Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229561 7.5 危険 simplog - Simplog の comments.php における SQL インジェクションの脆弱性 - CVE-2006-5398 2012-12-20 18:02 2006-10-18 Show GitHub Exploit DB Packet Storm
229562 2.1 注意 X.Org Foundation - X.Org libX11 の Xinput モジュールにおける XCOMPOSEFILE 環境変数によって使用されるファイルが読み込まれる脆弱性 - CVE-2006-5397 2012-12-20 18:02 2006-11-2 Show GitHub Exploit DB Packet Storm
229563 5 警告 xfire - Xfire におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5391 2012-12-20 18:02 2006-10-18 Show GitHub Exploit DB Packet Storm
229564 6.8 警告 phpBB - phpBB 用の MMW モジュールにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5390 2012-12-20 18:02 2006-10-18 Show GitHub Exploit DB Packet Storm
229565 5 警告 wyana - PHP-Wyana の tools/tellhim.php における重要な情報を取得される脆弱性 - CVE-2006-5389 2012-12-20 18:02 2006-10-18 Show GitHub Exploit DB Packet Storm
229566 7.5 危険 webSPELL - WebSPELL の index.php における SQL インジェクションの脆弱性 - CVE-2006-5388 2012-12-20 18:02 2006-10-18 Show GitHub Exploit DB Packet Storm
229567 7.5 危険 phpbb plusxl - PlusXL および phpBB モジュールの mods/iai/includes/constants.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5387 2012-12-20 18:02 2006-10-18 Show GitHub Exploit DB Packet Storm
229568 7.5 危険 spamoborona - SpamOborona の admin/admin_spam.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5385 2012-12-20 18:02 2006-10-18 Show GitHub Exploit DB Packet Storm
229569 7.5 危険 phpbb prillian - phpBB 用の Prillian French モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5326 2012-12-20 18:02 2006-10-17 Show GitHub Exploit DB Packet Storm
229570 7.5 危険 Tincan - phplist における SQL インジェクションの脆弱性 - CVE-2006-5322 2012-12-20 18:02 2006-10-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 4, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1081 5.0 MEDIUM
Network
- - A vulnerability was found in Grav CMS up to 1.7.49.5/2.0.0-beta.1. Affected by this vulnerability is the function FileCache::doGet of the file system/src/Grav/Framework/Cache/Adapter/FileCache.php of… CWE-20
CWE-502
 Improper Input Validation 
 Deserialization of Untrusted Data
CVE-2026-7317 2026-04-29 10:00 2026-04-29 Show GitHub Exploit DB Packet Storm
1082 7.3 HIGH
Network
- - A flaw has been found in elinsky execution-system-mcp 0.1.0. The impacted element is the function _get_context_file_path of the file src/execution_system_mcp/server.py of the component add_action Too… CWE-22
Path Traversal
CVE-2026-7319 2026-04-29 10:00 2026-04-29 Show GitHub Exploit DB Packet Storm
1083 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2026-5822 2026-04-29 08:16 2026-04-29 Show GitHub Exploit DB Packet Storm
1084 6.5 MEDIUM
Network
- - The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to validate the RDATA content against the RDATA length in a DNS response when processing… CWE-126
 Buffer Over-read
CVE-2026-6238 2026-04-29 07:16 2026-04-29 Show GitHub Exploit DB Packet Storm
1085 4.7 MEDIUM
Local
- - Mojic is a CLI tool to transform readable C code into an unrecognizable chaotic stream of emojis. Prior to 2.1.4, the CipherEngine uses a standard equality operator (!==) to verify the HMAC-SHA256 in… CWE-208
 Information Exposure Through Timing Discrepancy
CVE-2026-41244 2026-04-29 06:18 2026-04-25 Show GitHub Exploit DB Packet Storm
1086 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: NFC: nxp-nci: allow GPIOs to sleep Allow the firmware and enable GPIOs to sleep. This fixes a `WARN_ON' and allows the driver to… NVD-CWE-noinfo
CVE-2026-31545 2026-04-29 05:53 2026-04-25 Show GitHub Exploit DB Packet Storm
1087 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: bonding: fix NULL deref in bond_debug_rlb_hash_show rlb_clear_slave intentionally keeps RLB hash-table entries on the rx_has… CWE-476
 NULL Pointer Dereference
CVE-2026-31546 2026-04-29 05:48 2026-04-25 Show GitHub Exploit DB Packet Storm
1088 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: media: vidtv: fix nfeeds state corruption on start_streaming failure syzbot reported a memory leak in vidtv_psi_service_desc_init… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2026-31585 2026-04-29 05:47 2026-04-25 Show GitHub Exploit DB Packet Storm
1089 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() cgwb_release_workfn() calls css_put(wb->blkcg_css) and then later acc… CWE-416
 Use After Free
CVE-2026-31586 2026-04-29 05:45 2026-04-25 Show GitHub Exploit DB Packet Storm
1090 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: q6apm: move component registration to unmanaged version q6apm component registers dais dynamically from ASoC toplolog… CWE-416
 Use After Free
CVE-2026-31587 2026-04-29 05:44 2026-04-25 Show GitHub Exploit DB Packet Storm