Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250501 6.8 警告 GNU Project
オラクル
- GNU Wget における任意のファイルを作成される脆弱性 CWE-20
不適切な入力確認
CVE-2010-2252 2011-09-12 09:56 2010-07-6 Show GitHub Exploit DB Packet Storm
250502 9.3 危険 リアルネットワークス - RealNetworks RealPlayer および RealPlayer Enterprise における任意のコードを実行されるの脆弱性 CWE-399
リソース管理の問題
CVE-2011-2955 2011-09-12 09:53 2011-08-16 Show GitHub Exploit DB Packet Storm
250503 9.3 危険 リアルネットワークス - RealNetworks RealPlayer の AutoUpdate 機能における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2011-2954 2011-09-12 09:41 2011-08-16 Show GitHub Exploit DB Packet Storm
250504 10 危険 リアルネットワークス - RealNetworks RealPlayer および RealPlayer Enterprise における任意のコードを実行されるの脆弱性 CWE-119
バッファエラー
CVE-2011-2953 2011-09-12 09:40 2011-08-16 Show GitHub Exploit DB Packet Storm
250505 4 警告 libvirt.org
レッドハット
- libvirt における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-2511 2011-09-12 09:03 2011-07-21 Show GitHub Exploit DB Packet Storm
250506 6.4 警告 きゅー - Megalith における認証回避の脆弱性 CWE-287
不適切な認証
CVE-2011-2671 2011-09-9 12:01 2011-09-9 Show GitHub Exploit DB Packet Storm
250507 9.3 危険 リアルネットワークス - RealNetworks RealPlayer および RealPlayer Enterprise における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2011-2952 2011-09-9 10:08 2011-08-16 Show GitHub Exploit DB Packet Storm
250508 9.3 危険 リアルネットワークス - RealNetworks RealPlayer におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-2951 2011-09-9 10:08 2011-08-16 Show GitHub Exploit DB Packet Storm
250509 9.3 危険 リアルネットワークス - RealNetworks RealPlayer の qcpfformat.dll におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-2950 2011-09-9 10:07 2011-08-16 Show GitHub Exploit DB Packet Storm
250510 9.3 危険 リアルネットワークス - RealNetworks RealPlayer および RealPlayer Enterprise におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-2949 2011-09-9 10:06 2011-08-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 3, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
981 7.3 HIGH
Network
- - A security vulnerability has been detected in AlejandroArciniegas mcp-data-vis up to de5a51525a69822290eaee569a1ab447b490746d. Affected by this vulnerability is the function axios of the file src/ser… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-7146 2026-04-29 10:00 2026-04-28 Show GitHub Exploit DB Packet Storm
982 7.3 HIGH
Network
- - A vulnerability was detected in JoeCastrom mcp-chat-studio up to 1.5.0. Affected by this issue is some unknown functionality of the file server/routes/llm.js of the component LLM Models API. Performi… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-7147 2026-04-29 10:00 2026-04-28 Show GitHub Exploit DB Packet Storm
983 6.3 MEDIUM
Network
- - A flaw has been found in CodeAstro Online Classroom 1.0. This affects an unknown part of the file /addnewfaculty. Executing a manipulation of the argument fname can lead to sql injection. The attack … CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-7148 2026-04-29 10:00 2026-04-28 Show GitHub Exploit DB Packet Storm
984 7.3 HIGH
Network
- - A vulnerability has been found in dexhunter kaggle-mcp up to 406127ffcb2b91b8c10e20e6c2ca787fbc1dc92d. This vulnerability affects the function prepare_kaggle_dataset of the file src/kaggle_mcp/server… CWE-22
Path Traversal
CVE-2026-7149 2026-04-29 10:00 2026-04-28 Show GitHub Exploit DB Packet Storm
985 6.3 MEDIUM
Network
- - A vulnerability was found in dh1011 auto-favicon up to f189116a9259950c2393f114dbcb94dde0ad864b. This issue affects the function generate_favicon_from_url of the file src/auto_favicon/server.py of th… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-7150 2026-04-29 10:00 2026-04-28 Show GitHub Exploit DB Packet Storm
986 7.3 HIGH
Network
- - A flaw has been found in disler aider-mcp-server up to b2516fa466d0d851932da92ee6d0e66946db9efc. Affected by this vulnerability is an unknown functionality of the file src/aider_mcp_server/server.py … CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7157 2026-04-29 10:00 2026-04-28 Show GitHub Exploit DB Packet Storm
987 7.3 HIGH
Network
- - A vulnerability has been found in dmitryglhf mcp-url-downloader up to 4b8cf2de55f6e8864a77d108e8a94a5b8e4394c6. Affected by this issue is the function _validate_url_safe of the file src/mcp_url_downl… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-7158 2026-04-29 10:00 2026-04-28 Show GitHub Exploit DB Packet Storm
988 7.3 HIGH
Network
- - A vulnerability was found in douinc mkdocs-mcp-plugin up to 0.4.1. This affects the function read_document/list_documents of the file server.py. Performing a manipulation of the argument docs_dir/fil… CWE-22
Path Traversal
CVE-2026-7159 2026-04-29 10:00 2026-04-28 Show GitHub Exploit DB Packet Storm
989 7.3 HIGH
Network
- - A weakness has been identified in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts an unknown function of the file /ajax.php?action=save_product. This manipulation of the argument… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-7194 2026-04-29 10:00 2026-04-28 Show GitHub Exploit DB Packet Storm
990 6.3 MEDIUM
Network
- - A security vulnerability has been detected in CodeAstro Online Classroom 1.0. Affected is an unknown function of the file /guestdetails. Such manipulation of the argument deleteid leads to sql inject… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-7196 2026-04-29 10:00 2026-04-28 Show GitHub Exploit DB Packet Storm