Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
171 5.3 警告
Network
OpenClaw OpenClaw OpenClawにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-44994 2026-05-15 10:57 2026-05-11 Show GitHub Exploit DB Packet Storm
172 7.3 重要
Local
OpenClaw OpenClaw OpenClawにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 New CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-44995 2026-05-15 10:57 2026-05-11 Show GitHub Exploit DB Packet Storm
173 3.7
Network
OpenClaw OpenClaw OpenClawにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-44996 2026-05-15 10:57 2026-05-11 Show GitHub Exploit DB Packet Storm
174 4.3 警告
Network
OpenClaw OpenClaw OpenClawにおける不適切な権限設定に関する脆弱性 New CWE-266
不適切な権限設定
CVE-2026-44997 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
175 5.4 警告
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-44998 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
176 5.3 警告
Network
OpenClaw OpenClaw OpenClawにおけるデータの信頼性についての不十分な検証に関する脆弱性 New CWE-345
データの信頼性についての不十分な検証
CVE-2026-44999 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
177 5 警告
Network
OpenClaw OpenClaw OpenClawにおけるサーバサイドのリクエストフォージェリの脆弱性 New CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-45000 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
178 7.1 重要
Network
OpenClaw OpenClaw OpenClawにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-45001 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
179 5.3 警告
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-45002 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
180 5 警告
Local
OpenClaw OpenClaw OpenClawにおけるフィルタリングの回避に関する脆弱性 New CWE-441
フィルタリング回避
CVE-2026-45003 2026-05-15 10:56 2026-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312031 - - - Mellium mellium.im/xmpp 0.0.1 through 0.21.4 allows response spoofing if the implementation uses predictable IDs because the stanza type is not checked. This is fixed in 0.22.0. - CVE-2024-46957 2024-09-27 01:15 2024-09-25 Show GitHub Exploit DB Packet Storm
312032 8.8 HIGH
Network
buffercode frontend_dashboard The Frontend Dashboard plugin for WordPress is vulnerable to unauthorized code execution due to insufficient filtering on callable methods/functions via the ajax_request() function in all versions up… CWE-94
Code Injection
CVE-2024-8268 2024-09-27 01:15 2024-09-10 Show GitHub Exploit DB Packet Storm
312033 6.5 MEDIUM
Network
pinpoint pinpoint_booking_system The Pinpoint Booking System – #1 WordPress Booking Plugin plugin for WordPress is vulnerable to SQL Injection via the ‘schedule’ parameter in all versions up to, and including, 2.9.9.5.0 due to insuf… CWE-89
SQL Injection
CVE-2024-7112 2024-09-27 01:12 2024-09-7 Show GitHub Exploit DB Packet Storm
312034 7.3 HIGH
Network
ifeelweb affiliate_super_assistent The The Affiliate Super Assistent plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.5.3. This is due to the software allowing users to supply… CWE-94
Code Injection
CVE-2024-8478 2024-09-27 00:53 2024-09-10 Show GitHub Exploit DB Packet Storm
312035 5.3 MEDIUM
Network
metagauss eventprime The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to unauthorized access to Private or Password-protected events due to missing authorization checks in all ver… CWE-862
 Missing Authorization
CVE-2024-8369 2024-09-27 00:43 2024-09-10 Show GitHub Exploit DB Packet Storm
312036 8.8 HIGH
Network
elizsoftware panel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eliz Software Panel allows Command Line Execution through SQL Injection.This issue affects Panel:… CWE-89
SQL Injection
CVE-2024-5958 2024-09-27 00:35 2024-09-19 Show GitHub Exploit DB Packet Storm
312037 6.5 MEDIUM
Network
apexsoftcell ld_geo
ld_dp_back_office
This vulnerability exists in Apex Softcell LD DP Back Office due to improper validation of certain parameters (cCdslClicentcode and cLdClientCode) in the API endpoint. An authenticated remote attacke… NVD-CWE-Other
CVE-2024-47085 2024-09-27 00:30 2024-09-19 Show GitHub Exploit DB Packet Storm
312038 5.4 MEDIUM
Network
code-projects blood_bank_system A vulnerability classified as problematic was found in code-projects Blood Bank System 1.0. This vulnerability affects unknown code of the file bbms.php. The manipulation of the argument fullname/age… CWE-79
Cross-site Scripting
CVE-2024-9084 2024-09-27 00:29 2024-09-22 Show GitHub Exploit DB Packet Storm
312039 6.5 MEDIUM
Network
apexsoftcell ld_geo
ld_dp_back_office
This vulnerability exists in Apex Softcell LD DP Back Office due to improper implementation of OTP validation mechanism in certain API endpoints. An authenticated remote attacker could exploit this v… NVD-CWE-Other
CVE-2024-47086 2024-09-27 00:29 2024-09-19 Show GitHub Exploit DB Packet Storm
312040 9.8 CRITICAL
Network
code-projects restaurant_reservation_system A vulnerability classified as critical has been found in code-projects Restaurant Reservation System 1.0. Affected is an unknown function of the file /filter.php. The manipulation of the argument fro… CWE-89
SQL Injection
CVE-2024-9086 2024-09-27 00:26 2024-09-23 Show GitHub Exploit DB Packet Storm