Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
501 5.5 警告
Adjacent
NASA Core Flight System (cFS) NASAのCore Flight System (cFS)におけるバッファエラーの脆弱性 New CWE-119
バッファエラー
CVE-2026-5475 2026-05-7 11:29 2026-04-3 Show GitHub Exploit DB Packet Storm
502 4.6 警告
Adjacent
NASA Core Flight System (cFS) NASAのCore Flight System (cFS)における複数の脆弱性 New CWE-189
CWE-190
CVE-2026-5476 2026-05-7 11:29 2026-04-3 Show GitHub Exploit DB Packet Storm
503 7.8 重要
Local
IBM IBM Turbonomic Prometurbo agent IBMのIBM Turbonomic Prometurbo agentにおける権限管理に関する脆弱性 New CWE-269
CWE-noinfo
CVE-2026-6389 2026-05-7 11:29 2026-04-30 Show GitHub Exploit DB Packet Storm
504 5.5 警告
Local
レッドハット multicluster engine for Kubernetes レッドハットのmulticluster engine for Kubernetesにおける重要な情報の平文保存に関する脆弱性 New CWE-312
重要な情報の平文保存
CVE-2026-7163 2026-05-7 11:29 2026-04-30 Show GitHub Exploit DB Packet Storm
505 7.2 重要
Network
Amazon.com, Inc. Amazon ECS container agent Amazon.com, Inc.のAmazon ECS container agentにおけるOS コマンドインジェクションの脆弱性 New CWE-78
OSコマンド・インジェクション
CVE-2026-7461 2026-05-7 11:29 2026-04-30 Show GitHub Exploit DB Packet Storm
506 6.5 警告
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP ServerにおけるHTTPレスポンスの分割に関する脆弱性 New CWE-443
CWE-Other
CVE-2026-33523 2026-05-7 11:29 2026-05-4 Show GitHub Exploit DB Packet Storm
507 3.3
Local
Uutils uutils coreutils Uutilsのuutils coreutilsにおける不適切な短絡評価に関する脆弱性 New CWE-768
不適切な短絡評価
CVE-2026-35378 2026-05-7 11:29 2026-04-22 Show GitHub Exploit DB Packet Storm
508 7.5 重要
Network
- 4D SASの4D ServerにおけるXML 外部エンティティの脆弱性 New CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2024-39847 2026-05-7 11:29 2026-04-30 Show GitHub Exploit DB Packet Storm
509 9.1 緊急
Network
rti RTI Connext Professional rtiのRTI Connext ProfessionalにおけるXML 外部エンティティの脆弱性 New CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2025-14543 2026-05-7 11:29 2026-04-30 Show GitHub Exploit DB Packet Storm
510 7.5 重要
Network
XWiki CryptPad XWikiのCryptPadにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 New CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-51846 2026-05-7 11:29 2026-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312761 8.8 HIGH
Network
tamparongj_03 online_graduate_tracer_system A vulnerability was found in SourceCodester Online Graduate Tracer System 1.0 and classified as critical. This issue affects some unknown processing of the file /tracking/admin/view_csprofile.php. Th… CWE-89
SQL Injection
CVE-2024-7931 2024-08-21 23:08 2024-08-20 Show GitHub Exploit DB Packet Storm
312762 9.8 CRITICAL
Network
adonesevangelista online_blood_bank_management_system A vulnerability was found in itsourcecode Online Blood Bank Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file register.php of the … CWE-89
SQL Injection
CVE-2024-7946 2024-08-21 22:55 2024-08-20 Show GitHub Exploit DB Packet Storm
312763 9.8 CRITICAL
Network
janobe point_of_sales_and_inventory_management_system A vulnerability classified as critical has been found in SourceCodester Point of Sales and Inventory Management System 1.0. This affects an unknown part of the file login.php. The manipulation of the… CWE-89
SQL Injection
CVE-2024-7947 2024-08-21 22:53 2024-08-20 Show GitHub Exploit DB Packet Storm
312764 5.4 MEDIUM
Network
7-twenty bot 7Twenty - CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CWE-79
Cross-site Scripting
CVE-2024-42335 2024-08-21 22:49 2024-08-20 Show GitHub Exploit DB Packet Storm
312765 9.8 CRITICAL
Network
arajajyothibabu school_management_system School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the password parameter at login.php CWE-89
SQL Injection
CVE-2024-42566 2024-08-21 22:47 2024-08-20 Show GitHub Exploit DB Packet Storm
312766 9.8 CRITICAL
Network
arajajyothibabu school_management_system School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at admininsert.php. CWE-89
SQL Injection
CVE-2024-42570 2024-08-21 22:46 2024-08-20 Show GitHub Exploit DB Packet Storm
312767 9.8 CRITICAL
Network
arajajyothibabu school_management_system School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the sid parameter at /search.php?action=2. CWE-89
SQL Injection
CVE-2024-42567 2024-08-21 22:46 2024-08-20 Show GitHub Exploit DB Packet Storm
312768 9.8 CRITICAL
Network
arajajyothibabu school_management_system School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at attendance.php. CWE-89
SQL Injection
CVE-2024-42574 2024-08-21 22:44 2024-08-20 Show GitHub Exploit DB Packet Storm
312769 9.8 CRITICAL
Network
arajajyothibabu school_management_system School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at substaff.php. CWE-89
SQL Injection
CVE-2024-42575 2024-08-21 22:43 2024-08-20 Show GitHub Exploit DB Packet Storm
312770 8.8 HIGH
Network
siamonhasan warehouse_inventory_system A Cross-Site Request Forgery (CSRF) in the component edit_group.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges. CWE-352
 Origin Validation Error
CVE-2024-42580 2024-08-21 22:39 2024-08-20 Show GitHub Exploit DB Packet Storm