Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
213801 3.5 注意 Compfight - WordPress 用 Compfight プラグインの compfight-search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8622 2014-11-7 15:27 2014-07-3 Show GitHub Exploit DB Packet Storm
213802 7.5 危険 CA Technologies - CA Cloud Service Management における任意のファイルを読まれる脆弱性 CWE-nocwe
CWE以外
CVE-2014-8474 2014-11-7 15:22 2014-11-3 Show GitHub Exploit DB Packet Storm
213803 6.8 警告 CA Technologies - CA Cloud Service Management におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-8473 2014-11-7 15:21 2014-11-3 Show GitHub Exploit DB Packet Storm
213804 6.8 警告 CA Technologies - CA Cloud Service Management におけるアクセス制限を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-8472 2014-11-7 15:20 2014-11-3 Show GitHub Exploit DB Packet Storm
213805 4.3 警告 CA Technologies - CA Cloud Service Management における反射攻撃を実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-8471 2014-11-7 15:20 2014-11-3 Show GitHub Exploit DB Packet Storm
213806 4.3 警告 LaboCNIL - French National Commission on Informatics and Liberty CookieViz の json.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8352 2014-11-7 14:56 2014-11-4 Show GitHub Exploit DB Packet Storm
213807 7.5 危険 LaboCNIL - French National Commission on Informatics and Liberty CookieViz の info.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-8351 2014-11-7 14:55 2014-11-4 Show GitHub Exploit DB Packet Storm
213808 4.3 警告 Forma Lms project - Forma Lms におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5257 2014-11-7 14:53 2014-11-4 Show GitHub Exploit DB Packet Storm
213809 5 警告 SAP - SAP NetWeaver のスタンドアローンエンキューサーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-0995 2014-11-7 14:43 2014-10-16 Show GitHub Exploit DB Packet Storm
213810 5 警告 Compal Broadband Networks - Compal Broadband Networks の CH6640E および CG6640E Wireless Gateway のファームウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-16
環境設定
CVE-2014-8657 2014-11-7 14:17 2014-10-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1161 5.4 MEDIUM
Network
- - A security vulnerability has been detected in LinkStackOrg LinkStack up to 4.8.6. The affected element is the function saveLink of the file app/Http/Controllers/UserController.php of the component Ma… CWE-285
CWE-639
Improper Authorization
 Authorization Bypass Through User-Controlled Key
CVE-2026-7502 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
1162 8.8 HIGH
Network
- - A vulnerability was detected in code-projects for Plugin 4.1.2cu.5137. The impacted element is the function setWiFiMultipleConfig in the library /lib/cste_modules/wireless.so of the file /cgi-bin/cst… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7503 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
1163 7.3 HIGH
Network
- - A flaw has been found in nextlevelbuilder GoClaw and GoClaw Lite up to 3.8.5. This affects an unknown function of the component RPC Handler. This manipulation causes improper authorization. The attac… CWE-266
CWE-285
 Incorrect Privilege Assignment
Improper Authorization
CVE-2026-7505 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
1164 7.3 HIGH
Network
- - A vulnerability has been found in SourceCodester Hotel Management System 1.0. This impacts an unknown function of the file /index.php/reservation/check. Such manipulation of the argument room_type le… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-7506 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
1165 6.3 MEDIUM
Network
- - A vulnerability was determined in OWAP DefectDojo up to 2.55.4. Affected by this vulnerability is an unknown functionality of the component Benchmark/Engagement/Product/Survey. Executing a manipulati… CWE-285
CWE-639
Improper Authorization
 Authorization Bypass Through User-Controlled Key
CVE-2026-7510 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
1166 6.3 MEDIUM
Network
- - A vulnerability was found in Bootstrap CMS 0.9.0-alpha. Affected is an unknown function of the file resources/views/pages/show.blade.php of the component Page Creation Handler. Performing a manipulat… CWE-74
CWE-94
Injection
Code Injection
CVE-2026-7508 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
1167 8.8 HIGH
Network
- - A flaw has been found in UTT HiPER 1200GW up to 2.5.3-1703. The affected element is the function strcpy of the file /goform/formUser. Executing a manipulation can lead to buffer overflow. The attack … CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7512 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
1168 8.8 HIGH
Network
- - A vulnerability has been found in UTT HiPER 1200GW up to 2.5.3-170306. The impacted element is the function strcpy of the file /goform/formRemoteControl. The manipulation leads to buffer overflow. Th… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7513 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
1169 4.3 MEDIUM
Network
- - A flaw has been found in Open5GS up to 2.7.7. This issue affects the function amf_namf_callback_handle_sdm_data_change_notify of the file /namf-callback/v1/{id}/sdmsubscription-notify of the componen… CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7518 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm
1170 7.3 HIGH
Network
- - A vulnerability has been found in Fujian Apex LiveBOS up to 2.0. Impacted is an unknown function of the file /feed/UploadImage.do of the component Endpoint. Such manipulation of the argument filename… CWE-22
Path Traversal
CVE-2026-7519 2026-05-2 00:26 2026-05-1 Show GitHub Exploit DB Packet Storm