47 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
| 3458 | 6.1 |
警告
Local |
VMware | Spring AI | VMwareのSpring AIにおける安全でない一時ファイルに関する脆弱性 |
CWE-377
安全でない一時ファイル |
CVE-2026-40979 | 2026-05-1 10:47 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
| 3459 | 6.5 |
警告
Network |
VMware | Spring AI | VMwareのSpring AIにおけるリソースの枯渇に関する脆弱性 |
CWE-400
リソースの枯渇 |
CVE-2026-40980 | 2026-05-1 10:47 | 2026-04-28 | Show | GitHub Exploit DB Packet Storm |
| 3460 | 5.3 |
警告
Local |
OpenClaw | OpenClaw | OpenClawにおける不完全なブラックリストに関する脆弱性 |
CWE-184
不完全なブラックリスト |
CVE-2026-41332 | 2026-05-1 10:47 | 2026-04-23 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 31, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 313651 | 6.5 |
MEDIUM
Adjacent |
microsoft |
windows_server_2022_23h2 windows_10_1809 windows_server_2019 windows_11_21h2 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 |
Windows Mobile Broadband Driver Denial of Service Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43538 | 2024-10-18 03:33 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313652 | 7.5 |
HIGH
Network |
microsoft |
windows_server_2012 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_server_2019 |
Windows Hyper-V Denial of Service Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43567 | 2024-10-18 03:29 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313653 | 5.4 |
MEDIUM
Network |
filemanagerpro | file_manager | The File Manager Pro plugin for WordPress is vulnerable to Limited JavaScript File Upload in all versions up to, and including, 8.3.9. This is due to a lack of proper checks on allowed file types. Th… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2024-8918 | 2024-10-18 03:25 | 2024-10-16 | Show | GitHub Exploit DB Packet Storm |
| 313654 | 6.5 |
MEDIUM
Adjacent |
microsoft |
windows_server_2022_23h2 windows_10_1809 windows_server_2019 windows_11_21h2 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 |
Windows Mobile Broadband Driver Denial of Service Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43540 | 2024-10-18 03:25 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313655 | 8.8 |
HIGH
Network |
filemanagerpro | file_manager | The File Manager Pro plugin for WordPress is vulnerable to arbitrary backup file downloads and uploads due to missing file type validation via the 'mk_file_folder_manager_shortcode' ajax action in al… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2024-8746 | 2024-10-18 03:22 | 2024-10-16 | Show | GitHub Exploit DB Packet Storm |
| 313656 | 8.8 |
HIGH
Network |
filemanagerpro | file_manager | The File Manager Pro plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 8.3.9. This is due to missing or incorrect nonce validation on the 'mk_file… |
CWE-352
Origin Validation Error |
CVE-2024-8507 | 2024-10-18 03:20 | 2024-10-16 | Show | GitHub Exploit DB Packet Storm |
| 313657 | 7.8 |
HIGH
Local |
microsoft | windows_11_24h2 | Windows Kernel Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43527 | 2024-10-18 03:18 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313658 | 7.8 |
HIGH
Local |
microsoft |
office 365_apps office_long_term_servicing_channel |
Microsoft Office Visio Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43505 | 2024-10-18 03:16 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313659 | 5.9 |
MEDIUM
Network |
- | - | An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a network-based, unauthenticated attacker to… |
CWE-755
Improper Handling of Exceptional Conditions |
CVE-2024-47491 | 2024-10-18 03:15 | 2024-10-12 | Show | GitHub Exploit DB Packet Storm |
| 313660 | 6.5 |
MEDIUM
Adjacent |
gotenna | gotenna_pro | The goTenna Pro App allows unauthenticated attackers to remotely update the local public keys used for P2P and group messages. It is advised to update your app to the current release for enhanced e… |
CWE-306
Missing Authentication for Critical Function |
CVE-2024-47130 | 2024-10-18 03:15 | 2024-09-27 | Show | GitHub Exploit DB Packet Storm |