Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 2:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
131 4.6 警告
Network
OpenClaw OpenClaw OpenClawにおける安全でない失敗処理に関する脆弱性 New CWE-636
安全でない失敗処理
CVE-2026-41377 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
132 8.8 重要
Network
OpenClaw OpenClaw OpenClawにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-41378 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
133 7.1 重要
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-41379 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
134 7.3 重要
Local
OpenClaw OpenClaw OpenClawにおけるセキュリティ決定の信頼できない入力への依存に関する脆弱性 New CWE-807
セキュリティ決定の信頼できない入力への依存
CVE-2026-41380 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
135 5.4 警告
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-41381 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
136 5.4 警告
Network
OpenClaw OpenClaw OpenClawにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-41382 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
137 8.1 重要
Network
OpenClaw OpenClaw OpenClawにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-41383 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
138 7.8 重要
Local
OpenClaw OpenClaw OpenClawにおけるシステム構成または設定の外部制御に関する脆弱性 New CWE-15
システム構成または設定の外部制御
CVE-2026-41384 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
139 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおける重要な情報の平文保存に関する脆弱性 New CWE-312
重要な情報の平文保存
CVE-2026-41385 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
140 9.8 緊急
Network
OpenClaw OpenClaw OpenClawにおける特権 API の不適切な使用に関する脆弱性 New CWE-648
特権 API の不適切な使用
CVE-2026-41386 2026-05-7 12:04 2026-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312821 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AyeCode Ltd GeoDirectory.This issue affects GeoDirectory: from n/a through 2.3.61. CWE-89
SQL Injection
CVE-2024-43145 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312822 - - - Missing Authorization vulnerability in Automattic Sensei LMS, Automattic Sensei Pro (WC Paid Courses).This issue affects Sensei LMS: from n/a through 4.23.1; Sensei Pro (WC Paid Courses): from n/a th… CWE-862
 Missing Authorization
CVE-2024-35686 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312823 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Cool Plugins Cryptocurrency Widgets – Price Ticker & Coins List allows Reflected XSS.This … CWE-79
Cross-site Scripting
CVE-2024-43304 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312824 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in videousermanuals.Com White Label CMS allows Reflected XSS.This issue affects White Label C… CWE-79
Cross-site Scripting
CVE-2024-43303 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312825 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PickPlugins Team Showcase allows Stored XSS.This issue affects Team Showcase: from n/a thr… CWE-79
Cross-site Scripting
CVE-2024-43321 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312826 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Livemesh Livemesh Addons for WPBakery Page Builder addons-for-visual-composer allows Store… - CVE-2024-43320 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312827 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Gordon Böhme, Antonio Leutsch Structured Content allows Stored XSS.This issue affects Stru… CWE-79
Cross-site Scripting
CVE-2024-43307 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312828 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Code Amp Custom Layouts – Post + Product grids made easy allows Stored XSS.This issue affe… CWE-79
Cross-site Scripting
CVE-2024-43305 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
312829 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Organic Themes GivingPress Lite allows Stored XSS.This issue affects GivingPress Lite: fro… CWE-79
Cross-site Scripting
CVE-2024-43352 2024-08-19 21:59 2024-08-18 Show GitHub Exploit DB Packet Storm
312830 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Bravada bravada allows Stored XSS.This issue affects Bravada: from n/a thr… CWE-79
Cross-site Scripting
CVE-2024-43351 2024-08-19 21:59 2024-08-18 Show GitHub Exploit DB Packet Storm