Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
121 9.8 緊急
Network
Shenzhen Tenda Technology Co.,Ltd. I12 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のI12 ファームウェアにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-5849 2026-05-1 10:43 2026-04-9 Show GitHub Exploit DB Packet Storm
122 5.5 警告
Local
Foxit pdf editor
pdf reader
Foxitのpdf editor等の複数製品におけるキャッチされない例外に関する脆弱性 New CWE-248
キャッチされない例外
CVE-2026-5937 2026-05-1 10:43 2026-04-27 Show GitHub Exploit DB Packet Storm
123 5.5 警告
Local
Foxit pdf editor
pdf reader
Foxitのpdf editor等の複数製品における不十分な制御フロー管理に関する脆弱性 New CWE-691
不十分な制御フロー管理
CVE-2026-5938 2026-05-1 10:43 2026-04-27 Show GitHub Exploit DB Packet Storm
124 5.5 警告
Local
Foxit pdf editor
pdf reader
Foxitのpdf editor等の複数製品における解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-5939 2026-05-1 10:43 2026-04-27 Show GitHub Exploit DB Packet Storm
125 5.5 警告
Local
Foxit pdf editor
pdf reader
Foxitのpdf editor等の複数製品における解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-5940 2026-05-1 10:43 2026-04-27 Show GitHub Exploit DB Packet Storm
126 7.1 重要
Local
Foxit pdf editor
pdf reader
Foxitのpdf editor等の複数製品における入力確認に関する脆弱性 New CWE-20
CWE-noinfo
CVE-2026-5941 2026-05-1 10:43 2026-04-27 Show GitHub Exploit DB Packet Storm
127 5.5 警告
Local
Foxit pdf editor
pdf reader
Foxitのpdf editor等の複数製品における解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-5942 2026-05-1 10:43 2026-04-27 Show GitHub Exploit DB Packet Storm
128 7.8 重要
Local
Foxit pdf editor
pdf reader
Foxitのpdf editor等の複数製品における解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-5943 2026-05-1 10:43 2026-04-27 Show GitHub Exploit DB Packet Storm
129 9.8 緊急
Network
Shenzhen Tenda Technology Co.,Ltd. ch22 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のch22 ファームウェアにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-5962 2026-05-1 10:43 2026-04-9 Show GitHub Exploit DB Packet Storm
130 9.8 緊急
Network
MetaGPT MetaGPT MetaGPTにおける複数の脆弱性 New fix: isolate Test.exec_code() namespace and subprocess to prevent CWE-95 code injection via globals() leak by sebastiondev&n…
CVE-2026-5970 2026-05-1 10:43 2026-04-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 3, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313351 - namo deepsearch Cross-site scripting (XSS) vulnerability in mclient.cgi in Namo DeepSearch 4.5 allows remote attackers to inject arbitrary web script or HTML via the p parameter. NVD-CWE-Other
CVE-2006-3264 2024-02-14 10:17 2006-06-28 Show GitHub Exploit DB Packet Storm
313352 - microsoft windows_live_messenger Heap-based buffer overflow in Windows Live Messenger 8.0 allows user-assisted attackers to execute arbitrary code via a crafted Contact List (.ctt) file, which triggers the overflow when it is import… NVD-CWE-Other
CVE-2006-3250 2024-02-14 10:17 2006-06-28 Show GitHub Exploit DB Packet Storm
313353 - ultimate_php_board ultimate_php_board The installation of Ultimate PHP Board (UPB) 1.9.6 and earlier includes a default administrator login account and password, which allows remote attackers to gain privileges. CWE-255
Credentials Management
CVE-2006-3203 2024-02-14 10:17 2006-06-24 Show GitHub Exploit DB Packet Storm
313354 - ultimate_php_board ultimate_php_board Ultimate PHP Board (UPB) 1.9.6 and earlier uses a cryptographically weak block cipher with a large key collision space, which allows remote attackers to determine a suitable decryption key given the … NVD-CWE-Other
CVE-2006-3204 2024-02-14 10:17 2006-06-24 Show GitHub Exploit DB Packet Storm
313355 - ultimate_php_board ultimate_php_board Ultimate PHP Board (UPB) 1.9.6 and earlier allows remote attackers to gain access via modified user_env, pass_env, power_env, and id_env parameters in a cookie, which comprise a persistent logon that… NVD-CWE-Other
CVE-2006-3205 2024-02-14 10:17 2006-06-24 Show GitHub Exploit DB Packet Storm
313356 - ultimate_php_board ultimate_php_board Direct static code injection vulnerability in Ultimate PHP Board (UPB) 1.9.6 and earlier allows remote authenticated administrators to execute arbitrary PHP code via multiple unspecified "configurati… NVD-CWE-Other
CVE-2006-3208 2024-02-14 10:17 2006-06-24 Show GitHub Exploit DB Packet Storm
313357 - viart shop Multiple cross-site scripting (XSS) vulnerabilities in ViArt Shop Free 2.5.5, and possibly other distributions including Light, Standard, and Enterprise, allow remote attackers to inject arbitrary we… NVD-CWE-Other
CVE-2006-2979 2024-02-14 10:17 2006-06-13 Show GitHub Exploit DB Packet Storm
313358 - viart_ltd viart_shop_free SQL injection vulnerability in block_forum_topic_new.php in ViArt Shop Free 2.5.5, and possibly other distributions including Light, Standard, and Enterprise, might allow remote attackers to execute … NVD-CWE-Other
CVE-2006-2980 2024-02-14 10:17 2006-06-13 Show GitHub Exploit DB Packet Storm
313359 - linksys wrt54g
wrt54g_v5
Linksys WRT54G Wireless-G Broadband Router allows remote attackers to bypass access restrictions and conduct unauthorized operations via a UPnP request with a modified InternalClient parameter, which… NVD-CWE-Other
CVE-2006-2559 2024-02-14 10:17 2006-05-24 Show GitHub Exploit DB Packet Storm
313360 - sitecom wl-153_router_firmware
wl-153
Sitecom WL-153 router firmware before 1.38 allows remote attackers to bypass access restrictions and conduct unauthorized operations via a UPnP request with a modified InternalClient parameter, which… CWE-264
Permissions, Privileges, and Access Controls
CVE-2006-2560 2024-02-14 10:17 2006-05-24 Show GitHub Exploit DB Packet Storm