Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1151 8.8 重要
Network
pyLoad pyLoad pyLoadにおけるセッション期限に関する脆弱性 CWE-613
不適切なセッション期限
CVE-2026-41133 2026-04-30 12:27 2026-04-22 Show GitHub Exploit DB Packet Storm
1152 8.2 重要
Network
Minio Inc. Minio Minio Inc.のMinioにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-41145 2026-04-30 12:27 2026-04-22 Show GitHub Exploit DB Packet Storm
1153 9.8 緊急
Network
JetBrains Junie JetBrainsのJunieにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-41153 2026-04-30 12:27 2026-04-17 Show GitHub Exploit DB Packet Storm
1154 8.1 重要
Network
Statamic Statamic Statamicにおけるクラスまたはコードを選択する外部から制御された入力の使用に関する脆弱性 CWE-470
クラスまたはコードを選択する外部から制御された入力の使用
CVE-2026-41175 2026-04-30 12:27 2026-04-22 Show GitHub Exploit DB Packet Storm
1155 9.8 緊急
Network
Rclone Rclone Rcloneにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-41176 2026-04-30 12:27 2026-04-23 Show GitHub Exploit DB Packet Storm
1156 9.8 緊急
Network
Rclone Rclone Rcloneにおける複数の脆弱性 CWE-306
CWE-78
CVE-2026-41179 2026-04-30 12:27 2026-04-23 Show GitHub Exploit DB Packet Storm
1157 9.9 緊急
Network
Froxlor Froxlor FroxlorにおけるPHP リモートファイルインクルージョンの脆弱性 CWE-98
PHP リモートファイルインクルージョン
CVE-2026-41228 2026-04-30 12:27 2026-04-23 Show GitHub Exploit DB Packet Storm
1158 9.1 緊急
Network
Froxlor Froxlor Froxlorにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-41229 2026-04-30 12:27 2026-04-23 Show GitHub Exploit DB Packet Storm
1159 8.5 重要
Network
Froxlor Froxlor FroxlorにおけるCRLF インジェクションの脆弱性 CWE-93
CRLF インジェクション
CVE-2026-41230 2026-04-30 12:27 2026-04-23 Show GitHub Exploit DB Packet Storm
1160 7.5 重要
Network
Froxlor Froxlor Froxlorにおけるリンク解釈に関する脆弱性 CWE-59
リンク解釈の問題
CVE-2026-41231 2026-04-30 12:27 2026-04-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313201 - - - Incorrect garbage collection interaction could have led to a use-after-free. This vulnerability affects Firefox < 129. - CVE-2024-7530 2024-08-9 03:35 2024-08-6 Show GitHub Exploit DB Packet Storm
313202 - - - A vulnerability was discovered in the firmware builds up to 10.10.2.2 in Poly Clariti Manager devices. The firmware contained multiple XSS vulnerabilities in the version of JavaScript used. - CVE-2024-41910 2024-08-9 03:15 2024-08-6 Show GitHub Exploit DB Packet Storm
313203 - - - A SQL injection vulnerability in /smsa/student_login.php in Kashipara Responsive School Management System v1.0 allows an attacker to execute arbitrary SQL commands via the "username" parameter. - CVE-2024-41238 2024-08-9 02:35 2024-08-9 Show GitHub Exploit DB Packet Storm
313204 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… - CVE-2024-7123 2024-08-9 02:15 2024-08-9 Show GitHub Exploit DB Packet Storm
313205 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… - CVE-2024-7121 2024-08-9 02:15 2024-08-9 Show GitHub Exploit DB Packet Storm
313206 - - - Editor code failed to check an attribute value. This could have led to an out-of-bounds read. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1,… - CVE-2024-7522 2024-08-9 01:35 2024-08-6 Show GitHub Exploit DB Packet Storm
313207 - - - A Stored Cross Site Scripting (XSS) vulnerability was found in "/smsa/add_class_submit.php" in Responsive School Management System v3.2.0, which allows remote attackers to execute arbitrary code via … - CVE-2024-41239 2024-08-9 01:15 2024-08-8 Show GitHub Exploit DB Packet Storm
313208 - - - Firmware in KAON AR2140 routers prior to version 4.2.16 is vulnerable to a shell command injection via sending a crafted request to one of the endpoints. In order to exploit this vulnerability, one h… - CVE-2024-3659 2024-08-9 00:35 2024-08-8 Show GitHub Exploit DB Packet Storm
313209 7.8 HIGH
Local
enjayworld enjay_crm An issue in the Hardware info module of IT Solutions Enjay CRM OS v1.0 allows attackers to escape the restricted terminal environment and gain root-level privileges on the underlying system. NVD-CWE-noinfo
CVE-2024-41309 2024-08-9 00:35 2024-08-8 Show GitHub Exploit DB Packet Storm
313210 9.8 CRITICAL
Network
oretnom23 computer_laboratory_management_system SourceCodester Computer Laboratory Management System 1.0 allows admin/category/view_category.php id SQL Injection. CWE-89
SQL Injection
CVE-2024-34480 2024-08-9 00:35 2024-08-8 Show GitHub Exploit DB Packet Storm