Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228841 4.3 警告 The Tor Project - Tor における超過リソースを不当要求される脆弱性 - CVE-2007-1103 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
228842 7.8 危険 pickle - Ahmet Sacan Pickle の download.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-1100 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
228843 7.8 危険 scrymud - ScryMUD における脆弱性 - CVE-2007-1098 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
228844 10 危険 wiclear - Wiclear の upload tool における任意の PHP コードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2007-1097 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
228845 6.8 警告 VirtueMart - VirtueMart の ps_cart.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1096 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
228846 7.5 危険 TYPO3 Association - TYPO3 用の class.t3lib_formmail.php における任意の電子メールヘッダを挿入される脆弱性 - CVE-2007-1081 2012-12-20 18:19 2007-02-22 Show GitHub Exploit DB Packet Storm
228847 7.8 危険 turbosoft - TurboFTP におけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2007-1080 2012-12-20 18:19 2007-02-22 Show GitHub Exploit DB Packet Storm
228848 7.8 危険 rhinosoft - Rhino Software の Inc. FTP Voyager におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-1079 2012-12-20 18:19 2007-02-22 Show GitHub Exploit DB Packet Storm
228849 7.5 危険 phptraffica - phpTrafficA におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-1076 2012-12-20 18:19 2007-02-22 Show GitHub Exploit DB Packet Storm
228850 7.8 危険 turbosoft - TurboFTP におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1075 2012-12-20 18:19 2007-02-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1951 5.4 MEDIUM
Network
tenda ac18_firmware A command injection vulnerability exists in Tenda AC18 V15.03.05.05_multi. The vulnerability is located in the /goform/SetSambaCfg interface, where improper handling of the guestuser parameter allows… CWE-77
Command Injection
CVE-2026-31255 2026-04-29 00:16 2026-04-28 Show GitHub Exploit DB Packet Storm
1952 6.1 MEDIUM
Network
- - A reflected cross-site scripting (XSS) vulnerability exists in WebFileSys version before 2.32.0 and fixed in v.2.32.0. User-controlled input is reflected into HTML and JavaScript contexts without pro… CWE-79
Cross-site Scripting
CVE-2026-29971 2026-04-29 00:16 2026-04-28 Show GitHub Exploit DB Packet Storm
1953 8.1 HIGH
Network
- - OpenCATS prior to commit 3002a29 contains a PHP code injection vulnerability in the installer AJAX endpoint that allows unauthenticated attackers to execute arbitrary code by injecting PHP statements… CWE-94
Code Injection
CVE-2026-27760 2026-04-29 00:16 2026-04-29 Show GitHub Exploit DB Packet Storm
1954 9.4 CRITICAL
Network
- - NASA Earth Observing System Data and Information System (EOSDIS) MODAPS v8.1 was discovered to contain a SQL injection vulnerability in the category parameter CWE-89
SQL Injection
CVE-2024-46636 2026-04-29 00:16 2026-04-28 Show GitHub Exploit DB Packet Storm
1955 6.5 MEDIUM
Network
- - SQL Injection vulnerability exists in Sourcecodester Online Job Portal phppdo 1.0 ivia the category parameter in /jobportal/index.php. CWE-89
SQL Injection
CVE-2021-36438 2026-04-29 00:16 2026-04-28 Show GitHub Exploit DB Packet Storm
1956 8.1 HIGH
Network
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: smb: client: fix OOB reads parsing symlink error response When a CREATE returns STATUS_STOPPED_ON_SYMLINK, smb2_check_message() r… CWE-125
Out-of-bounds Read
CVE-2026-31613 2026-04-29 00:13 2026-04-25 Show GitHub Exploit DB Packet Storm
1957 9.8 CRITICAL
Network
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: usbip: validate number_of_packets in usbip_pack_ret_submit() When a USB/IP client receives a RET_SUBMIT response, usbip_pack_ret_… CWE-787
 Out-of-bounds Write
CVE-2026-31607 2026-04-29 00:11 2026-04-25 Show GitHub Exploit DB Packet Storm
1958 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Validate PDU length before reading SDU length in l2cap_ecred_data_rcv() l2cap_ecred_data_rcv() reads the SDU le… NVD-CWE-noinfo
CVE-2026-31512 2026-04-29 00:08 2026-04-22 Show GitHub Exploit DB Packet Storm
1959 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: udp: Fix wildcard bind conflict check when using hash2 When binding a udp_sock to a local address and port, UDP uses two hashes (… NVD-CWE-noinfo
CVE-2026-31503 2026-04-29 00:07 2026-04-22 Show GitHub Exploit DB Packet Storm
1960 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: fix fanout UAF in packet_release() via NETDEV_UP race `packet_release()` has a race window where `NETDEV_UP` can re-register… CWE-416
 Use After Free
CVE-2026-31504 2026-04-29 00:07 2026-04-22 Show GitHub Exploit DB Packet Storm