Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227081 7.5 危険 Pligg - Pligg の editlink.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1774 2012-12-20 18:52 2008-04-14 Show GitHub Exploit DB Packet Storm
227082 6.8 警告 VideoLAN - VLC におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-1769 2012-12-20 18:52 2008-04-13 Show GitHub Exploit DB Packet Storm
227083 6.8 警告 VideoLAN - VLC における整数オーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1768 2012-12-20 18:52 2008-04-13 Show GitHub Exploit DB Packet Storm
227084 10 危険 phpBB - phpBB における脆弱性 CWE-noinfo
情報不足
CVE-2008-1766 2012-12-20 18:52 2008-04-12 Show GitHub Exploit DB Packet Storm
227085 4.9 警告 サン・マイクロシステムズ - Sun N1 Grid Engine の Qmaster デーモンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-1756 2012-12-20 18:52 2008-04-9 Show GitHub Exploit DB Packet Storm
227086 5 警告 zekewalker - World of Phaos の showSource.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1755 2012-12-20 18:52 2008-04-11 Show GitHub Exploit DB Packet Storm
227087 1.7 注意 シマンテック - Symantec Altiris Deployment Solution における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2008-1754 2012-12-20 18:52 2008-04-10 Show GitHub Exploit DB Packet Storm
227088 2.1 注意 Beijing Rising International Software - Rising Antivirus 2008 におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-1738 2012-12-20 18:52 2008-04-29 Show GitHub Exploit DB Packet Storm
227089 6.9 警告 ソフォス - Sophos Anti-Virus におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-1737 2012-12-20 18:52 2008-04-29 Show GitHub Exploit DB Packet Storm
227090 7.5 危険 pragmaticutopia - Joomla! 用の com_puarcade コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1733 2012-12-20 18:52 2008-04-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1861 4.3 MEDIUM
Network
- - An open redirect in the /api/google/authorize endpoint of hunvreus DevPush v0.3.2 allows attackers to redirect users to malicious sites via supplying a crafted URL. CWE-601
Open Redirect
CVE-2026-30346 2026-04-28 03:35 2026-04-28 Show GitHub Exploit DB Packet Storm
1862 4.3 MEDIUM
Network
- - A path traversal vulnerability in the Blocks module of Daylight Studio FuelCMS v1.5.2 allows attackers to execute a directory traversal. CWE-22
Path Traversal
CVE-2026-30462 2026-04-28 03:35 2026-04-28 Show GitHub Exploit DB Packet Storm
1863 8.8 HIGH
Network
- - Cross Site Request Forgery vulnerability in diskoverdata diskover-community v.2.3.5. and before allows a remote attacker to escalate privileges and obtain sensitive information via the public/setting… CWE-352
 Origin Validation Error
CVE-2026-38934 2026-04-28 03:35 2026-04-28 Show GitHub Exploit DB Packet Storm
1864 6.1 MEDIUM
Network
- - A reflected cross-site scripting (XSS) vulnerability exists in diskover-community <= 2.3.5 in public/view.php via the doctype parameter CWE-79
Cross-site Scripting
CVE-2026-38935 2026-04-28 03:35 2026-04-28 Show GitHub Exploit DB Packet Storm
1865 6.1 MEDIUM
Network
- - A reflected cross-site scripting (XSS) vulnerability exists in diskover-community <= 2.3.5 in public/selectindices.php via the namecontains parameter CWE-79
Cross-site Scripting
CVE-2026-38936 2026-04-28 03:35 2026-04-28 Show GitHub Exploit DB Packet Storm
1866 9.8 CRITICAL
Network
- - A flaw has been found in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setWiFiAclRules of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. This manipulation of the … CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-7139 2026-04-28 03:35 2026-04-28 Show GitHub Exploit DB Packet Storm
1867 9.8 CRITICAL
Network
- - A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the function CsteSystem of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Such manipulation of the arg… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-7140 2026-04-28 03:35 2026-04-28 Show GitHub Exploit DB Packet Storm
1868 5.4 MEDIUM
Network
- - A weakness has been identified in mettle sendportal up to 3.0.1. Affected is the function destroy of the file app/Http/Controllers/Workspaces/WorkspaceInvitationsController.php of the component Invit… CWE-285
CWE-639
Improper Authorization
 Authorization Bypass Through User-Controlled Key
CVE-2026-7145 2026-04-28 03:35 2026-04-28 Show GitHub Exploit DB Packet Storm
1869 4.0 MEDIUM
Local
gnupg libgcrypt Libgcrypt before 1.12.2 mishandles Dilithium signing. Writes to a static array lack a bounds check but do not use attacker-controlled data. CWE-787
 Out-of-bounds Write
CVE-2026-41990 2026-04-28 03:33 2026-04-23 Show GitHub Exploit DB Packet Storm
1870 6.7 MEDIUM
Local
gnupg libgcrypt Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt. CWE-787
 Out-of-bounds Write
CVE-2026-41989 2026-04-28 03:33 2026-04-23 Show GitHub Exploit DB Packet Storm