Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
831 4.7 警告
Network
Macaron project Macaron オラクルのMacaronにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-35253 2026-05-8 12:10 2026-05-6 Show GitHub Exploit DB Packet Storm
832 6.1 警告
Local
オラクル Oracle Cloud Infrastructure CLI オラクルのOracle Cloud Infrastructure CLIにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-35254 2026-05-8 12:10 2026-05-6 Show GitHub Exploit DB Packet Storm
833 6.6 警告
Local
オラクル Oracle Cloud Native Environment (Oracle CNE) Command Line Interface (CLI) オラクルのOracle Cloud Native Environment (Oracle CNE) Command Line Interface (CLI)におけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-35255 2026-05-8 12:10 2026-05-6 Show GitHub Exploit DB Packet Storm
834 5.5 警告
Local
ikea DIRIGERA Firmware ikeaのDIRIGERA Firmwareにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-3588 2026-05-8 12:10 2026-03-9 Show GitHub Exploit DB Packet Storm
835 10 緊急
Network
Unisys WebPerfect Image Suite UnisysのWebPerfect Image Suiteにおけるフィルタリングの回避に関する脆弱性 CWE-441
フィルタリング回避
CVE-2026-39906 2026-05-8 12:10 2026-04-14 Show GitHub Exploit DB Packet Storm
836 10 緊急
Network
Unisys WebPerfect Image Suite UnisysのWebPerfect Image Suiteにおけるファイル名やパス名の外部制御に関する脆弱性 CWE-73
ファイル名やパス名の外部制御
CVE-2026-39907 2026-05-8 12:10 2026-04-14 Show GitHub Exploit DB Packet Storm
837 7.5 重要
Network
ZTE ZXESM iEMS ZTEのZXESM iEMSにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-40436 2026-05-8 12:10 2026-04-13 Show GitHub Exploit DB Packet Storm
838 7.5 重要
Network
MIYAGAWA (Tatsuhiko Miyagawa) Starman MIYAGAWA (Tatsuhiko Miyagawa)のStarmanにおけるHTTP リクエストスマグリングに関する脆弱性 CWE-444
HTTP リクエストスマグリング
CVE-2026-40560 2026-05-8 12:10 2026-04-29 Show GitHub Exploit DB Packet Storm
839 5.3 警告
Network
Kazuho Oku (kazuho) Starlet Kazuho Oku (kazuho)のStarletにおけるHTTP リクエストスマグリングに関する脆弱性 CWE-444
HTTP リクエストスマグリング
CVE-2026-40561 2026-05-8 12:10 2026-05-3 Show GitHub Exploit DB Packet Storm
840 7.5 重要
Network
NERDVANA (Michael Conrad) Crypt-SecretBuffer NERDVANA (Michael Conrad)のCrypt-SecretBufferにおけるタイミングの違いに起因する情報漏えいに関する脆弱性 CWE-208
タイミングの違いに起因する情報漏えい
CVE-2026-5086 2026-05-8 12:10 2026-04-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1081 9.8 CRITICAL
Network
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: do not pass flow_id to set_rps_cpu() Blamed commit made the assumption that the RPS table for each receive queue would have … Update CWE-787
 Out-of-bounds Write
CVE-2026-43208 2026-05-12 04:59 2026-05-6 Show GitHub Exploit DB Packet Storm
1082 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: tracing: ring-buffer: Fix to check event length before using Check the event length before adding it for accessing next index in … Update NVD-CWE-noinfo
CVE-2026-43210 2026-05-12 04:58 2026-05-6 Show GitHub Exploit DB Packet Storm
1083 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: PCI: Fix pci_slot_trylock() error handling Commit a4e772898f8b ("PCI: Add missing bridge lock to pci_bus_lock()") delegates the b… Update CWE-667
 Improper Locking
CVE-2026-43211 2026-05-12 04:58 2026-05-6 Show GitHub Exploit DB Packet Storm
1084 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: LoongArch: Make cpumask_of_node() robust against NUMA_NO_NODE The arch definition of cpumask_of_node() cannot handle NUMA_NO_NODE… Update NVD-CWE-noinfo
CVE-2026-43212 2026-05-12 04:57 2026-05-6 Show GitHub Exploit DB Packet Storm
1085 7.5 HIGH
Adjacent
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: pci: validate sequence number of TX release report Hardware rarely reports abnormal sequence number in TX release re… Update CWE-476
 NULL Pointer Dereference
CVE-2026-43213 2026-05-12 04:55 2026-05-6 Show GitHub Exploit DB Packet Storm
1086 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Add SRCU protection for reading PDPTRs in __get_sregs2() Add SRCU read-side protection when reading PDPTR registers in … Update NVD-CWE-noinfo
CVE-2026-43214 2026-05-12 04:44 2026-05-6 Show GitHub Exploit DB Packet Storm
1087 8.8 HIGH
Network
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: cifs: Fix locking usage for tcon fields We used to use the cifs_tcp_ses_lock to protect a lot of objects that are not just the se… Update CWE-667
 Improper Locking
CVE-2026-43215 2026-05-12 04:44 2026-05-6 Show GitHub Exploit DB Packet Storm
1088 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: Drop the lock in skb_may_tx_timestamp() skb_may_tx_timestamp() may acquire sock::sk_callback_lock. The lock must not be take… Update CWE-476
 NULL Pointer Dereference
CVE-2026-43216 2026-05-12 04:28 2026-05-6 Show GitHub Exploit DB Packet Storm
1089 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: media: iris: gen2: Add sanity check for session stop In iris_kill_session, inst->state is set to IRIS_INST_ERROR and session_clos… Update CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2026-43217 2026-05-12 04:27 2026-05-6 Show GitHub Exploit DB Packet Storm
1090 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: media: i2c/tw9903: Fix potential memory leak in tw9903_probe() In one of the error paths in tw9903_probe(), the memory allocated … Update CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2026-43218 2026-05-12 04:27 2026-05-6 Show GitHub Exploit DB Packet Storm