Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1171 7.5 重要
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35246 2026-04-24 11:43 2026-04-21 Show GitHub Exploit DB Packet Storm
1172 6 警告
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35247 2026-04-24 11:43 2026-04-21 Show GitHub Exploit DB Packet Storm
1173 5 警告
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35248 2026-04-24 11:43 2026-04-21 Show GitHub Exploit DB Packet Storm
1174 3.2
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35249 2026-04-24 11:43 2026-04-21 Show GitHub Exploit DB Packet Storm
1175 2.3
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35250 2026-04-24 11:43 2026-04-21 Show GitHub Exploit DB Packet Storm
1176 7.5 重要
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35251 2026-04-24 11:43 2026-04-21 Show GitHub Exploit DB Packet Storm
1177 5.3 警告
Network
WWBN AVideo WWBNのAVideoにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-35449 2026-04-24 11:42 2026-04-6 Show GitHub Exploit DB Packet Storm
1178 8.7 重要
Network
Apostrophe Technologies ApostropheCMS Apostrophe TechnologiesのApostropheCMSにおける複数の脆弱性 CWE-116
CWE-79
CVE-2026-35569 2026-04-24 11:42 2026-04-15 Show GitHub Exploit DB Packet Storm
1179 6.3 警告
Local
Glances project Glances Nicolas Hennion (nicolargo)のGlancesにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-35588 2026-04-24 11:42 2026-04-21 Show GitHub Exploit DB Packet Storm
1180 7.3 重要
Local
Anthropic PBC Claude Code Anthropic PBCのClaude Codeにおける信頼できない検索パスに関する脆弱性 CWE-426
信頼性のない検索パス
CVE-2026-35603 2026-04-24 11:42 2026-04-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 30, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
231 7.3 HIGH
Network
- - A security vulnerability has been detected in Intina47 context-sync up to 2.0.0. This affects an unknown part of the file src/git-integration.ts of the component Git Integration. Such manipulation le… Update CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-7062 2026-04-29 10:00 2026-04-27 Show GitHub Exploit DB Packet Storm
232 7.3 HIGH
Network
- - A vulnerability was detected in code-projects Employee Management System 1.0. This vulnerability affects unknown code of the file /370project/process/eprocess.php of the component Endpoint. Performin… Update CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-7063 2026-04-29 10:00 2026-04-27 Show GitHub Exploit DB Packet Storm
233 7.3 HIGH
Network
- - A flaw has been found in AgentDeskAI browser-tools-mcp up to 1.2.0. This issue affects some unknown processing of the file browser-tools-server/browser-connector.ts. Executing a manipulation can lead… Update CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-7064 2026-04-29 10:00 2026-04-27 Show GitHub Exploit DB Packet Storm
234 7.3 HIGH
Network
- - A vulnerability has been found in BidingCC BuildingAI up to 26.0.1. Impacted is the function uploadRemoteFile of the file packages/core/src/modules/upload/services/file-storage.service.ts of the comp… Update CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-7065 2026-04-29 10:00 2026-04-27 Show GitHub Exploit DB Packet Storm
235 7.3 HIGH
Network
- - A vulnerability was determined in D-Link DIR-822 A_101. The impacted element is the function system of the file /udhcpcd/dhcpd.c of the component udhcpd DHCP Service. This manipulation of the argumen… Update CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7067 2026-04-29 10:00 2026-04-27 Show GitHub Exploit DB Packet Storm
236 8.8 HIGH
Adjacent
- - A vulnerability was identified in D-Link DIR-825 3.00b32. This affects the function NMBD_process of the file sserver.c of the component nmbd. Such manipulation leads to buffer overflow. The attack ca… Update CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7068 2026-04-29 10:00 2026-04-27 Show GitHub Exploit DB Packet Storm
237 7.3 HIGH
Network
- - A vulnerability was found in choieastsea simple-openstack-mcp up to 767b2f4a8154cca344344b9725537a58399e6036. The affected element is the function exec_openstack of the file server.py. The manipulati… Update CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-7066 2026-04-29 10:00 2026-04-27 Show GitHub Exploit DB Packet Storm
238 8.0 HIGH
Adjacent
- - A security flaw has been discovered in D-Link DIR-825 up to 3.00b32. This impacts the function AddPortMapping of the file upnpsoap.c of the component miniupnpd. Performing a manipulation of the argum… Update CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7069 2026-04-29 10:00 2026-04-27 Show GitHub Exploit DB Packet Storm
239 7.3 HIGH
Network
- - A weakness has been identified in code-projects Inventory Management System 1.0. Affected is an unknown function of the component Login. Executing a manipulation of the argument Username can lead to … Update CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-7070 2026-04-29 10:00 2026-04-27 Show GitHub Exploit DB Packet Storm
240 7.3 HIGH
Network
- - A vulnerability was detected in CodePanda Source canteen_management_system 1.0. Affected by this issue is some unknown functionality of the file /api/login.php. The manipulation of the argument Usern… Update CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-7072 2026-04-29 10:00 2026-04-27 Show GitHub Exploit DB Packet Storm