Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
961 5.9 警告
Network
Timo Sirainen
Open-Xchange
Dovecot Pro
Dovecot
Timo Sirainen等の複数ベンダの製品における認証に関する脆弱性 CWE-287
CWE-Other
CVE-2026-27856 2026-05-1 10:39 2026-03-27 Show GitHub Exploit DB Packet Storm
962 5.3 警告
Network
Timo Sirainen
Open-Xchange
Dovecot Pro
Dovecot
Timo Sirainen等の複数ベンダの製品におけるLDAP インジェクションの脆弱性 CWE-90
LDAP インジェクション
CVE-2026-27860 2026-05-1 10:39 2026-03-27 Show GitHub Exploit DB Packet Storm
963 8.4 重要
Local
Anthropic PBC Claude Code
Claude Agent SDK
Anthropic PBCのClaude Agent SDK等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-35020 2026-05-1 10:39 2026-04-6 Show GitHub Exploit DB Packet Storm
964 7.8 重要
Local
Anthropic PBC Claude Code
Claude Agent SDK
Anthropic PBCのClaude Agent SDK等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-35021 2026-05-1 10:39 2026-04-6 Show GitHub Exploit DB Packet Storm
965 9.8 緊急
Network
Anthropic PBC Claude Code
Claude Agent SDK
Anthropic PBCのClaude Agent SDK等の複数製品におけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-35022 2026-05-1 10:39 2026-04-6 Show GitHub Exploit DB Packet Storm
966 7.8 重要
Local
MAGIX MAGIX MP3 deluxe MAGIXのMAGIX MP3 deluxeにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2018-25260 2026-05-1 10:39 2026-04-22 Show GitHub Exploit DB Packet Storm
967 7.8 重要
Local
Enter Srl Iperius Backup Enter SrlのIperius Backupにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2018-25261 2026-05-1 10:39 2026-04-22 Show GitHub Exploit DB Packet Storm
968 10 緊急
Network
マイクロソフト Microsoft Purview eDiscovery Microsoft Purview eDiscovery Elevation of Privilege Vulnerability CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-26150 2026-05-1 10:39 2026-04-23 Show GitHub Exploit DB Packet Storm
969 8.8 重要
Network
Nexxt Solutions Nebula300Plus Firmware Nexxt SolutionsのNebula300Plus Firmwareにおける非公開の機能に関する脆弱性 CWE-912
非公開の機能
CVE-2026-31847 2026-05-1 10:38 2026-03-23 Show GitHub Exploit DB Packet Storm
970 9.8 緊急
Network
Nexxt Solutions Nebula300Plus Firmware Nexxt SolutionsのNebula300Plus Firmwareにおける重要な情報の平文保存に関する脆弱性 CWE-312
重要な情報の平文保存
CVE-2026-31848 2026-05-1 10:38 2026-03-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313051 5.3 MEDIUM
Network
online_railway_reservation_system_project online_railway_reservation_system A vulnerability was found in CodeAstro Online Railway Reservation System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/assets/. The manipulation… NVD-CWE-Other
CVE-2024-7912 2024-08-20 01:16 2024-08-19 Show GitHub Exploit DB Packet Storm
313052 7.2 HIGH
Network
dahuasecurity nvr4104-4ks2\/l_firmware
nvr4108-4ks2\/l_firmware
nvr4116-4ks2\/l_firmware
nvr4104-p-4ks2\/l_firmware
nvr4108-p-4ks2\/l_firmware
nvr4108-8p-4ks2\/l_firmware
nvr4116-8p-4ks2\/l_firmw…
A vulnerability has been found in Dahua products.After obtaining the administrator's username and password, the attacker can send a carefully crafted data packet to the interface with vulnerabilities… NVD-CWE-noinfo
CVE-2024-39946 2024-08-20 01:16 2024-07-31 Show GitHub Exploit DB Packet Storm
313053 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… - CVE-2022-4425 2024-08-20 01:15 2024-08-20 Show GitHub Exploit DB Packet Storm
313054 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… - CVE-2022-4411 2024-08-20 01:15 2024-08-20 Show GitHub Exploit DB Packet Storm
313055 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… - CVE-2022-4404 2024-08-20 01:15 2024-08-20 Show GitHub Exploit DB Packet Storm
313056 9.8 CRITICAL
Network
dahuasecurity nvr4104-4ks2\/l_firmware
nvr4108-4ks2\/l_firmware
nvr4116-4ks2\/l_firmware
nvr4104-p-4ks2\/l_firmware
nvr4108-p-4ks2\/l_firmware
nvr4108-8p-4ks2\/l_firmware
nvr4116-8p-4ks2\/l_firmw…
A vulnerability has been found in Dahua products. Attackers can send carefully crafted data packets to the interface with vulnerabilities to initiate device initialization. NVD-CWE-noinfo
CVE-2024-39950 2024-08-20 01:15 2024-07-31 Show GitHub Exploit DB Packet Storm
313057 9.8 CRITICAL
Network
angeljudesuarez billing_system A vulnerability was found in itsourcecode Billing System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /addclient1.php. The manipulation of the argument l… CWE-89
SQL Injection
CVE-2024-7913 2024-08-20 01:14 2024-08-19 Show GitHub Exploit DB Packet Storm
313058 5.4 MEDIUM
Network
oretnom23 yoga_class_registration_system A vulnerability classified as problematic has been found in SourceCodester Yoga Class Registration System 1.0. Affected is an unknown function of the file /php-ycrs/classes/SystemSettings.php. The ma… CWE-79
Cross-site Scripting
CVE-2024-7914 2024-08-20 01:12 2024-08-19 Show GitHub Exploit DB Packet Storm
313059 7.5 HIGH
Network
dahuasecurity nvr4104-4ks2\/l_firmware
nvr4108-4ks2\/l_firmware
nvr4116-4ks2\/l_firmware
nvr4104-p-4ks2\/l_firmware
nvr4108-p-4ks2\/l_firmware
nvr4108-8p-4ks2\/l_firmware
nvr4116-8p-4ks2\/l_firmw…
A vulnerability has been found in Dahua products.Attackers can send carefully crafted data packets to the interface with vulnerabilities, causing the device to crash. NVD-CWE-noinfo
CVE-2024-39944 2024-08-20 01:12 2024-07-31 Show GitHub Exploit DB Packet Storm
313060 8.8 HIGH
Network
dlink dns-120_firmware
dnr-202l_firmware
dns-315l_firmware
dns-320_firmware
dns-320l_firmware
dns-320lw_firmware
dns-321_firmware
dnr-322l_firmware
dns-323_firmware
dns-325_firmw…
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340… CWE-120
Classic Buffer Overflow
CVE-2024-7832 2024-08-20 01:02 2024-08-15 Show GitHub Exploit DB Packet Storm