Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 2:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
121 6.4 警告
Network
traefik traefik traefikにおける複数の脆弱性 New CWE-653
CWE-863
CVE-2026-41174 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
122 3.7
Network
traefik traefik traefikにおけるタイミングの違いに起因する情報漏えいに関する脆弱性 New CWE-208
タイミングの違いに起因する情報漏えい
CVE-2026-41263 2026-05-7 12:05 2026-04-30 Show GitHub Exploit DB Packet Storm
123 8.1 重要
Network
OpenClaw OpenClaw OpenClawにおける不変と仮定される Web パラメータの外部制御に関する脆弱性 New CWE-472
不変と仮定される Web パラメータの外部制御
CVE-2026-41353 2026-05-7 12:05 2026-04-23 Show GitHub Exploit DB Packet Storm
124 5.3 警告
Network
OpenClaw OpenClaw OpenClawにおける誤って解決された名前や参照の使用に関する脆弱性 New CWE-706
誤って解決された名前や参照の使用
CVE-2026-41354 2026-05-7 12:05 2026-04-23 Show GitHub Exploit DB Packet Storm
125 7.3 重要
Local
OpenClaw OpenClaw OpenClawにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 New CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-41355 2026-05-7 12:05 2026-04-23 Show GitHub Exploit DB Packet Storm
126 5.4 警告
Network
OpenClaw OpenClaw OpenClawにおける同一生成元ポリシー違反に関する脆弱性 New CWE-346
同一生成元ポリシー違反
CVE-2026-41358 2026-05-7 12:05 2026-04-23 Show GitHub Exploit DB Packet Storm
127 6.7 警告
Local
OpenClaw OpenClaw OpenClawにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 New CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-41360 2026-05-7 12:05 2026-04-23 Show GitHub Exploit DB Packet Storm
128 6.1 警告
Local
OpenClaw OpenClaw OpenClawにおける制御されていない検索パスの要素に関する脆弱性 New CWE-427
制御されていない検索パスの要素
CVE-2026-41373 2026-05-7 12:05 2026-04-28 Show GitHub Exploit DB Packet Storm
129 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-41375 2026-05-7 12:05 2026-04-28 Show GitHub Exploit DB Packet Storm
130 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおける同一生成元ポリシー違反に関する脆弱性 New CWE-346
同一生成元ポリシー違反
CVE-2026-41376 2026-05-7 12:05 2026-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312811 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Travel WP Travel Gutenberg Blocks allows Stored XSS.This issue affects WP Travel Gutenb… CWE-79
Cross-site Scripting
CVE-2024-43284 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312812 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeum Tutor LMS.This issue affects Tutor LMS: from n/a through 2.7.2. CWE-89
SQL Injection
CVE-2024-43282 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312813 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Tribulant Newsletters allows Reflected XSS.This issue affects Newsletters: from n/a throug… CWE-79
Cross-site Scripting
CVE-2024-43279 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312814 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Phi Phan Meta Field Block allows Stored XSS.This issue affects Meta Field Block: from n/a … CWE-79
Cross-site Scripting
CVE-2024-43278 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312815 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Qamar Sheeraz, Nasir Ahmad, GenialSouls Mega Addons For Elementor allows Stored XSS.This i… CWE-79
Cross-site Scripting
CVE-2024-43267 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312816 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Visual Composer Visual Composer Starter allows Stored XSS.This issue affects Visual Compos… CWE-79
Cross-site Scripting
CVE-2024-43263 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312817 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in webriti Busiprof allows Stored XSS.This issue affects Busiprof: from n/a through 2.4.8. CWE-79
Cross-site Scripting
CVE-2024-43262 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312818 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in creativeon WHMpress allows Reflected XSS.This issue affects WHMpress: from n/a through 6.2… CWE-79
Cross-site Scripting
CVE-2024-43246 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312819 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in favethemes Houzez allows Reflected XSS.This issue affects Houzez: from n/a through 3.2.4. CWE-79
Cross-site Scripting
CVE-2024-43244 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312820 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Valiano Unite Gallery Lite.This issue affects Unite Gallery Lite: from n/a through 1.7.62. - CVE-2024-43207 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm