Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3631 5.8 警告
Network
Pavel Zbornik (pavelzbornik) whisperX REST API Pavel Zbornik (pavelzbornik)のwhisperX REST APIにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-34981 2026-04-30 12:13 2026-04-6 Show GitHub Exploit DB Packet Storm
3632 7.5 重要
Network
Distribution Distribution Distributionにおけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-35172 2026-04-30 12:13 2026-04-6 Show GitHub Exploit DB Packet Storm
3633 7.5 重要
Network
UnJS Team defu UnJS Teamのdefuにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-35209 2026-04-30 12:13 2026-04-6 Show GitHub Exploit DB Packet Storm
3634 7.5 重要
Network
オラクル Oracle Financial Services Transaction Filtering オラクルのOracle Financial Services Transaction Filteringにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35231 2026-04-30 12:13 2026-04-21 Show GitHub Exploit DB Packet Storm
3635 6.3 警告
Local
Flatpak XDG Desktop Portal (xdg-desktop-portal) FlatpakのXDG Desktop Portal (xdg-desktop-portal)におけるUNIX Symbolic Link のフォローに関する脆弱性 CWE-61
UNIX Symbolic Link のフォロー
CVE-2026-40354 2026-04-30 12:13 2026-04-11 Show GitHub Exploit DB Packet Storm
3636 5.3 警告
Local
Veeam one サムスンのOneにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-40448 2026-04-30 12:13 2026-04-22 Show GitHub Exploit DB Packet Storm
3637 6.6 警告
Local
Veeam one サムスンのOneにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-40449 2026-04-30 12:13 2026-04-22 Show GitHub Exploit DB Packet Storm
3638 6.6 警告
Local
Veeam one サムスンのOneにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-40450 2026-04-30 12:13 2026-04-22 Show GitHub Exploit DB Packet Storm
3639 8.2 重要
Network
UltraDAG UltraDAG UltraDAGにおける複数の脆弱性 CWE-460
CWE-696
CVE-2026-40583 2026-04-30 12:13 2026-04-21 Show GitHub Exploit DB Packet Storm
3640 7.5 重要
Network
RansomLook RansomLook RansomLookにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-40584 2026-04-30 12:13 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
451 8.6 HIGH
Network
mozilla firefox
thunderbird
Information disclosure, sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. CWE-668
CWE-693
 Exposure of Resource to Wrong Sphere
 Protection Mechanism Failure
CVE-2026-8958 2026-05-21 00:01 2026-05-19 Show GitHub Exploit DB Packet Storm
452 9.3 CRITICAL
Network
mozilla firefox
thunderbird
Same-origin policy bypass in the Networking: HTTP component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. CWE-346
 Origin Validation Error
CVE-2026-8950 2026-05-21 00:00 2026-05-19 Show GitHub Exploit DB Packet Storm
453 7.5 HIGH
Network
mozilla firefox
thunderbird
Spoofing issue in the Web Speech component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. CWE-290
 Authentication Bypass by Spoofing
CVE-2026-8963 2026-05-20 23:57 2026-05-19 Show GitHub Exploit DB Packet Storm
454 7.5 HIGH
Network
mozilla firefox
thunderbird
Spoofing issue in the Popup Blocker component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-8964 2026-05-20 23:57 2026-05-19 Show GitHub Exploit DB Packet Storm
455 7.5 HIGH
Network
mozilla firefox
thunderbird
Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. CWE-400
 Uncontrolled Resource Consumption
CVE-2026-8968 2026-05-20 23:56 2026-05-19 Show GitHub Exploit DB Packet Storm
456 8.1 HIGH
Network
mozilla firefox
thunderbird
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. CWE-693
 Protection Mechanism Failure
CVE-2026-8969 2026-05-20 23:55 2026-05-19 Show GitHub Exploit DB Packet Storm
457 9.1 CRITICAL
Network
mozilla firefox
thunderbird
Same-origin policy bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. CWE-942
 Permissive Cross-domain Policy with Untrusted Domains
CVE-2026-8948 2026-05-20 23:53 2026-05-19 Show GitHub Exploit DB Packet Storm
458 7.5 HIGH
Network
mozilla firefox
thunderbird
Integer overflow in the Widget: Win32 component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. CWE-190
 Integer Overflow or Wraparound
CVE-2026-8949 2026-05-20 23:49 2026-05-19 Show GitHub Exploit DB Packet Storm
459 6.5 MEDIUM
Network
mozilla firefox Spoofing issue in the Toolbar component in Firefox for Android. This vulnerability was fixed in Firefox 151. CWE-290
 Authentication Bypass by Spoofing
CVE-2026-8951 2026-05-20 23:48 2026-05-19 Show GitHub Exploit DB Packet Storm
460 6.5 MEDIUM
Network
mozilla firefox
thunderbird
Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. CWE-346
 Origin Validation Error
CVE-2026-8971 2026-05-20 23:41 2026-05-19 Show GitHub Exploit DB Packet Storm