Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
451 9.8 緊急
Network
openwebui open webui openwebuiのopen webuiにおける複数の脆弱性 CWE-22
CWE-434
CVE-2026-44566 2026-05-21 10:51 2026-05-15 Show GitHub Exploit DB Packet Storm
452 7.3 重要
Network
openwebui open webui openwebuiのopen webuiにおける複数の脆弱性 CWE-602
CWE-863
CVE-2026-44567 2026-05-21 10:51 2026-05-15 Show GitHub Exploit DB Packet Storm
453 7.1 重要
Network
openwebui open webui openwebuiのopen webuiにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-44569 2026-05-21 10:51 2026-05-15 Show GitHub Exploit DB Packet Storm
454 9.9 緊急
Network
traefik traefik traefikにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-44774 2026-05-21 10:51 2026-05-15 Show GitHub Exploit DB Packet Storm
455 6.5 警告
Network
Apache Software Foundation Apache OFBiz Apache Software FoundationのApache OFBizにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-45187 2026-05-21 10:50 2026-05-19 Show GitHub Exploit DB Packet Storm
456 5.4 警告
Network
openwebui open webui openwebuiのopen webuiにおける動的に決定されたオブジェクト属性の不適切に制御された変更に関する脆弱性 CWE-915
動的に決定されたオブジェクト属性の不適切に制御された変更
CVE-2026-45396 2026-05-21 10:50 2026-05-15 Show GitHub Exploit DB Packet Storm
457 5.3 警告
Network
openwebui open webui openwebuiのopen webuiにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-45397 2026-05-21 10:50 2026-05-15 Show GitHub Exploit DB Packet Storm
458 7.5 重要
Network
openwebui open webui openwebuiのopen webuiにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-45398 2026-05-21 10:50 2026-05-15 Show GitHub Exploit DB Packet Storm
459 8.5 重要
Network
openwebui open webui openwebuiのopen webuiにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-45400 2026-05-21 10:50 2026-05-15 Show GitHub Exploit DB Packet Storm
460 8.5 重要
Network
openwebui open webui openwebuiのopen webuiにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-45401 2026-05-21 10:50 2026-05-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311411 7.5 HIGH
Network
microsoft windows_server_2012
windows_server_2016
windows_server_2022_23h2
windows_server_2022
windows_server_2019
Windows Hyper-V Denial of Service Vulnerability NVD-CWE-noinfo
CVE-2024-43567 2024-10-18 03:29 2024-10-9 Show GitHub Exploit DB Packet Storm
311412 5.4 MEDIUM
Network
filemanagerpro file_manager The File Manager Pro plugin for WordPress is vulnerable to Limited JavaScript File Upload in all versions up to, and including, 8.3.9. This is due to a lack of proper checks on allowed file types. Th… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-8918 2024-10-18 03:25 2024-10-16 Show GitHub Exploit DB Packet Storm
311413 6.5 MEDIUM
Adjacent
microsoft windows_server_2022_23h2
windows_10_1809
windows_server_2019
windows_11_21h2
windows_10_21h2
windows_11_22h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
Windows Mobile Broadband Driver Denial of Service Vulnerability NVD-CWE-noinfo
CVE-2024-43540 2024-10-18 03:25 2024-10-9 Show GitHub Exploit DB Packet Storm
311414 8.8 HIGH
Network
filemanagerpro file_manager The File Manager Pro plugin for WordPress is vulnerable to arbitrary backup file downloads and uploads due to missing file type validation via the 'mk_file_folder_manager_shortcode' ajax action in al… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-8746 2024-10-18 03:22 2024-10-16 Show GitHub Exploit DB Packet Storm
311415 8.8 HIGH
Network
filemanagerpro file_manager The File Manager Pro plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 8.3.9. This is due to missing or incorrect nonce validation on the 'mk_file… CWE-352
 Origin Validation Error
CVE-2024-8507 2024-10-18 03:20 2024-10-16 Show GitHub Exploit DB Packet Storm
311416 7.8 HIGH
Local
microsoft windows_11_24h2 Windows Kernel Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-43527 2024-10-18 03:18 2024-10-9 Show GitHub Exploit DB Packet Storm
311417 7.8 HIGH
Local
microsoft office
365_apps
office_long_term_servicing_channel
Microsoft Office Visio Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2024-43505 2024-10-18 03:16 2024-10-9 Show GitHub Exploit DB Packet Storm
311418 5.9 MEDIUM
Network
- - An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a network-based, unauthenticated attacker to… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2024-47491 2024-10-18 03:15 2024-10-12 Show GitHub Exploit DB Packet Storm
311419 6.5 MEDIUM
Adjacent
gotenna gotenna_pro The goTenna Pro App allows unauthenticated attackers to remotely update the local public keys used for P2P and group messages. It is advised to update your app to the current release for enhanced e… CWE-306
Missing Authentication for Critical Function
CVE-2024-47130 2024-10-18 03:15 2024-09-27 Show GitHub Exploit DB Packet Storm
311420 4.3 MEDIUM
Adjacent
gotenna gotenna_pro The goTenna Pro App does not inject extra characters into broadcasted frames to obfuscate the length of messages. This makes it possible to tell the length of the payload regardless of the encrypti… CWE-203
 Information Exposure Through Discrepancy
CVE-2024-47129 2024-10-18 03:15 2024-09-27 Show GitHub Exploit DB Packet Storm