|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 24, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 3461 | 6.6 |
警告
Local |
Veeam | one | サムスンのOneにおける整数オーバーフローの脆弱性 |
CWE-190
整数オーバーフローまたはラップアラウンド |
CVE-2026-40450 | 2026-04-30 12:13 | 2026-04-22 | Show | GitHub Exploit DB Packet Storm |
| 3462 | 8.2 |
重要
Network |
UltraDAG | UltraDAG | UltraDAGにおける複数の脆弱性 |
CWE-460 CWE-696 |
CVE-2026-40583 | 2026-04-30 12:13 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 3463 | 7.5 |
重要
Network |
RansomLook | RansomLook | RansomLookにおける情報漏えいに関する脆弱性 |
CWE-200
情報漏えい |
CVE-2026-40584 | 2026-04-30 12:13 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 3464 | 5.6 |
警告
Local |
Home Assistant Ecosystem | Home Assistant Command-line Interface (hass-cli) | Home Assistant EcosystemのHome Assistant Command-line Interface (hass-cli)における複数の脆弱性 |
CWE-1336 CWE-94 |
CVE-2026-40602 | 2026-04-30 12:13 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 3465 | 5.5 |
警告
Local |
Dayuan Jiang (DayuanJiang) | Next AI Draw.io | Dayuan Jiang (DayuanJiang)のNext AI Draw.ioにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 |
CWE-770
制限またはスロットリング無しのリソースの割り当て |
CVE-2026-40608 | 2026-04-30 12:12 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 3466 | 8.1 |
重要
Network |
Zcash Foundation |
Zebra-consensus Zebrad |
Zcash FoundationのZebra-consensus等の複数製品における誤った要素を使用した比較に関する脆弱性 |
CWE-1025
誤った要素を使用した比較 |
CVE-2026-40880 | 2026-04-30 12:12 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 3467 | 7.5 |
重要
Network |
Zcash Foundation |
zebra-network Zebrad |
Zcash Foundationのzebra-network等の複数製品における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 |
CWE-770
制限またはスロットリング無しのリソースの割り当て |
CVE-2026-40881 | 2026-04-30 12:12 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 3468 | 6.5 |
警告
Network |
Frappe | Frappe HR | FrappeのFrappe HRにおけるアクセス制御に関する脆弱性 |
CWE-284
不適切なアクセス制御 |
CVE-2026-40888 | 2026-04-30 12:12 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 3469 | 6.5 |
警告
Network |
Frappe | Frappe HR | FrappeのFrappe HRにおけるアクセス制御に関する脆弱性 |
CWE-284
不適切なアクセス制御 |
CVE-2026-40889 | 2026-04-30 12:12 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 3470 | 8.8 |
重要
Network |
Jos de Jong | math.js | Math.jsにおける動的に決定されたオブジェクト属性の不適切に制御された変更に関する脆弱性 |
CWE-915
動的に決定されたオブジェクト属性の不適切に制御された変更 |
CVE-2026-40897 | 2026-04-30 12:12 | 2026-04-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 24, 2026, 4:05 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 314681 | 4.3 |
MEDIUM
Network |
loway | queuemetrics | Loway - CWE-444: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') |
CWE-444
HTTP Request Smuggling |
CVE-2024-42342 | 2024-09-12 00:56 | 2024-09-8 | Show | GitHub Exploit DB Packet Storm |
| 314682 | 5.5 |
MEDIUM
Local |
linux | linux_kernel | In the Linux kernel, the following vulnerability has been resolved: drm/i915/gt: Cleanup partial engine discovery failures If we abort driver initialisation in the middle of gt/engine discovery, so… |
CWE-459
Incomplete Cleanup |
CVE-2022-48893 | 2024-09-12 00:55 | 2024-08-21 | Show | GitHub Exploit DB Packet Storm |
| 314683 | 6.5 |
MEDIUM
Network |
learningdigital | orca_hcm | Orca HCM from LEARNING DIGITA does not properly restrict a specific parameter of the file download functionality, allowing a remote attacker with regular privileges to download arbitrary system files. |
CWE-22
Path Traversal |
CVE-2024-8585 | 2024-09-12 00:53 | 2024-09-9 | Show | GitHub Exploit DB Packet Storm |
| 314684 | 7.8 |
HIGH
Local |
iobit | driver_booster | A vulnerability was found in IObit Driver Booster 11.0.0.0. It has been rated as critical. Affected by this issue is some unknown functionality in the library VCL120.BPL of the component BPL Handler.… |
CWE-427
Uncontrolled Search Path Element |
CVE-2024-7325 | 2024-09-12 00:42 | 2024-08-1 | Show | GitHub Exploit DB Packet Storm |
| 314685 | 5.5 |
MEDIUM
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1380_firmware exynos_1330_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Mobile Processor, Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi… |
CWE-125
Out-of-bounds Read |
CVE-2024-27364 | 2024-09-12 00:27 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314686 | 5.5 |
MEDIUM
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1380_firmware exynos_1330_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor Exynos Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the… |
CWE-125
Out-of-bounds Read |
CVE-2024-27367 | 2024-09-12 00:26 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314687 | 5.5 |
MEDIUM
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1380_firmware exynos_1330_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor, Wearable Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In th… |
CWE-125
Out-of-bounds Read |
CVE-2024-27366 | 2024-09-12 00:26 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314688 | 7.8 |
HIGH
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1330_firmware exynos_1380_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_get_scan_extra_ies(), there is no input validation check on… |
CWE-787
Out-of-bounds Write |
CVE-2024-27383 | 2024-09-12 00:25 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314689 | 5.5 |
MEDIUM
Local |
samsung |
exynos_980_firmware exynos_850_firmware exynos_1080_firmware exynos_1280_firmware exynos_1380_firmware exynos_1330_firmware exynos_1480_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor Exynos Mobile Processor, Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, E… |
CWE-125
Out-of-bounds Read |
CVE-2024-27368 | 2024-09-12 00:25 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 314690 | 7.8 |
HIGH
Local |
samsung |
exynos_1080_firmware exynos_1280_firmware exynos_1330_firmware exynos_1380_firmware exynos_1480_firmware exynos_850_firmware exynos_980_firmware exynos_w920_firmware exynos_w9… |
An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_rx_range_done_ind(), there is no input validation check on … |
CWE-787
Out-of-bounds Write |
CVE-2024-27387 | 2024-09-12 00:23 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |