Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
961 5.4 警告
Network
openwebui open webui openwebuiのopen webuiにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-44564 2026-05-20 13:27 2026-05-15 Show GitHub Exploit DB Packet Storm
962 4.8 警告
Network
openwebui open webui openwebuiのopen webuiにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-44568 2026-05-20 13:27 2026-05-15 Show GitHub Exploit DB Packet Storm
963 8.3 重要
Network
openwebui open webui openwebuiのopen webuiにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-44570 2026-05-20 13:27 2026-05-15 Show GitHub Exploit DB Packet Storm
964 6.5 警告
Network
openwebui open webui openwebuiのopen webuiにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-44571 2026-05-20 13:27 2026-05-15 Show GitHub Exploit DB Packet Storm
965 7.3 重要
Network
openwebui open webui openwebuiのopen webuiにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-44721 2026-05-20 13:27 2026-05-15 Show GitHub Exploit DB Packet Storm
966 5.5 警告
Local
Vim Vim Vimにおける複数の脆弱性 CWE-122
CWE-190
CVE-2026-45130 2026-05-20 13:27 2026-05-8 Show GitHub Exploit DB Packet Storm
967 5.4 警告
Network
openwebui open webui openwebuiのopen webuiにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-45299 2026-05-20 13:27 2026-05-15 Show GitHub Exploit DB Packet Storm
968 8.1 重要
Network
openwebui open webui openwebuiのopen webuiにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-45301 2026-05-20 13:27 2026-05-15 Show GitHub Exploit DB Packet Storm
969 7.7 重要
Network
openwebui open webui openwebuiのopen webuiにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-45303 2026-05-20 13:27 2026-05-15 Show GitHub Exploit DB Packet Storm
970 6.1 警告
Network
openwebui open webui openwebuiのopen webuiにおける代替 XSS 構文の不適切な無効化に関する脆弱性 CWE-87
代替 XSS 構文の不適切な無効化
CVE-2026-45314 2026-05-20 13:26 2026-05-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311201 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix null-ptr-deref when journal load failed. During the mounting process, if journal_reset() fails because of too short jo… CWE-476
 NULL Pointer Dereference
CVE-2024-49957 2024-11-9 01:15 2024-10-22 Show GitHub Exploit DB Packet Storm
311202 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: nfsd: call cache_put if xdr_reserve_space returns NULL If not enough buffer space available, but idmap_lookup has triggered looku… CWE-476
 NULL Pointer Dereference
CVE-2024-47737 2024-11-9 01:15 2024-10-21 Show GitHub Exploit DB Packet Storm
311203 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: sock_map: Add a cond_resched() in sock_hash_free() Several syzbot soft lockup reports all have in common sock_hash_free() If a m… NVD-CWE-noinfo
CVE-2024-47710 2024-11-9 01:15 2024-10-21 Show GitHub Exploit DB Packet Storm
311204 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: drivers: media: dvb-frontends/rtl2830: fix an out-of-bounds write error Ensure index in rtl2830_pid_filter does not exceed 31 to … CWE-787
 Out-of-bounds Write
CVE-2024-47697 2024-11-9 01:15 2024-10-21 Show GitHub Exploit DB Packet Storm
311205 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: fbdev: pxafb: Fix possible use after free in pxafb_task() In the pxafb_probe function, it calls the pxafb_init_fbinfo function, a… CWE-416
 Use After Free
CVE-2024-49924 2024-11-9 01:15 2024-10-22 Show GitHub Exploit DB Packet Storm
311206 7.0 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: jfs: Fix uaf in dbFreeBits [syzbot reported] ================================================================== BUG: KASAN: slab-… CWE-416
 Use After Free
CVE-2024-49903 2024-11-9 01:15 2024-10-22 Show GitHub Exploit DB Packet Storm
311207 7.1 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: jfs: Fix uninit-value access of new_ea in ea_buffer syzbot reports that lzo1x_1_do_compress is using uninit-value: =============… CWE-908
 Use of Uninitialized Resource
CVE-2024-49900 2024-11-9 01:15 2024-10-22 Show GitHub Exploit DB Packet Storm
311208 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix index out of bounds in degamma hardware format translation Fixes index out of bounds issue in `cm_helper_tra… CWE-129
 Improper Validation of Array Index
CVE-2024-49894 2024-11-9 01:15 2024-10-22 Show GitHub Exploit DB Packet Storm
311209 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ext4: fix slab-use-after-free in ext4_split_extent_at() We hit the following use-after-free: ===================================… CWE-416
 Use After Free
CVE-2024-49884 2024-11-9 01:15 2024-10-22 Show GitHub Exploit DB Packet Storm
311210 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ext4: aovid use-after-free in ext4_ext_insert_extent() As Ojaswin mentioned in Link, in ext4_ext_insert_extent(), if the path is … CWE-416
 Use After Free
CVE-2024-49883 2024-11-9 01:15 2024-10-22 Show GitHub Exploit DB Packet Storm