Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2001 8.1 重要
Network
Monospace Inc Directus Monospace IncのDirectusにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-35412 2026-04-21 10:46 2026-04-6 Show GitHub Exploit DB Packet Storm
2002 5.3 警告
Network
Monospace Inc Directus Monospace IncのDirectusにおける情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2026-35413 2026-04-21 10:46 2026-04-6 Show GitHub Exploit DB Packet Storm
2003 6.5 警告
Network
Monospace Inc Directus Monospace IncのDirectusにおける複数の脆弱性 CWE-400
CWE-770
CVE-2026-35441 2026-04-21 10:46 2026-04-6 Show GitHub Exploit DB Packet Storm
2004 8.1 重要
Network
Monospace Inc Directus Monospace IncのDirectusにおける複数の脆弱性 CWE-200
CWE-863
CVE-2026-35442 2026-04-21 10:46 2026-04-6 Show GitHub Exploit DB Packet Storm
2005 9.1 緊急
Network
pyLoad-ng project pyLoad-ng pyLoad-ng projectのpyLoad-ngにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-35459 2026-04-21 10:46 2026-04-6 Show GitHub Exploit DB Packet Storm
2006 9.9 緊急
Network
inventree project inventree inventree projectのinventreeにおけるテンプレートエンジンで使用される特殊な要素の不適切な無効化に関する脆弱性 CWE-1336
テンプレートエンジンで使用される特殊な要素の不適切な無効化
CVE-2026-35477 2026-04-21 10:46 2026-04-8 Show GitHub Exploit DB Packet Storm
2007 8.1 重要
Network
inventree project inventree inventree projectのinventreeにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-35478 2026-04-21 10:45 2026-04-8 Show GitHub Exploit DB Packet Storm
2008 7.5 重要
Network
liquidjs liquidjs liquidjsにおける情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2026-39412 2026-04-21 10:45 2026-04-8 Show GitHub Exploit DB Packet Storm
2009 5.5 警告
Network
MaxKB MaxKB MaxKBにおける複数の脆弱性 CWE-20
CWE-78
CVE-2026-39417 2026-04-21 10:45 2026-04-14 Show GitHub Exploit DB Packet Storm
2010 7.4 重要
Network
MaxKB MaxKB MaxKBにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-39418 2026-04-21 10:45 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 4, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
11 7.3 HIGH
Network
- - A flaw has been found in Acrel Electrical ECEMS Enterprise Microgrid Energy Efficiency Management System 1.3.0. The impacted element is an unknown function of the file /SubstationWEBV2/main/elecMaxMi… New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-7694 2026-05-3 21:15 2026-05-3 Show GitHub Exploit DB Packet Storm
12 6.3 MEDIUM
Network
- - A vulnerability was detected in Wavlink WL-WN570HA1 R70HA1 V1410_221110. The affected element is the function ping_ddns of the file /cgi-bin/adm.cgi. Performing a manipulation of the argument DDNS re… New CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7692 2026-05-3 20:16 2026-05-3 Show GitHub Exploit DB Packet Storm
13 6.3 MEDIUM
Network
- - A security vulnerability has been detected in Wavlink WL-WN570HA1 R70HA1 V1410_221110. Impacted is the function set_sys_cmd of the file /cgi-bin/adm.cgi. Such manipulation of the argument command lea… New CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7691 2026-05-3 20:16 2026-05-3 Show GitHub Exploit DB Packet Storm
14 6.3 MEDIUM
Network
- - A weakness has been identified in Wavlink WL-WN570HA1 R70HA1 V1410_221110. This issue affects the function set_sys_adm of the file /cgi-bin/adm.cgi. This manipulation of the argument Username causes … New CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7690 2026-05-3 19:16 2026-05-3 Show GitHub Exploit DB Packet Storm
15 3.7 LOW
Network
- - A security flaw has been discovered in Dolibarr ERP CRM up to 23.0.2. This vulnerability affects the function dol_verifyHash in the library htdocs/core/lib/security.lib.php of the component Online Si… New CWE-345
CWE-347
 Insufficient Verification of Data Authenticity
 Improper Verification of Cryptographic Signature
CVE-2026-7689 2026-05-3 19:16 2026-05-3 Show GitHub Exploit DB Packet Storm
16 5.0 MEDIUM
Network
- - A vulnerability was identified in Dolibarr ERP CRM up to 23.0.2. This affects the function _checkValForAPI of the file htdocs/expedition/class/expedition.class.php of the component Shipments API Endp… New CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-7688 2026-05-3 19:16 2026-05-3 Show GitHub Exploit DB Packet Storm
17 6.3 MEDIUM
Network
- - A vulnerability was determined in langflow-ai langflow up to 1.8.4. Affected by this issue is the function CodeParser.parse_callable_details of the file src/lfx/src/lfx/custom/code_parser/code_parser… New CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7687 2026-05-3 18:16 2026-05-3 Show GitHub Exploit DB Packet Storm
18 5.3 MEDIUM
Network
- - A vulnerability was found in eyeo Adblock Plus up to 4.36.2 on Chrome. Affected by this vulnerability is the function postMessage of the file premium.preload.js of the component Legacy Premium Activa… New CWE-266
CWE-284
 Incorrect Privilege Assignment
Improper Access Control
CVE-2026-7686 2026-05-3 17:16 2026-05-3 Show GitHub Exploit DB Packet Storm
19 8.8 HIGH
Network
- - A vulnerability was detected in Edimax BR-6208AC up to 1.02. Affected is an unknown function of the file /goform/setWAN. Performing a manipulation of the argument pptpDfGateway  results in buffer ove… New CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7685 2026-05-3 16:16 2026-05-3 Show GitHub Exploit DB Packet Storm
20 8.8 HIGH
Network
- - A security vulnerability has been detected in Edimax BR-6428nC up to 1.16. This impacts an unknown function of the file /goform/setWAN. Such manipulation of the argument pptpDfGateway  leads to buffe… New CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7684 2026-05-3 16:16 2026-05-3 Show GitHub Exploit DB Packet Storm