Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2041 6.5 警告
Network
TOTOLINK a3300r ファームウェア TOTOLINKのa3300r ファームウェアにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-31165 2026-04-27 10:50 2026-04-23 Show GitHub Exploit DB Packet Storm
2042 6.5 警告
Network
TOTOLINK a3300r ファームウェア TOTOLINKのa3300r ファームウェアにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-31171 2026-04-27 10:50 2026-04-23 Show GitHub Exploit DB Packet Storm
2043 6.5 警告
Network
TOTOLINK a3300r ファームウェア TOTOLINKのa3300r ファームウェアにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-31172 2026-04-27 10:50 2026-04-23 Show GitHub Exploit DB Packet Storm
2044 6.5 警告
Network
TOTOLINK a3300r ファームウェア TOTOLINKのa3300r ファームウェアにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-31174 2026-04-27 10:50 2026-04-23 Show GitHub Exploit DB Packet Storm
2045 9.8 緊急
Network
TOTOLINK a3300r ファームウェア TOTOLINKのa3300r ファームウェアにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-31175 2026-04-27 10:50 2026-04-23 Show GitHub Exploit DB Packet Storm
2046 6.5 警告
Network
TOTOLINK a3300r ファームウェア TOTOLINKのa3300r ファームウェアにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-31176 2026-04-27 10:50 2026-04-23 Show GitHub Exploit DB Packet Storm
2047 8.2 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-31788 2026-04-27 10:50 2026-03-25 Show GitHub Exploit DB Packet Storm
2048 6.5 警告
Network
Roxy-WI Roxy-WI Roxy-WIにおけるパストラバーサルの脆弱性 CWE-24
パストラバーサル (../filedir)
CVE-2026-33431 2026-04-27 10:50 2026-04-20 Show GitHub Exploit DB Packet Storm
2049 9.1 緊急
Network
Roxy-WI Roxy-WI Roxy-WIにおける認証に関する脆弱性 CWE-287
CWE-noinfo
CVE-2026-33432 2026-04-27 10:50 2026-04-20 Show GitHub Exploit DB Packet Storm
2050 7.5 重要
Network
PowerDNS dnsdist PowerDNSのdnsdistにおけるゼロ除算に関する脆弱性 CWE-369
ゼロ除算
CVE-2026-33593 2026-04-27 10:50 2026-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314121 - - - A vulnerability, which was classified as critical, was found in SourceCodester Tracking Monitoring Management System 1.0. Affected is an unknown function of the file /manage_person.php. The manipulat… CWE-89
SQL Injection
CVE-2024-7363 2024-08-2 21:59 2024-08-2 Show GitHub Exploit DB Packet Storm
314122 - - - A vulnerability, which was classified as critical, has been found in SourceCodester Tracking Monitoring Management System 1.0. This issue affects some unknown processing of the file /manage_user.php.… CWE-89
SQL Injection
CVE-2024-7362 2024-08-2 21:59 2024-08-2 Show GitHub Exploit DB Packet Storm
314123 - - - A vulnerability classified as critical was found in SourceCodester Tracking Monitoring Management System 1.0. This vulnerability affects unknown code of the file /ajax.php?action=save_establishment. … CWE-89
SQL Injection
CVE-2024-7361 2024-08-2 21:59 2024-08-2 Show GitHub Exploit DB Packet Storm
314124 - - - A vulnerability classified as problematic has been found in SourceCodester Tracking Monitoring Management System 1.0. This affects an unknown part of the file /ajax.php. The manipulation leads to cro… CWE-352
 Origin Validation Error
CVE-2024-7360 2024-08-2 21:59 2024-08-2 Show GitHub Exploit DB Packet Storm
314125 - - - A vulnerability was found in SourceCodester Tracking Monitoring Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /ajax.php?act… CWE-79
Cross-site Scripting
CVE-2024-7359 2024-08-2 21:59 2024-08-2 Show GitHub Exploit DB Packet Storm
314126 - - - Bostr is an nostr relay aggregator proxy that acts like a regular nostr relay. bostr let everyone in even having authorized_keys being set when noscraper is set to true. This vulnerability is fixed i… - CVE-2024-41962 2024-08-2 21:59 2024-08-2 Show GitHub Exploit DB Packet Storm
314127 - - - Cross-Site Request Forgery (CSRF) vulnerability in Martin Gibson WP GoToWebinar allows Cross-Site Scripting (XSS).This issue affects WP GoToWebinar: from n/a through 15.7. CWE-352
 Origin Validation Error
CVE-2024-38776 2024-08-2 17:15 2024-08-2 Show GitHub Exploit DB Packet Storm
314128 - - - In the Elliptic package 6.5.6 for Node.js, ECDSA signature malleability occurs because there is a missing check for whether the leading bit of r and s is zero. - CVE-2024-42460 2024-08-2 16:16 2024-08-2 Show GitHub Exploit DB Packet Storm
314129 - - - In the Elliptic package 6.5.6 for Node.js, EDDSA signature malleability occurs because there is a missing signature length check, and thus zero-valued bytes can be removed or appended. - CVE-2024-42459 2024-08-2 16:16 2024-08-2 Show GitHub Exploit DB Packet Storm
314130 8.8 HIGH
Network
- - The WordPress Menu Plugin — Superfly Responsive Menu plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.0.29. This is due to missing or incorrect… - CVE-2024-3238 2024-08-2 16:16 2024-08-2 Show GitHub Exploit DB Packet Storm