Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3211 7.1 重要
Local
レッドハット
Xiph.Org
Red Hat Enterprise Linux
Theora
レッドハット等の複数ベンダの製品における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-5673 2026-05-7 12:00 2026-04-6 Show GitHub Exploit DB Packet Storm
3212 9.8 緊急
Network
Sipeed Picoclaw SipeedのPicoclawにおける複数の脆弱性 CWE-74
CWE-77
CVE-2026-6987 2026-05-7 12:00 2026-04-25 Show GitHub Exploit DB Packet Storm
3213 8.8 重要
Network
Coze Coze Studio CozeのCoze Studioにおける複数の脆弱性 CWE-74
CWE-89
CVE-2026-7023 2026-05-7 12:00 2026-04-26 Show GitHub Exploit DB Packet Storm
3214 7.3 重要
Network
ShadowCloneLabs Glutamate MCP Servers ShadowCloneLabsのGlutamate MCP Serversにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-7094 2026-05-7 12:00 2026-04-27 Show GitHub Exploit DB Packet Storm
3215 5.4 警告
Network
helpy.io helpy helpy.ioのhelpyにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-40229 2026-05-7 12:00 2026-04-29 Show GitHub Exploit DB Packet Storm
3216 5.4 警告
Network
helpy.io helpy helpy.ioのhelpyにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-40230 2026-05-7 12:00 2026-04-29 Show GitHub Exploit DB Packet Storm
3217 7.5 重要
Network
Exim Development Exim Exim DevelopmentのEximにおける指定された機能の不適切な提供に関する脆弱性 CWE-684
指定された機能の不適切な提供
CVE-2026-40684 2026-05-7 12:00 2026-04-30 Show GitHub Exploit DB Packet Storm
3218 9.8 緊急
Network
Exim Development Exim Exim DevelopmentのEximにおける複数の脆弱性 CWE-684
CWE-787
CVE-2026-40685 2026-05-7 12:00 2026-04-30 Show GitHub Exploit DB Packet Storm
3219 5.3 警告
Network
Exim Development Exim Exim DevelopmentのEximにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-40686 2026-05-7 12:00 2026-04-30 Show GitHub Exploit DB Packet Storm
3220 9.1 緊急
Network
Exim Development Exim Exim DevelopmentのEximにおけるリソースの初期化の不備に関する脆弱性 CWE-909
リソースの初期化の不備
CVE-2026-40687 2026-05-7 12:00 2026-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
317471 6.1 MEDIUM
Network
phpipam phpipam phpipam 1.6 is vulnerable to Cross Site Scripting (XSS) via app\admin\import-export\import-load-data.php. CWE-79
Cross-site Scripting
CVE-2024-41358 2024-09-5 01:07 2024-08-30 Show GitHub Exploit DB Packet Storm
317472 6.1 MEDIUM
Network
baijunyao bjyadmin bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/getContent.php CWE-79
Cross-site Scripting
CVE-2024-41351 2024-09-5 01:07 2024-08-30 Show GitHub Exploit DB Packet Storm
317473 6.1 MEDIUM
Network
baijunyao bjyadmin bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/imageUp.php CWE-79
Cross-site Scripting
CVE-2024-41350 2024-09-5 01:07 2024-08-30 Show GitHub Exploit DB Packet Storm
317474 6.1 MEDIUM
Network
jpatokal openflights openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/alsearch.php CWE-79
Cross-site Scripting
CVE-2024-41348 2024-09-5 01:06 2024-08-30 Show GitHub Exploit DB Packet Storm
317475 6.1 MEDIUM
Network
jpatokal openflights openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/settings.php CWE-79
Cross-site Scripting
CVE-2024-41347 2024-09-5 01:05 2024-08-30 Show GitHub Exploit DB Packet Storm
317476 5.4 MEDIUM
Network
jpatokal openflights openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/submit.php CWE-79
Cross-site Scripting
CVE-2024-41346 2024-09-5 01:05 2024-08-30 Show GitHub Exploit DB Packet Storm
317477 9.8 CRITICAL
Network
smackcoders sendgrid Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Smackcoders SendGrid for WordPress allows SQL Injection.This issue affects SendGrid for WordPress… CWE-89
SQL Injection
CVE-2024-43965 2024-09-5 01:02 2024-08-30 Show GitHub Exploit DB Packet Storm
317478 9.8 CRITICAL
Network
progress whatsup_gold In WhatsUp Gold versions released before 2024.0.0, if the application is configured with only a single user, a SQL Injection vulnerability allows an unauthenticated attacker to retrieve the users enc… CWE-89
SQL Injection
CVE-2024-6671 2024-09-5 00:53 2024-08-30 Show GitHub Exploit DB Packet Storm
317479 9.8 CRITICAL
Network
mozilla firefox Memory safety bugs present in Firefox 129. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code… CWE-787
 Out-of-bounds Write
CVE-2024-8389 2024-09-5 00:50 2024-09-3 Show GitHub Exploit DB Packet Storm
317480 9.8 CRITICAL
Network
seacms seacms SeaCMS v12.9 was discovered to contain a SQL injection vulnerability via the id parameter at /dmplayer/dmku/index.php?ac=del. CWE-89
SQL Injection
CVE-2024-44921 2024-09-5 00:00 2024-09-3 Show GitHub Exploit DB Packet Storm