Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1951 5.4 警告
Network
Apostrophe Technologies ApostropheCMS Apostrophe TechnologiesのApostropheCMSにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-33889 2026-04-21 10:48 2026-04-15 Show GitHub Exploit DB Packet Storm
1952 6.5 警告
Adjacent
Ellanetworks Ella Core EllanetworksのElla CoreにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-33903 2026-04-21 10:48 2026-03-27 Show GitHub Exploit DB Packet Storm
1953 6.5 警告
Adjacent
Ellanetworks Ella Core EllanetworksのElla Coreにおけるデッドロックに関する脆弱性 CWE-833
デッドロック
CVE-2026-33904 2026-04-21 10:48 2026-03-27 Show GitHub Exploit DB Packet Storm
1954 7.2 重要
Network
Ellanetworks Ella Core EllanetworksのElla Coreにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-33906 2026-04-21 10:48 2026-03-27 Show GitHub Exploit DB Packet Storm
1955 6.5 警告
Adjacent
Ellanetworks Ella Core EllanetworksのElla CoreにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-33907 2026-04-21 10:48 2026-03-27 Show GitHub Exploit DB Packet Storm
1956 4.3 警告
Network
Apache Software Foundation PDFBox Apache Software FoundationのPDFBoxにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-33929 2026-04-21 10:48 2026-04-14 Show GitHub Exploit DB Packet Storm
1957 5.3 警告
Local
Anthropic PBC Claude SDK for Python Anthropic PBCのClaude SDK for Pythonにおける複数の脆弱性 CWE-367
CWE-59
CVE-2026-34452 2026-04-21 10:48 2026-03-31 Show GitHub Exploit DB Packet Storm
1958 5.5 警告
Local
International Color Consortium (ICC) iccDEV International Color Consortium (ICC)のiccDEVにおける未定義、未指定、または実装定義の動作への依存に関する脆弱性 CWE-758
未定義、未指定、または実装定義の動作への依存
CVE-2026-34533 2026-04-21 10:48 2026-03-31 Show GitHub Exploit DB Packet Storm
1959 5.5 警告
Local
International Color Consortium (ICC) iccDEV International Color Consortium (ICC)のiccDEVにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-34534 2026-04-21 10:48 2026-03-31 Show GitHub Exploit DB Packet Storm
1960 5.5 警告
Local
International Color Consortium (ICC) iccDEV International Color Consortium (ICC)のiccDEVにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-34535 2026-04-21 10:48 2026-03-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211 6.3 MEDIUM
Network
- - A security vulnerability has been detected in MindsDB up to 26.01. Affected is the function pickle.loads of the component Pickle Handler. The manipulation leads to deserialization. The attack is poss… New CWE-20
CWE-502
 Improper Input Validation 
 Deserialization of Untrusted Data
CVE-2026-7712 2026-05-4 09:16 2026-05-4 Show GitHub Exploit DB Packet Storm
212 7.3 HIGH
Network
- - A weakness has been identified in MindsDB up to 26.01. This impacts the function exec of the file mindsdb/integrations/handlers/byom_handler/proc_wrapper.py of the component Engine Handler. Executing… New CWE-284
CWE-434
Improper Access Control
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-7711 2026-05-4 09:16 2026-05-4 Show GitHub Exploit DB Packet Storm
213 7.3 HIGH
Network
- - A security flaw has been discovered in YunaiV yudao-cloud up to 3.8.0. This affects the function doFilterInternal of the file JwtAuthenticationTokenFilter.java of the component Ruoyi-Vue-Pro. Perform… New CWE-287
Improper Authentication
CVE-2026-7710 2026-05-4 09:16 2026-05-4 Show GitHub Exploit DB Packet Storm
214 6.3 MEDIUM
Network
- - A vulnerability was identified in janeczku Calibre-Web up to 0.6.26. The impacted element is the function generate_auth_token of the file cps/kobo_auth.py of the component Endpoint. Such manipulation… New CWE-266
CWE-285
 Incorrect Privilege Assignment
Improper Authorization
CVE-2026-7709 2026-05-4 08:16 2026-05-4 Show GitHub Exploit DB Packet Storm
215 4.3 MEDIUM
Network
- - A vulnerability was determined in Open5GS up to 2.7.7. The affected element is the function ogs_dbi_subscription_data in the library /lib/dbi/subscription.c of the component UDR. This manipulation of… New CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7708 2026-05-4 08:16 2026-05-4 Show GitHub Exploit DB Packet Storm
216 4.3 MEDIUM
Network
- - A vulnerability was found in Open5GS up to 2.7.7. Impacted is the function udr_nudr_dr_handle_subscription_context of the file /src/udr/nudr-handler.c of the component UDR. The manipulation of the ar… New CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7707 2026-05-4 08:16 2026-05-4 Show GitHub Exploit DB Packet Storm
217 4.3 MEDIUM
Network
- - A vulnerability has been found in Open5GS up to 2.7.7. This issue affects the function gmm_handle_service_request of the file /src/amf/gmm-handler.c of the component AMF. The manipulation leads to de… New CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7706 2026-05-4 08:16 2026-05-4 Show GitHub Exploit DB Packet Storm
218 6.3 MEDIUM
Network
- - A flaw has been found in JD Cloud JDCOS 4.5.1.r4518. This vulnerability affects the function set_iptv_info of the file /jdcap of the component Service Interface. Executing a manipulation of the argum… New CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7705 2026-05-4 08:16 2026-05-4 Show GitHub Exploit DB Packet Storm
219 6.5 MEDIUM
Network
- - A flaw was found in gnutls. This vulnerability occurs because gnutls performs case-sensitive comparisons of `nameConstraints` labels, specifically for `dNSName` (DNS) or `rfc822Name` (email) constrai… Update CWE-178
 Improper Handling of Case Sensitivity
CVE-2026-3833 2026-05-4 05:16 2026-05-1 Show GitHub Exploit DB Packet Storm
220 3.7 LOW
Network
- - A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted Online Certificate Status Protocol (OCSP) response during a TLS handshake. Due to a lo… Update CWE-179
 Incorrect Behavior Order: Early Validation
CVE-2026-3832 2026-05-4 05:16 2026-05-1 Show GitHub Exploit DB Packet Storm