Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229411 7.5 危険 website designs for less - Website Designs for Less Inventory Manager の inventory/display/imager.asp における SQL インジェクションの脆弱性 - CVE-2006-5943 2012-12-20 18:02 2006-11-16 Show GitHub Exploit DB Packet Storm
229412 6.8 警告 website designs for less - Website Designs For Less Inventory Manager の inventory/display/display_results.asp におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5942 2012-12-20 18:02 2006-11-16 Show GitHub Exploit DB Packet Storm
229413 7.5 危険 sitexpress - SiteXpress E-Commerce System の dept.asp における SQL インジェクションの脆弱性 - CVE-2006-5936 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229414 7.5 危険 shopsystems - ShopSystems の index.php における SQL インジェクションの脆弱性 - CVE-2006-5935 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229415 7.5 危険 ultrasite - UltraSite の update.asp における SQL インジェクションの脆弱性 - CVE-2006-5933 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229416 7.5 危険 phpjobscheduler - Phpjobscheduler の firepjs.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5929 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229417 7.5 危険 phpjobscheduler - Phpjobscheduler における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5928 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229418 7.5 危険 vallheru - Vallheru の mail.php における SQL インジェクションの脆弱性 - CVE-2006-5926 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229419 5 警告 wheatblog - wB の index.php における重要な情報を取得される脆弱性 - CVE-2006-5922 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229420 5.8 警告 wheatblog - wB の add_comment.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5921 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1241 6.3 MEDIUM
Network
- - A weakness has been identified in Xuxueli xxl-job up to 3.3.2. The affected element is the function triggerJob of the file xxl-job-admin/src/main/java/com/xxl/job/admin/service/impl/XxlJobServiceImpl… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-7305 2026-04-29 10:00 2026-04-29 Show GitHub Exploit DB Packet Storm
1242 5.6 MEDIUM
Network
- - A security vulnerability has been detected in Xuxueli xxl-job up to 3.3.2. The impacted element is an unknown function of the file xxl-job-admin/src/main/java/com/xxl/job/admin/scheduler/openapi/Open… CWE-320
CWE-321
 Key Management Errors
 Use of Hard-coded Cryptographic Key
CVE-2026-7306 2026-04-29 10:00 2026-04-29 Show GitHub Exploit DB Packet Storm
1243 7.3 HIGH
Network
- - A vulnerability has been found in eiliyaabedini aider-mcp up to 667b914301aada695aab0e46d1fb3a7d5e32c8af. Affected is an unknown function of the file aider_mcp.py of the component code_with_ai. The m… CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7316 2026-04-29 10:00 2026-04-29 Show GitHub Exploit DB Packet Storm
1244 5.0 MEDIUM
Network
- - A vulnerability was found in Grav CMS up to 1.7.49.5/2.0.0-beta.1. Affected by this vulnerability is the function FileCache::doGet of the file system/src/Grav/Framework/Cache/Adapter/FileCache.php of… CWE-20
CWE-502
 Improper Input Validation 
 Deserialization of Untrusted Data
CVE-2026-7317 2026-04-29 10:00 2026-04-29 Show GitHub Exploit DB Packet Storm
1245 5.9 MEDIUM
Local
- - A vulnerability was detected in elie mcp-project 0.1.0. The affected element is the function search_papers of the file research_server.py. The manipulation of the argument topic results in path trave… CWE-22
Path Traversal
CVE-2026-7318 2026-04-29 10:00 2026-04-29 Show GitHub Exploit DB Packet Storm
1246 7.3 HIGH
Network
- - A flaw has been found in elinsky execution-system-mcp 0.1.0. The impacted element is the function _get_context_file_path of the file src/execution_system_mcp/server.py of the component add_action Too… CWE-22
Path Traversal
CVE-2026-7319 2026-04-29 10:00 2026-04-29 Show GitHub Exploit DB Packet Storm
1247 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2026-5822 2026-04-29 08:16 2026-04-29 Show GitHub Exploit DB Packet Storm
1248 4.7 MEDIUM
Local
- - Mojic is a CLI tool to transform readable C code into an unrecognizable chaotic stream of emojis. Prior to 2.1.4, the CipherEngine uses a standard equality operator (!==) to verify the HMAC-SHA256 in… CWE-208
 Information Exposure Through Timing Discrepancy
CVE-2026-41244 2026-04-29 06:18 2026-04-25 Show GitHub Exploit DB Packet Storm
1249 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: NFC: nxp-nci: allow GPIOs to sleep Allow the firmware and enable GPIOs to sleep. This fixes a `WARN_ON' and allows the driver to… NVD-CWE-noinfo
CVE-2026-31545 2026-04-29 05:53 2026-04-25 Show GitHub Exploit DB Packet Storm
1250 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: bonding: fix NULL deref in bond_debug_rlb_hash_show rlb_clear_slave intentionally keeps RLB hash-table entries on the rx_has… CWE-476
 NULL Pointer Dereference
CVE-2026-31546 2026-04-29 05:48 2026-04-25 Show GitHub Exploit DB Packet Storm