Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2951 8.5 重要
Network
OpenClaw OpenClaw OpenClawにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-41914 2026-05-1 10:46 2026-04-28 Show GitHub Exploit DB Packet Storm
2952 6.1 警告
Local
OpenClaw OpenClaw OpenClawにおける不完全なブラックリストに関する脆弱性 CWE-184
不完全なブラックリスト
CVE-2026-41915 2026-05-1 10:46 2026-04-28 Show GitHub Exploit DB Packet Storm
2953 5.4 警告
Network
OpenClaw OpenClaw OpenClawにおけるセッション期限に関する脆弱性 CWE-613
不適切なセッション期限
CVE-2026-41916 2026-05-1 10:46 2026-04-28 Show GitHub Exploit DB Packet Storm
2954 6.5 警告
Network
Technitium DNS Server TechnitiumのDNS Serverにおける指定された機能の不適切な提供に関する脆弱性 CWE-684
指定された機能の不適切な提供
CVE-2026-42255 2026-05-1 10:46 2026-04-26 Show GitHub Exploit DB Packet Storm
2955 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-42420 2026-05-1 10:46 2026-04-28 Show GitHub Exploit DB Packet Storm
2956 5.4 警告
Network
OpenClaw OpenClaw OpenClawにおけるセッション期限に関する脆弱性 CWE-613
不適切なセッション期限
CVE-2026-42421 2026-05-1 10:46 2026-04-28 Show GitHub Exploit DB Packet Storm
2957 8.8 重要
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-42422 2026-05-1 10:46 2026-04-28 Show GitHub Exploit DB Packet Storm
2958 7.5 重要
Network
OpenClaw OpenClaw OpenClawにおける安全でない失敗処理に関する脆弱性 CWE-636
安全でない失敗処理
CVE-2026-42423 2026-05-1 10:46 2026-04-28 Show GitHub Exploit DB Packet Storm
2959 5 警告
Local
OpenClaw OpenClaw OpenClawにおけるファイル名やパス名の外部制御に関する脆弱性 CWE-73
ファイル名やパス名の外部制御
CVE-2026-42424 2026-05-1 10:46 2026-04-28 Show GitHub Exploit DB Packet Storm
2960 8.8 重要
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-42426 2026-05-1 10:46 2026-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314001 6.5 MEDIUM
Adjacent
zephyrproject zephyr BT:Classic: Multiple missing buf length checks CWE-369
 Divide By Zero
CVE-2024-6135 2024-09-19 10:34 2024-09-14 Show GitHub Exploit DB Packet Storm
314002 6.5 MEDIUM
Adjacent
zephyrproject zephyr BT: HCI: adv_ext_report Improper discarding in adv_ext_report CWE-787
 Out-of-bounds Write
CVE-2024-6259 2024-09-19 10:33 2024-09-14 Show GitHub Exploit DB Packet Storm
314003 6.5 MEDIUM
Adjacent
zephyrproject zephyr BT: Classic: SDP OOB access in get_att_search_list CWE-787
 Out-of-bounds Write
CVE-2024-6137 2024-09-19 10:33 2024-09-14 Show GitHub Exploit DB Packet Storm
314004 6.5 MEDIUM
Network
microfocus edirectory Possible External Service Interaction attack in eDirectory has been discovered in OpenText™ eDirectory. This impact all version before 9.2.6.0000. CWE-521
Weak Password Requirements 
CVE-2021-38133 2024-09-19 06:05 2024-09-12 Show GitHub Exploit DB Packet Storm
314005 9.8 CRITICAL
Network
microfocus edirectory Possible External Service Interaction attack in eDirectory has been discovered in OpenText™ eDirectory. This impact all version before 9.2.6.0000. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2021-38132 2024-09-19 06:04 2024-09-12 Show GitHub Exploit DB Packet Storm
314006 6.1 MEDIUM
Network
microfocus edirectory Possible Cross-Site Scripting (XSS) Vulnerability in eDirectory has been discovered in OpenText™ eDirectory 9.2.5.0000. CWE-79
Cross-site Scripting
CVE-2021-38131 2024-09-19 06:00 2024-09-12 Show GitHub Exploit DB Packet Storm
314007 6.1 MEDIUM
Network
i-doit i-doit Cross-site Scripting (XSS) vulnerability in idoit pro version 28. This vulnerability allows an attacker to retrieve session details of an authenticated user due to lack of proper sanitization of the … CWE-79
Cross-site Scripting
CVE-2024-8750 2024-09-19 05:38 2024-09-12 Show GitHub Exploit DB Packet Storm
314008 5.3 MEDIUM
Network
ordat ordat.erp User enumeration vulnerability in ORDAT FOSS-Online before v2.24.01 allows attackers to determine if an account exists in the application by comparing the server responses of the forgot password func… CWE-203
 Information Exposure Through Discrepancy
CVE-2024-34336 2024-09-19 05:32 2024-09-13 Show GitHub Exploit DB Packet Storm
314009 6.1 MEDIUM
Network
ordat ordat.erp ORDAT FOSS-Online before version 2.24.01 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the login page. CWE-79
Cross-site Scripting
CVE-2024-34335 2024-09-19 05:32 2024-09-13 Show GitHub Exploit DB Packet Storm
314010 7.5 HIGH
Network
ordat ordat.erp ORDAT FOSS-Online before v2.24.01 was discovered to contain a SQL injection vulnerability via the forgot password function. CWE-89
SQL Injection
CVE-2024-34334 2024-09-19 05:32 2024-09-13 Show GitHub Exploit DB Packet Storm