Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229981 6.8 警告 verliadmin - VerliAdmin におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6668 2012-12-20 18:02 2006-12-20 Show GitHub Exploit DB Packet Storm
229982 7.5 危険 verliadmin - VerliAdmin における SQL インジェクションの脆弱性 - CVE-2006-6667 2012-12-20 18:02 2006-12-20 Show GitHub Exploit DB Packet Storm
229983 7.5 危険 verliadmin - VerliAdmin の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6666 2012-12-20 18:02 2006-12-20 Show GitHub Exploit DB Packet Storm
229984 4.1 警告 SUSE - SUSE Linux 上で稼動する Linux novell-lum におけるパスワードなしでコンソールへログインされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2006-6662 2012-12-20 18:02 2006-12-19 Show GitHub Exploit DB Packet Storm
229985 7.5 危険 php-update - PHP-Update の blog.php における任意の PHP コードを実行される脆弱性 - CVE-2006-6661 2012-12-20 18:02 2006-12-20 Show GitHub Exploit DB Packet Storm
229986 7.5 危険 planetluc.com - planetluc.com RateMe の main.inc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6648 2012-12-20 18:02 2006-12-19 Show GitHub Exploit DB Packet Storm
229987 7.5 危険 yapbb - YapBB の include/yapbb_session.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6633 2012-12-20 18:02 2006-12-18 Show GitHub Exploit DB Packet Storm
229988 7.5 危険 webwork - WeBWorK PG Language の lib/WeBWorK/PG/Translator.pm における dangerousMacros.pl などの文字列を含む名前を伴う任意のマクロを起動される脆弱性 - CVE-2006-6629 2012-12-20 18:02 2006-12-18 Show GitHub Exploit DB Packet Storm
229989 10 危険 softwin - BitDefender 製品に同梱された PE ファイルの解析の実装における整数オーバーフローの脆弱性 - CVE-2006-6627 2012-12-20 18:02 2006-12-18 Show GitHub Exploit DB Packet Storm
229990 5 警告 リアルネットワークス - RealNetworks RealPlayer の rpau3260.dll におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-6759 2012-12-20 18:02 2005-11-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1241 5.4 MEDIUM
Network
- - @diplodoc/search-extension 1.0.0 through 3.x before 3.0.3 allows stored XSS via the title in a .md file. CWE-79
Cross-site Scripting
CVE-2026-40201 2026-05-5 11:16 2026-05-1 Show GitHub Exploit DB Packet Storm
1242 7.5 HIGH
Network
mercurycom mipc252w_firmware A null pointer dereference vulnerability exists in the RTSP service of the MERCURY MIPC252W 1.0.5 Build 230306 Rel.79931n. During the processing of a SETUP request for the path rtsp://<IP>:554/stream… CWE-476
 NULL Pointer Dereference
CVE-2026-31256 2026-05-5 10:30 2026-04-28 Show GitHub Exploit DB Packet Storm
1243 5.3 MEDIUM
Network
- - An issue was discovered in Nix before 2.34.7. Writing to arbitrary files can occur via "nix-prefetch-url --unpack" or "nix store prefetch-file --unpack" directory traversal. The fixed versions are 2.… CWE-36
 Absolute Path Traversal
CVE-2026-44029 2026-05-5 10:16 2026-05-5 Show GitHub Exploit DB Packet Storm
1244 7.5 HIGH
Local
- - An issue was discovered in Nix before 2.34.7 and Lix before 2.95.2. Unbounded recursion in the NAR (Nix Archive) parser could lead to a stack-to-heap overflow when the parser is run on a coroutine st… CWE-674
 Uncontrolled Recursion
CVE-2026-44028 2026-05-5 10:16 2026-05-5 Show GitHub Exploit DB Packet Storm
1245 5.4 MEDIUM
Network
wolterskluwer lex_baza_dokumentow LEX Baza Dokumentów is vulnerable to DOM-based XSS in "em" cookie parameter. The application unsafely processes the parameter on the client side, allowing an attacker to execute arbitrary JavaScript … CWE-79
Cross-site Scripting
CVE-2026-1493 2026-05-5 09:30 2026-04-30 Show GitHub Exploit DB Packet Storm
1246 7.5 HIGH
Network
jetbrains intellij_idea In JetBrains IntelliJ IDEA before 2024.3.7.1, 2025.1.7.1, 2025.2.6.2, 2025.3.4.1, 2026.1.1 reading arbitrary local files was possible via built-in web server CWE-59
Link Following
CVE-2026-41882 2026-05-5 09:24 2026-04-30 Show GitHub Exploit DB Packet Storm
1247 7.8 HIGH
Local
ibm turbonomic_prometurbo_agent IBM Turbonomic prometurbo agent 8.16.0 through 8.17.6 IBM Turbonomic Application Resource Management grants excessive cluster‑wide permissions, including unrestricted read access to all secrets. An a… CWE-269
NVD-CWE-noinfo
 Improper Privilege Management
CVE-2026-6389 2026-05-5 09:17 2026-05-1 Show GitHub Exploit DB Packet Storm
1248 7.3 HIGH
Network
- - A security flaw has been discovered in Axle-Bucamp MCP-Docusaurus up to 404bc028e15ec304c9a045528560f4b5f27a17e0. The affected element is the function update_document/continue_document/delete_documen… CWE-22
Path Traversal
CVE-2026-7788 2026-05-5 09:16 2026-05-5 Show GitHub Exploit DB Packet Storm
1249 7.3 HIGH
Network
- - A security flaw has been discovered in A-G-U-P-T-A wireshark-mcp edaf604416fbc94a201b4043092d4a1b09a12275/400c3da70074f22f3cce7ccb65304cafc7089c89. This affects the function quick_capture of the file… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-7785 2026-05-5 09:16 2026-05-5 Show GitHub Exploit DB Packet Storm
1250 7.3 HIGH
Network
- - A vulnerability has been found in RTGS2017 NagaAgent up to 5.1.0. This issue affects some unknown processing of the file apiserver/routes/extensions.py of the component Skills Endpoint. Such manipula… CWE-22
Path Traversal
CVE-2026-7784 2026-05-5 09:16 2026-05-5 Show GitHub Exploit DB Packet Storm