Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227681 9.3 危険 SonicWALL - SonicWall SSL-VPN NetExtender NELaunchCtrl ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5814 2012-12-20 18:33 2007-11-5 Show GitHub Exploit DB Packet Storm
227682 6.8 警告 ssreader - SSReader の Ultra Star Reader ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5807 2012-12-20 18:33 2007-11-5 Show GitHub Exploit DB Packet Storm
227683 7.5 危険 work system e-commerce - WORK system e-commerce における脆弱性 CWE-noinfo
情報不足
CVE-2007-5801 2012-12-20 18:33 2007-11-2 Show GitHub Exploit DB Packet Storm
227684 6.8 警告 tom willmot - WordPress 用の BackUpWordPress プラグインにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5800 2012-12-20 18:33 2007-11-2 Show GitHub Exploit DB Packet Storm
227685 7.1 危険 stonesoft - Stonesoft StoneGate IPS におけるシステムへ侵入される脆弱性 CWE-DesignError
CVE-2007-5793 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
227686 7.1 危険 Vonage - Vonage Motorola Phone Adapter VT 2142-VD における盗聴される脆弱性 CWE-310
暗号の問題
CVE-2007-5792 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
227687 10 危険 Vonage - Vonage Motorola Phone Adapter VT 2142-VD における偽造された INVITE メッセージを送信される脆弱性 CWE-287
不適切な認証
CVE-2007-5791 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
227688 5 警告 phptoys - Micro Login System におけるパスワードを含むファイルをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5787 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
227689 6.8 警告 sige - Sift Unity の inc/sige_init.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5781 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
227690 6.8 警告 telematic lab - teatro の pub/pub08_comments.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5780 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 4, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1611 7.8 HIGH
Local
deepcool deepcreative Insecure Permissions vulnerability in DeepCool DeepCreative v.1.2.12 and before allows a local attacker to execute arbitrary code via a crafted file CWE-277
 Insecure Inherited Permissions
CVE-2026-30266 2026-04-28 01:42 2026-04-21 Show GitHub Exploit DB Packet Storm
1612 6.3 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.3.31 contains a server-side request forgery vulnerability in the marketplace plugin download functionality that allows remote attackers to make arbitrary network requests. Attack… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-41302 2026-04-28 00:26 2026-04-21 Show GitHub Exploit DB Packet Storm
1613 9.9 CRITICAL
Network
doorman doorman Improper access control in Doorman v0.1.0 and v1.0.2 allows any authenticated user to update their own account role to a non-admin privileged role via /platform/user/{username}. The `role` field is a… CWE-269
 Improper Privilege Management
CVE-2026-30269 2026-04-28 00:24 2026-04-21 Show GitHub Exploit DB Packet Storm
1614 8.2 HIGH
Network
ultradag ultradag UltraDAG is a minimal DAG-BFT blockchain in Rust. In version 0.1, a non-council attacker can submit a signed SmartOp::Vote transaction that passes signature, nonce, and balance prechecks, but fails a… CWE-460
CWE-696
 Improper Cleanup on Thrown Exception
 Incorrect Behavior Order
CVE-2026-40583 2026-04-28 00:23 2026-04-22 Show GitHub Exploit DB Packet Storm
1615 8.8 HIGH
Network
openclaw openclaw OpenClaw before 2026.3.28 contains an authorization bypass vulnerability in Discord text approval commands that allows non-approvers to resolve pending exec approvals. Attackers can send Discord text… CWE-863
 Incorrect Authorization
CVE-2026-41303 2026-04-28 00:20 2026-04-21 Show GitHub Exploit DB Packet Storm
1616 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… - CVE-2026-6337 2026-04-28 00:16 2026-04-28 Show GitHub Exploit DB Packet Storm
1617 9.8 CRITICAL
Network
- - In the Linux kernel, the following vulnerability has been resolved: mptcp: fix slab-use-after-free in __inet_lookup_established The ehash table lookups are lockless and rely on SLAB_TYPESAFE_BY_RCU… - CVE-2026-31669 2026-04-28 00:16 2026-04-25 Show GitHub Exploit DB Packet Storm
1618 9.8 CRITICAL
Network
- - In the Linux kernel, the following vulnerability has been resolved: seg6: separate dst_cache for input and output paths in seg6 lwtunnel The seg6 lwtunnel uses a single dst_cache per encap route, s… - CVE-2026-31668 2026-04-28 00:16 2026-04-25 Show GitHub Exploit DB Packet Storm
1619 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: Input: uinput - fix circular locking dependency with ff-core A lockdep circular locking dependency warning can be triggered repro… - CVE-2026-31667 2026-04-28 00:16 2026-04-25 Show GitHub Exploit DB Packet Storm
1620 7.8 HIGH
Local
- - In the Linux kernel, the following vulnerability has been resolved: btrfs: fix incorrect return value after changing leaf in lookup_extent_data_ref() After commit 1618aa3c2e01 ("btrfs: simplify ret… - CVE-2026-31666 2026-04-28 00:16 2026-04-25 Show GitHub Exploit DB Packet Storm