Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 29, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251971 4.3 警告 Opera Software ASA - Opera におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4196 2010-09-27 16:02 2008-09-27 Show GitHub Exploit DB Packet Storm
251972 5 警告 Opera Software ASA - Opera における任意のアドレスの表示を誘発させられる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-4195 2010-09-27 16:02 2008-09-27 Show GitHub Exploit DB Packet Storm
251973 6.8 警告 Opera Software ASA - Opera における HTTP セッションハイジャックの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-3172 2010-09-27 16:01 2008-07-14 Show GitHub Exploit DB Packet Storm
251974 10 危険 Opera Software ASA - Windows 上で稼働する Opera における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-3079 2010-09-27 16:01 2008-07-9 Show GitHub Exploit DB Packet Storm
251975 7.8 危険 Opera Software ASA - Opera における初期化されていないメモリコンテンツを読まれる脆弱性 CWE-200
情報漏えい
CVE-2008-3078 2010-09-27 16:01 2008-07-9 Show GitHub Exploit DB Packet Storm
251976 5 警告 Opera Software ASA - Opera における信頼されたフレームのコンテンツを偽装される脆弱性 CWE-DesignError
CVE-2008-2716 2010-09-27 16:00 2008-06-16 Show GitHub Exploit DB Packet Storm
251977 5 警告 Opera Software ASA - Opera におけるクロスドメインの脆弱性 CWE-200
情報漏えい
CVE-2008-2715 2010-09-27 16:00 2008-06-16 Show GitHub Exploit DB Packet Storm
251978 5 警告 Opera Software ASA - Opera における Web ページのアドレスを偽装される脆弱性 CWE-DesignError
CVE-2008-2714 2010-09-27 15:59 2008-06-16 Show GitHub Exploit DB Packet Storm
251979 9.3 危険 Opera Software ASA - Opera におけるパスワード入力時のキーボードハンドリングの処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2008-1764 2010-09-27 15:59 2008-04-12 Show GitHub Exploit DB Packet Storm
251980 9.3 危険 Opera Software ASA - Opera における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2008-1762 2010-09-27 15:58 2008-04-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 29, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1241 7.3 HIGH
Network
- - Una falla de seguridad ha sido descubierta en itsourcecode Payroll Management System 1.0. Afectada por esta vulnerabilidad es una funcionalidad desconocida del archivo /manage_user.php del componente… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-5237 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1242 7.3 HIGH
Network
- - A weakness has been identified in itsourcecode Payroll Management System 1.0. Affected by this issue is some unknown functionality of the file /view_employee.php of the component Parameter Handler. E… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-5238 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1243 5.3 MEDIUM
Local
- - Se identificó una vulnerabilidad en Axiomatic Bento4 hasta la versión 1.6.0-641. Se ve afectada la función AP4_BitReader::SkipBits del archivo Ap4Dac4Atom.cpp del componente DSI v1 Parser. Dicha mani… CWE-119
CWE-122
Incorrect Access of Indexable Resource ('Range Error') 
Heap-based Buffer Overflow
CVE-2026-5236 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1244 6.5 MEDIUM
Network
- - The Booking for Appointments and Events Calendar - Amelia plugin for WordPress is vulnerable to SQL Injection via the `sort` parameter in the payments listing endpoint in all versions up to, and incl… CWE-89
SQL Injection
CVE-2026-4668 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1245 6.5 MEDIUM
Network
- - El plugin Booking for Appointments and Events Calendar - Amelia para WordPress es vulnerable a inyección SQL a través del parámetro `sort` en el endpoint de listado de pagos en todas las versiones ha… CWE-89
SQL Injection
CVE-2026-4668 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1246 7.3 HIGH
Network
- - Se ha identificado una debilidad en itsourcecode Payroll Management System 1.0. Este problema afecta a alguna funcionalidad desconocida del archivo /view_employee.php del componente Gestor de Parámet… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-5238 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1247 4.3 MEDIUM
Network
- - A security vulnerability has been detected in code-projects BloodBank Managing System 1.0. This affects an unknown part of the file /admin_state.php. The manipulation of the argument statename leads … CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-5240 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1248 4.3 MEDIUM
Network
- - Una vulnerabilidad de seguridad ha sido detectada en code-projects BloodBank Managing System 1.0. Esto afecta una parte desconocida del archivo /admin_state.php. La manipulación del argumento statena… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-5240 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1249 6.3 MEDIUM
Network
- - A vulnerability has been found in gougucms 4.08.18. This affects the function reg_submit of the file gougucms-master\app\home\controller\Login.php of the component User Registration Handler. Such man… CWE-913
CWE-915
 Improper Control of Dynamically-Managed Code Resources
 Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2026-5248 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm
1250 4.3 MEDIUM
Network
- - The Database for Contact Form 7, WPforms, Elementor forms plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the entries_shortcode() function in al… CWE-862
 Missing Authorization
CVE-2026-3831 2026-04-25 03:12 2026-04-1 Show GitHub Exploit DB Packet Storm