Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
851 7.8 重要
Local
マイクロソフト Kiota マイクロソフトのKiotaにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-41134 2026-05-18 12:05 2026-04-22 Show GitHub Exploit DB Packet Storm
852 8.2 重要
Network
Kata Containers Confidential Containers
Kata Containers
Kata ContainersのConfidential Containers等の複数製品におけるUNIX Symbolic Link のフォローに関する脆弱性 CWE-61
UNIX Symbolic Link のフォロー
CVE-2026-41326 2026-05-18 12:05 2026-04-24 Show GitHub Exploit DB Packet Storm
853 8.4 重要
Local
opentelemetry OpenTelemetry eBPF Instrumentation opentelemetryのOpenTelemetry eBPF Instrumentationにおける複数の脆弱性 CWE-22
CWE-59
CVE-2026-41433 2026-05-18 12:05 2026-04-24 Show GitHub Exploit DB Packet Storm
854 5.3 警告
Network
RedwoodSDK RedwoodSDK RedwoodjsのRedwoodSDKにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-42190 2026-05-18 12:05 2026-05-8 Show GitHub Exploit DB Packet Storm
855 7.2 重要
Network
FileMaker, Inc Claris FileMaker Cloud Claris International Inc. (旧 FileMaker, Inc)のClaris FileMaker Cloudにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-43680 2026-05-18 12:05 2026-05-12 Show GitHub Exploit DB Packet Storm
856 7.2 重要
Network
FileMaker, Inc Claris FileMaker Cloud Claris International Inc. (旧 FileMaker, Inc)のClaris FileMaker CloudにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-43685 2026-05-18 12:05 2026-05-12 Show GitHub Exploit DB Packet Storm
857 6.5 警告
Network
Shellhub Shellhub Shellhubにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-44426 2026-05-18 12:05 2026-05-13 Show GitHub Exploit DB Packet Storm
858 9.8 緊急
Network
Yarbo Lawn Mower Pro Firmware
Lawn Mower Firmware
YarboのLawn Mower Firmware等の複数製品における非公開の機能に関する脆弱性 CWE-912
CWE-noinfo
CVE-2026-7413 2026-05-18 12:05 2026-05-7 Show GitHub Exploit DB Packet Storm
859 9.8 緊急
Network
Yarbo Lawn Mower Pro Firmware
Lawn Mower Firmware
YarboのLawn Mower Firmware等の複数製品におけるハードコードされた認証情報の使用に関する脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2026-7414 2026-05-18 12:05 2026-05-7 Show GitHub Exploit DB Packet Storm
860 9.8 緊急
Network
Yarbo Lawn Mower Pro Firmware
Lawn Mower Firmware
YarboのLawn Mower Firmware等の複数製品における重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-7415 2026-05-18 12:05 2026-05-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311811 6.5 MEDIUM
Network
- - An Allocation of Resources Without Limits or Throttling vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved allows an authenticated, network-based attacker t… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2024-47505 2024-10-15 21:58 2024-10-12 Show GitHub Exploit DB Packet Storm
311812 7.5 HIGH
Network
- - An Improper Validation of Specified Type of Input vulnerability in the packet forwarding engine (pfe) Juniper Networks Junos OS on SRX5000 Series allows an unauthenticated, network based attacker to … CWE-1287
 Improper Validation of Specified Type of Input
CVE-2024-47504 2024-10-15 21:58 2024-10-12 Show GitHub Exploit DB Packet Storm
311813 7.8 HIGH
Local
- - A DLL hijack vulnerability was reported in Lenovo Service Framework that could allow a local attacker to execute code with elevated privileges. - CVE-2024-33582 2024-10-15 21:58 2024-10-12 Show GitHub Exploit DB Packet Storm
311814 7.8 HIGH
Local
- - A DLL hijack vulnerability was reported in Lenovo PC Manager AI intelligent scenario that could allow a local attacker to execute code with elevated privileges. - CVE-2024-33581 2024-10-15 21:58 2024-10-12 Show GitHub Exploit DB Packet Storm
311815 7.8 HIGH
Local
- - A DLL hijack vulnerability was reported in Lenovo Personal Cloud that could allow a local attacker to execute code with elevated privileges. - CVE-2024-33580 2024-10-15 21:58 2024-10-12 Show GitHub Exploit DB Packet Storm
311816 7.8 HIGH
Local
- - A DLL hijack vulnerability was reported in Lenovo Baiying that could allow a local attacker to execute code with elevated privileges. - CVE-2024-33579 2024-10-15 21:58 2024-10-12 Show GitHub Exploit DB Packet Storm
311817 7.8 HIGH
Local
- - A DLL hijack vulnerability was reported in Lenovo Leyun that could allow a local attacker to execute code with elevated privileges. - CVE-2024-33578 2024-10-15 21:58 2024-10-12 Show GitHub Exploit DB Packet Storm
311818 6.5 MEDIUM
Adjacent
- - An Improper Check for Unusual or Exceptional Conditions vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX4600 and SRX5000 Series allows an unauthenticated and lo… CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2024-47503 2024-10-15 21:58 2024-10-12 Show GitHub Exploit DB Packet Storm
311819 7.5 HIGH
Network
- - An Allocation of Resources Without Limits or Throttling vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthenticated, network based attacker to cause a Denial of Service… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2024-47502 2024-10-15 21:58 2024-10-12 Show GitHub Exploit DB Packet Storm
311820 5.5 MEDIUM
Local
- - A NULL Pointer Dereference vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS on MX304, MX with MPC10/11/LC9600, and EX9200 with EX9200-15C allows a locally authentica… CWE-476
 NULL Pointer Dereference
CVE-2024-47501 2024-10-15 21:58 2024-10-12 Show GitHub Exploit DB Packet Storm