Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
721 6.7 警告
Local
デル data domain operating system デルのdata domain operating systemにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-35073 2026-05-11 11:10 2026-04-17 Show GitHub Exploit DB Packet Storm
722 6.7 警告
Local
デル data domain operating system
PowerProtect DP Series Appliance
デルのdata domain operating system等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-35074 2026-05-11 11:10 2026-04-17 Show GitHub Exploit DB Packet Storm
723 6.7 警告
Local
デル data domain operating system
PowerProtect DP Series Appliance
デルのdata domain operating system等の複数製品における引数の挿入または変更に関する脆弱性 CWE-88
引数の挿入または変更
CVE-2026-35153 2026-05-11 11:10 2026-04-17 Show GitHub Exploit DB Packet Storm
724 8.8 重要
Network
Project Jupyter Jupyter Server Project JupyterのJupyter Serverにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-35397 2026-05-11 11:10 2026-05-5 Show GitHub Exploit DB Packet Storm
725 9.6 緊急
Network
マイクロソフト Azure Cloud Shell Azure Cloud Shell Spoofing Vulnerability CWE-77
コマンドインジェクション
CVE-2026-35428 2026-05-11 11:10 2026-05-7 Show GitHub Exploit DB Packet Storm
726 10 緊急
Network
マイクロソフト Azure AI Foundry Azure AI Foundry の特権昇格の脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35435 2026-05-11 11:10 2026-05-7 Show GitHub Exploit DB Packet Storm
727 9.8 緊急
Network
coredns.io CoreDNS The CoreDNS AuthorsのCoreDNSにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-35579 2026-05-11 11:10 2026-05-5 Show GitHub Exploit DB Packet Storm
728 9.8 緊急
Network
Kestra Kestra KestraにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-38428 2026-05-11 11:10 2026-05-5 Show GitHub Exploit DB Packet Storm
729 7.2 重要
Network
Gotenberg, Inc. Gotenberg TheCodingMachineのGotenbergにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-39383 2026-05-11 11:10 2026-05-5 Show GitHub Exploit DB Packet Storm
730 8.8 重要
Network
Apache Software Foundation Apache NiFi Apache Software FoundationのApache NiFiにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-39816 2026-05-11 11:10 2026-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312351 5.5 MEDIUM
Local
apple macos The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.7, macOS Sequoia 15. Processing a maliciously crafted video file may lead to unexpected app termination. NVD-CWE-noinfo
CVE-2024-40845 2024-09-25 00:55 2024-09-17 Show GitHub Exploit DB Packet Storm
312352 5.5 MEDIUM
Local
apple macos
ipados
iphone_os
A privacy issue was addressed with improved handling of temporary files. This issue is fixed in iOS 17.7 and iPadOS 17.7, macOS Ventura 13.7, macOS Sonoma 14.7, macOS Sequoia 15. An app may be able t… NVD-CWE-noinfo
CVE-2024-40844 2024-09-25 00:55 2024-09-17 Show GitHub Exploit DB Packet Storm
312353 7.5 HIGH
Adjacent
canonical anbox_cloud Anbox Management Service, in versions 1.17.0 through 1.23.0, does not validate the TLS certificate provided to it by the Anbox Stream Agent. An attacker must be able to machine-in-the-middle the Anbo… CWE-295
Improper Certificate Validation 
CVE-2024-8287 2024-09-25 00:52 2024-09-19 Show GitHub Exploit DB Packet Storm
312354 5.5 MEDIUM
Local
apple macos
ipados
iphone_os
This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 17.7 and iPadOS 17.7, macOS Ventura 13.7, macOS Sonoma 14.7, macOS Sequoia 15. A shortcut may out… NVD-CWE-noinfo
CVE-2024-44158 2024-09-25 00:50 2024-09-17 Show GitHub Exploit DB Packet Storm
312355 5.5 MEDIUM
Local
apple macos
iphone_os
ipados
visionos
watchos
tvos
An integer overflow was addressed through improved input validation. This issue is fixed in visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, tvOS 18. Processing maliciously crafted web… CWE-190
 Integer Overflow or Wraparound
CVE-2024-44198 2024-09-25 00:45 2024-09-17 Show GitHub Exploit DB Packet Storm
312356 3.3 LOW
Local
apple macos
ipados
iphone_os
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Ventura 13.7, iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sonoma 14.7, macOS… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2024-40791 2024-09-25 00:44 2024-09-17 Show GitHub Exploit DB Packet Storm
312357 5.5 MEDIUM
Local
apple macos A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14.7, macOS Sequoia 15. An app may be able to access protected user data. NVD-CWE-noinfo
CVE-2024-40801 2024-09-25 00:43 2024-09-17 Show GitHub Exploit DB Packet Storm
312358 5.5 MEDIUM
Local
apple macos
ipados
iphone_os
visionos
watchos
tvos
A file access issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.7, iOS 17.7 and iPadOS 17.7, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, … NVD-CWE-noinfo
CVE-2024-40850 2024-09-25 00:41 2024-09-17 Show GitHub Exploit DB Packet Storm
312359 6.1 MEDIUM
Network
dedecms dedecms DedeCMS 5.7.115 is vulnerable to Cross Site Scripting (XSS) via the advertisement code box in the advertisement management module. CWE-79
Cross-site Scripting
CVE-2024-46372 2024-09-25 00:40 2024-09-19 Show GitHub Exploit DB Packet Storm
312360 6.5 MEDIUM
Network
acquia mautic Prior to the patched version, logged in users of Mautic are able to access areas of the application that they should be prevented from accessing. Users could potentially access sensitive data such a… CWE-276
Incorrect Default Permissions 
CVE-2022-25776 2024-09-25 00:19 2024-09-19 Show GitHub Exploit DB Packet Storm