Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1741 5.3 警告
Network
レッドハット Mirror Registry for Red Hat OpenShift レッドハットのMirror Registry for Red Hat OpenShiftにおけるエラーメッセージによる情報漏えいに関する脆弱性 CWE-209
エラーメッセージによる情報漏えい
CVE-2025-14243 2026-04-23 10:17 2026-04-8 Show GitHub Exploit DB Packet Storm
1742 9 緊急
Network
XWiki Blog Application XWikiのBlog Applicationにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-66024 2026-04-23 10:17 2026-03-4 Show GitHub Exploit DB Packet Storm
1743 6.5 警告
Network
レッドハット Mirror Registry for Red Hat OpenShift
Quay
レッドハットのMirror Registry for Red Hat OpenShift等の複数製品におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-2377 2026-04-23 10:17 2026-04-8 Show GitHub Exploit DB Packet Storm
1744 7.2 重要
Network
langchain Langgraph langchainのLanggraphにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-28277 2026-04-23 10:16 2026-03-5 Show GitHub Exploit DB Packet Storm
1745 7.5 重要
Network
nekename OpenDeck nekenameのOpenDeckにおける複数の脆弱性 CWE-22
CWE-24
CVE-2026-28427 2026-04-23 10:16 2026-03-4 Show GitHub Exploit DB Packet Storm
1746 6.3 警告
Network
レッドハット Mirror Registry for Red Hat OpenShift
Quay
レッドハットのMirror Registry for Red Hat OpenShift等の複数製品におけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-32589 2026-04-23 10:16 2026-04-8 Show GitHub Exploit DB Packet Storm
1747 8.8 重要
Network
レッドハット Mirror Registry for Red Hat OpenShift
Quay
レッドハットのMirror Registry for Red Hat OpenShift等の複数製品における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-32590 2026-04-23 10:16 2026-04-8 Show GitHub Exploit DB Packet Storm
1748 5.5 警告
Network
レッドハット Mirror Registry for Red Hat OpenShift
Quay
レッドハットのMirror Registry for Red Hat OpenShift等の複数製品におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-32591 2026-04-23 10:16 2026-04-8 Show GitHub Exploit DB Packet Storm
1749 7.5 重要
Network
trailofbits rfc3161-client trailofbitsのrfc3161-clientにおける証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2026-33753 2026-04-23 10:16 2026-04-8 Show GitHub Exploit DB Packet Storm
1750 8.8 重要
Network
Nozomi Networks Inc. Guardian HederaのGuardianにおける誤った領域へのリソースの漏えいに関する脆弱性 CWE-668
誤った領域へのリソースの漏えい
CVE-2026-39911 2026-04-23 10:16 2026-04-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
451 6.3 MEDIUM
Network
- - A vulnerability was identified in janeczku Calibre-Web up to 0.6.26. The impacted element is the function generate_auth_token of the file cps/kobo_auth.py of the component Endpoint. Such manipulation… New CWE-266
CWE-285
 Incorrect Privilege Assignment
Improper Authorization
CVE-2026-7709 2026-05-4 08:16 2026-05-4 Show GitHub Exploit DB Packet Storm
452 4.3 MEDIUM
Network
- - A vulnerability was determined in Open5GS up to 2.7.7. The affected element is the function ogs_dbi_subscription_data in the library /lib/dbi/subscription.c of the component UDR. This manipulation of… New CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7708 2026-05-4 08:16 2026-05-4 Show GitHub Exploit DB Packet Storm
453 4.3 MEDIUM
Network
- - A vulnerability was found in Open5GS up to 2.7.7. Impacted is the function udr_nudr_dr_handle_subscription_context of the file /src/udr/nudr-handler.c of the component UDR. The manipulation of the ar… New CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7707 2026-05-4 08:16 2026-05-4 Show GitHub Exploit DB Packet Storm
454 4.3 MEDIUM
Network
- - A vulnerability has been found in Open5GS up to 2.7.7. This issue affects the function gmm_handle_service_request of the file /src/amf/gmm-handler.c of the component AMF. The manipulation leads to de… New CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7706 2026-05-4 08:16 2026-05-4 Show GitHub Exploit DB Packet Storm
455 6.3 MEDIUM
Network
- - A flaw has been found in JD Cloud JDCOS 4.5.1.r4518. This vulnerability affects the function set_iptv_info of the file /jdcap of the component Service Interface. Executing a manipulation of the argum… New CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7705 2026-05-4 08:16 2026-05-4 Show GitHub Exploit DB Packet Storm
456 6.5 MEDIUM
Network
- - A flaw was found in gnutls. This vulnerability occurs because gnutls performs case-sensitive comparisons of `nameConstraints` labels, specifically for `dNSName` (DNS) or `rfc822Name` (email) constrai… Update CWE-178
 Improper Handling of Case Sensitivity
CVE-2026-3833 2026-05-4 05:16 2026-05-1 Show GitHub Exploit DB Packet Storm
457 3.7 LOW
Network
- - A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted Online Certificate Status Protocol (OCSP) response during a TLS handshake. Due to a lo… Update CWE-179
 Incorrect Behavior Order: Early Validation
CVE-2026-3832 2026-05-4 05:16 2026-05-1 Show GitHub Exploit DB Packet Storm
458 4.3 MEDIUM
Adjacent
- - A vulnerability has been found in AV Stumpfl Pixera Two Media Server up to 25.1 R2. The affected element is an unknown function of the component Service Port 1338. Such manipulation leads to path tra… New CWE-22
Path Traversal
CVE-2026-7704 2026-05-4 02:16 2026-05-4 Show GitHub Exploit DB Packet Storm
459 7.3 HIGH
Network
- - A flaw has been found in AV Stumpfl Pixera Two Media Server up to 25.2 R2. Impacted is an unknown function of the component Websocket API. This manipulation causes code injection. The attack can be i… New CWE-74
CWE-94
Injection
Code Injection
CVE-2026-7703 2026-05-4 02:16 2026-05-4 Show GitHub Exploit DB Packet Storm
460 5.3 MEDIUM
Network
- - A vulnerability was detected in toeverything AFFiNE up to 0.26.3. This issue affects the function allowDocPreview of the file /workspace/:workspaceId/:docId of the component Public Markdown Preview E… New CWE-285
CWE-639
Improper Authorization
 Authorization Bypass Through User-Controlled Key
CVE-2026-7702 2026-05-4 01:15 2026-05-4 Show GitHub Exploit DB Packet Storm