Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229751 5 警告 Softbb.net - SoftBB の index.php におけるインストールパスを取得される脆弱性 - CVE-2006-4633 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229752 7.5 危険 Softbb.net - SoftBB における SQL インジェクションの脆弱性 - CVE-2006-4632 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229753 6.5 警告 Softbb.net - SoftBB の admin/save_opt.php における任意の PHP コードを実行される脆弱性 - CVE-2006-4631 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229754 7.5 危険 sky gunning - Sky GUNNING MySpeach の jscript.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4630 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229755 4.3 警告 vcd-db - VCD-db におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4628 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229756 7.5 危険 Vtiger - vtiger CRM の fileupload.html における任意のファイルをアップロードされる脆弱性 - CVE-2006-4617 2012-12-20 18:02 2006-09-6 Show GitHub Exploit DB Packet Storm
229757 4.9 警告 pocket pc - Pocket PC 用の PDAapps Verichat における重要な情報を取得される脆弱性 - CVE-2006-4614 2012-12-20 18:02 2006-09-6 Show GitHub Exploit DB Packet Storm
229758 7.8 危険 securecomputing - SnapGear におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-4613 2012-12-20 18:02 2006-09-6 Show GitHub Exploit DB Packet Storm
229759 7.5 危険 Tiki Software Community Association - TikiWiki Sirius の jhot.php における任意の PHP コードを実行される脆弱性 CWE-Other
その他
CVE-2006-4602 2012-12-20 18:02 2006-09-6 Show GitHub Exploit DB Packet Storm
229760 7.5 危険 sslinks - ssLinks の links.php における SQL インジェクションの脆弱性 - CVE-2006-4598 2012-12-20 18:02 2006-09-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1281 7.5 HIGH
Network
freebsd freebsd Incorrect packet validation allowed unbounded recursion parsing SCTP chunk parameters. This can eventually result in a stack overflow and panic. Remote attackers can craft packets which cause affec… CWE-674
CWE-791
 Uncontrolled Recursion
 Incomplete Filtering of Special Elements
CVE-2026-7164 2026-05-1 21:46 2026-04-30 Show GitHub Exploit DB Packet Storm
1282 7.8 HIGH
Local
freebsd freebsd When exchanging data over a socket, libnv uses select(2) to wait for data to arrive. However, it does not verify whether the provided socket descriptor fits in select(2)'s file descriptor set size l… CWE-121
Stack-based Buffer Overflow
CVE-2026-39457 2026-05-1 21:41 2026-04-30 Show GitHub Exploit DB Packet Storm
1283 7.5 HIGH
Network
mozilla firefox
thunderbird
Information disclosure due to incorrect boundary conditions in the Audio/Video component. This vulnerability was fixed in Firefox 150.0.1, Firefox ESR 140.10.1, Firefox ESR 115.35.1, Thunderbird 150.… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-7320 2026-05-1 21:32 2026-04-29 Show GitHub Exploit DB Packet Storm
1284 7.3 HIGH
Network
mozilla firefox
thunderbird
Memory safety bugs present in Thunderbird ESR 140.10.0 and Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have… CWE-119
CWE-416
Incorrect Access of Indexable Resource ('Range Error') 
 Use After Free
CVE-2026-7322 2026-05-1 21:30 2026-04-29 Show GitHub Exploit DB Packet Storm
1285 5.4 MEDIUM
Network
helpy.io helpy Helpy contains a stored cross-site scripting vulnerability in the knowledge base Doc rendering logic. An authenticated attacker with admin or agent editor privileges can persist arbitrary HTML or Jav… CWE-79
Cross-site Scripting
CVE-2026-40230 2026-05-1 21:26 2026-04-30 Show GitHub Exploit DB Packet Storm
1286 5.4 MEDIUM
Network
helpy.io helpy Helpy contains a stored cross-site scripting vulnerability in the post author display logic. Any registered user can persist arbitrary HTML in their account name field and cause it to be rendered une… CWE-79
Cross-site Scripting
CVE-2026-40229 2026-05-1 21:25 2026-04-30 Show GitHub Exploit DB Packet Storm
1287 4.7 MEDIUM
Network
- - Open redirect vulnerability exists in Multiple laser printers and MFPs which implement Ricoh Web Image Monitor. When accessing a specially crafted URL, the user may be redirected to an arbitrary webs… CWE-601
Open Redirect
CVE-2026-41226 2026-05-1 17:16 2026-04-30 Show GitHub Exploit DB Packet Storm
1288 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2026-4178 2026-05-1 08:16 2026-05-1 Show GitHub Exploit DB Packet Storm
1289 9.6 CRITICAL
Network
openclaw openclaw OpenClaw before 2026.3.31 contains a sandbox escape vulnerability allowing attackers to traverse directory boundaries through symlink exploitation during file synchronization operations. Remote attac… CWE-59
Link Following
CVE-2026-41397 2026-05-1 05:54 2026-04-29 Show GitHub Exploit DB Packet Storm
1290 7.8 HIGH
Local
openclaw openclaw OpenClaw before 2026.3.31 allows workspace .env files to override the OPENCLAW_BUNDLED_PLUGINS_DIR environment variable, compromising plugin trust verification. Attackers with control over workspace … CWE-829
 Inclusion of Functionality from Untrusted Control Sphere
CVE-2026-41396 2026-05-1 05:50 2026-04-29 Show GitHub Exploit DB Packet Storm