Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
421 4.3 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-3637 2026-05-21 10:52 2026-05-18 Show GitHub Exploit DB Packet Storm
422 9.8 緊急
Network
H2O.ai H2O H2O.aiのH2Oにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-3960 2026-05-21 10:52 2026-04-23 Show GitHub Exploit DB Packet Storm
423 8.4 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Office Long Term Servicing Channel (LTSC)
Microsoft Office のリモート コードが実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40358 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
424 7.8 重要
Local
マイクロソフト Microsoft Office Online Server
Microsoft Excel
Microsoft Office
Office Long Term Servicing Channel (LTSC)
Microsoft 365 Apps
Microsoft Excel のリモートでコードが実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40359 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
425 7.8 重要
Local
マイクロソフト Microsoft Office Online Server
Microsoft Excel
Microsoft Office
Office Long Term Servicing Channel (LTSC)
Microsoft 365 Apps
Microsoft Excel の情報漏えいの脆弱性 CWE-125
境界外読み取り
CVE-2026-40360 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
426 8.4 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Microsoft Word
Office Long Term Servicing Channel (LTSC)
Microsoft Word のリモートでコードが実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40361 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
427 7.8 重要
Local
マイクロソフト Microsoft Office Online Server
Microsoft Excel
Microsoft Office
Office Long Term Servicing Channel (LTSC)
Microsoft 365 Apps
Microsoft Excel のリモートでコードが実行される脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-40362 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
428 8.4 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Office Long Term Servicing Channel (LTSC)
Microsoft Office のリモート コードが実行される脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-40363 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
429 8.4 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Microsoft Word
Office Long Term Servicing Channel (LTSC)
Microsoft Word のリモートでコードが実行される脆弱性 CWE-122
CWE-843
CWE-908
CVE-2026-40364 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
430 8.4 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Microsoft Word
Office Long Term Servicing Channel (LTSC)
Microsoft Word のリモートでコードが実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40366 2026-05-21 10:52 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311321 - - - A vulnerability in the Cisco FXOS CLI feature on specific hardware platforms for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an auth… - CVE-2024-20370 2024-10-25 21:56 2024-10-24 Show GitHub Exploit DB Packet Storm
311322 - - - A vulnerability was found in PHPGurukul Medical Card Generation System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/changeimage.php of t… - CVE-2024-10297 2024-10-25 21:56 2024-10-24 Show GitHub Exploit DB Packet Storm
311323 - - - Botan before 3.6.0, when certain GCC versions are used, has a compiler-induced secret-dependent operation in lib/utils/donna128.h in donna128 (used in Chacha-Poly1305 and x25519). An addition can be … - CVE-2024-50383 2024-10-25 21:56 2024-10-24 Show GitHub Exploit DB Packet Storm
311324 - - - Botan before 3.6.0, when certain LLVM versions are used, has compiler-induced secret-dependent control flow in lib/utils/ghash/ghash.cpp in GHASH in AES-GCM. There is a branch instead of an XOR with … - CVE-2024-50382 2024-10-25 21:56 2024-10-24 Show GitHub Exploit DB Packet Storm
311325 - - - A vulnerability in the TCP/IP traffic handling function of the Snort Detection Engine of Cisco Firepower Threat Defense (FTD) Software and Cisco FirePOWER Services could allow an unauthenticated, rem… - CVE-2024-20351 2024-10-25 21:56 2024-10-24 Show GitHub Exploit DB Packet Storm
311326 - - - Multiple Cisco products are affected by a vulnerability in the rate filtering feature of the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured rate li… - CVE-2024-20342 2024-10-25 21:56 2024-10-24 Show GitHub Exploit DB Packet Storm
311327 - - - AshPostgres is the PostgreSQL data layer for Ash Framework. Starting in version 2.0.0 and prior to version 2.4.10, in certain very specific situations, it was possible for the policies of an update a… CWE-552
 Files or Directories Accessible to External Parties
CVE-2024-49756 2024-10-25 21:56 2024-10-24 Show GitHub Exploit DB Packet Storm
311328 - - - A vulnerability in the TLS processing feature of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series could allow an unauthenticated, remote attacker to cause a denial of ser… - CVE-2024-20339 2024-10-25 21:56 2024-10-24 Show GitHub Exploit DB Packet Storm
311329 - - - A vulnerability in the Snort 2 and Snort 3 TCP and UDP detection engine of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Appliances could allow an unauthenticated, rem… - CVE-2024-20330 2024-10-25 21:56 2024-10-24 Show GitHub Exploit DB Packet Storm
311330 - - - A vulnerability in the SSH subsystem of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker to execute operating system commands as root. This vulnerabil… - CVE-2024-20329 2024-10-25 21:56 2024-10-24 Show GitHub Exploit DB Packet Storm