|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":April 29, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 471 | 5.4 |
警告
Network |
wger | wger | wger Projectのwgerにおけるクロスサイトスクリプティングの脆弱性 New |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2026-40353 | 2026-04-27 10:48 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 472 | 7.6 |
重要
Network |
wger | wger | wger Projectのwgerにおける複数の脆弱性 New |
CWE-284 CWE-862 |
CVE-2026-40474 | 2026-04-27 10:48 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 473 | 9 |
緊急
Network |
Thymeleaf | Thymeleaf | Thymeleafにおける複数の脆弱性 New |
CWE-1336 CWE-917 |
CVE-2026-40477 | 2026-04-27 10:48 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 474 | 9 |
緊急
Network |
Thymeleaf | Thymeleaf | Thymeleafにおける複数の脆弱性 New |
CWE-1336 CWE-917 |
CVE-2026-40478 | 2026-04-27 10:47 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 475 | 7.1 |
重要
Local |
Craig J. Bass (craigjbass) | ClearanceKit | Craig J. Bass (craigjbass)のClearanceKitにおける不正な認証に関する脆弱性 New |
CWE-863
不正な認証 |
CVE-2026-40599 | 2026-04-27 10:47 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 476 | 4.4 |
警告
Local |
Craig J. Bass (craigjbass) | ClearanceKit | Craig J. Bass (craigjbass)のClearanceKitにおける保護メカニズムの不具合に関する脆弱性 New |
CWE-693
保護メカニズムの不具合 |
CVE-2026-40604 | 2026-04-27 10:47 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 477 | 4.8 |
警告
Network |
mitmproxy | mitmproxy | mitmproxyにおけるLDAP インジェクションの脆弱性 New |
CWE-90
LDAP インジェクション |
CVE-2026-40606 | 2026-04-27 10:47 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 478 | 7.5 |
重要
Network |
coturn project | coturn | coturn projectのcoturnにおける不正な型変換に関する脆弱性 New |
CWE-704
不正な型変換またはキャスト |
CVE-2026-40613 | 2026-04-27 10:47 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 479 | 8.8 |
重要
Network |
goshs | goshs | goshsにおけるパストラバーサルの脆弱性 New |
CWE-22
パス・トラバーサル |
CVE-2026-40876 | 2026-04-27 10:47 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
| 480 | 7.5 |
重要
Network |
- | NestJSにおける再帰制御に関する脆弱性 New |
CWE-674
不適切な再帰制御 |
CVE-2026-40879 | 2026-04-27 10:47 | 2026-04-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:April 29, 2026, 4:51 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 314021 | - | - | - | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none. | - | CVE-2022-37303 | 2023-11-7 12:49 | 2023-05-12 | Show | GitHub Exploit DB Packet Storm | |
| 314022 | - | - | - | Rejected reason: Not used in 2022 | - | CVE-2022-37951 | 2023-11-7 12:49 | 2023-03-14 | Show | GitHub Exploit DB Packet Storm | |
| 314023 | - | - | - | Rejected reason: Not used in 2022 | - | CVE-2022-37950 | 2023-11-7 12:49 | 2023-03-14 | Show | GitHub Exploit DB Packet Storm | |
| 314024 | - | - | - | Rejected reason: Not used in 2022 | - | CVE-2022-37949 | 2023-11-7 12:49 | 2023-03-14 | Show | GitHub Exploit DB Packet Storm | |
| 314025 | - | - | - | Rejected reason: Not used in 2022 | - | CVE-2022-37948 | 2023-11-7 12:49 | 2023-03-14 | Show | GitHub Exploit DB Packet Storm | |
| 314026 | - | - | - | Rejected reason: Not used in 2022 | - | CVE-2022-37947 | 2023-11-7 12:49 | 2023-03-14 | Show | GitHub Exploit DB Packet Storm | |
| 314027 | - | - | - | Rejected reason: Not used in 2022 | - | CVE-2022-37946 | 2023-11-7 12:49 | 2023-03-14 | Show | GitHub Exploit DB Packet Storm | |
| 314028 | - | - | - | Rejected reason: Not used in 2022 | - | CVE-2022-37945 | 2023-11-7 12:49 | 2023-03-14 | Show | GitHub Exploit DB Packet Storm | |
| 314029 | - | - | - | Rejected reason: Not used in 2022 | - | CVE-2022-37944 | 2023-11-7 12:49 | 2023-03-14 | Show | GitHub Exploit DB Packet Storm | |
| 314030 | - | - | - | Rejected reason: Not used in 2022 | - | CVE-2022-37943 | 2023-11-7 12:49 | 2023-03-14 | Show | GitHub Exploit DB Packet Storm |