Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228091 7.8 危険 toxiclab - Toxiclab Shoutbox におけるパスワードを含むデータベースをダウンロードされる脆弱性 - CVE-2007-0546 2012-12-20 18:19 2007-01-29 Show GitHub Exploit DB Packet Storm
228092 9.4 危険 zixforum - ZixForum におけるデータベースをダウンロードされる脆弱性 - CVE-2007-0543 2012-12-20 18:19 2007-01-29 Show GitHub Exploit DB Packet Storm
228093 5 警告 WordPress.org - WordPress における任意のファイルの存在を特定される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-0541 2012-12-20 18:19 2007-01-29 Show GitHub Exploit DB Packet Storm
228094 5 警告 WordPress.org - WordPress におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0540 2012-12-20 18:19 2007-01-29 Show GitHub Exploit DB Packet Storm
228095 7.8 危険 WordPress.org - WordPress の wp_remote_fopen 関数におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0539 2012-12-20 18:19 2007-01-29 Show GitHub Exploit DB Packet Storm
228096 5 警告 Telligent - Telligent Community Server におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0538 2012-12-20 18:19 2007-01-29 Show GitHub Exploit DB Packet Storm
228097 7.2 危険 rPath, Inc - rPath Linux 用の rMake における権限を取得される脆弱性 - CVE-2007-0536 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228098 7.5 危険 vote pro - Vote! Pro における任意の PHP コードを実行される脆弱性 - CVE-2007-0535 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228099 5 警告 tuan do - Tuan Do Uploader における管理者パスワードハッシュを取得される脆弱性 - CVE-2007-0532 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228100 6.8 警告 WebsiteBaker Org - Website Baker の class.login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-0527 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 29, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1251 4.3 MEDIUM
Network
- - El plugin Database for Contact Form 7, WPforms, Elementor forms para WordPress es vulnerable a acceso no autorizado de datos debido a una comprobación de capacidad faltante en la función entries_shor… CWE-862
 Missing Authorization
CVE-2026-3831 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1252 6.3 MEDIUM
Network
- - Se ha encontrado una vulnerabilidad en gougucms 4.08.18. Esto afecta a la función reg_submit del archivo gougucms-master\app\home\controller\Login.php del componente Gestor de Registro de Usuario. Di… CWE-913
CWE-915
 Improper Control of Dynamically-Managed Code Resources
 Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2026-5248 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1253 3.5 LOW
Network
- - A vulnerability was found in gougucms 4.08.18. This impacts an unknown function of the file \gougucms-master\app\admin\view\user\record.html of the component Record Endpoint. Performing a manipulatio… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-5249 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1254 3.5 LOW
Network
- - Se encontró una vulnerabilidad en gougucms 4.08.18. Esto afecta una función desconocida del archivo \gougucms-master\app\admin\view\user\record.html del componente Record Endpoint. Realizar una manip… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-5249 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1255 6.3 MEDIUM
Network
- - A vulnerability was identified in z-9527 admin 1.0/2.0. This impacts an unknown function of the file /server/routes/user.js of the component User Update Endpoint. Such manipulation of the argument is… CWE-913
CWE-915
 Improper Control of Dynamically-Managed Code Resources
 Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2026-5251 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1256 6.3 MEDIUM
Network
- - Una vulnerabilidad fue identificada en z-9527 admin 1.0/2.0. Esto afecta una función desconocida del archivo /servidor/routes/user.js del componente User Update Endpoint. Dicha manipulación del argum… CWE-913
CWE-915
 Improper Control of Dynamically-Managed Code Resources
 Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2026-5251 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1257 3.5 LOW
Network
- - A security flaw has been discovered in z-9527 admin 1.0/2.0. Affected is an unknown function of the file /server/routes/message.js of the component Message Create Endpoint. Performing a manipulation … CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-5252 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1258 3.5 LOW
Network
- - Una falla de seguridad ha sido descubierta en z-9527 admin 1.0/2.0. Afectada es una función desconocida del archivo /servidor/routes/message.js del componente Message Create Endpoint. Realizar una ma… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-5252 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1259 3.5 LOW
Network
- - A weakness has been identified in bufanyun HotGo 1.0/2.0. Affected by this vulnerability is an unknown functionality of the file /web/src/layout/components/Header/MessageList.vue of the component edi… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-5253 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1260 3.5 LOW
Network
- - A security vulnerability has been detected in welovemedia FFmate up to 2.0.15. Affected by this issue is some unknown functionality of the file /ui/app/components/AppJsonTreeView.vue of the component… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-5254 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm