Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217021 5 警告 3com - 3Com Baseline Switch 2848-SFP Plus のファームウェアにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-2054 2013-12-26 15:44 2006-04-26 Show GitHub Exploit DB Packet Storm
217022 5 警告 application dynamics - Application Dynamics Cartweaver ColdFusion における重要な情報を取得される脆弱性 - CVE-2006-2047 2013-12-26 15:44 2006-04-26 Show GitHub Exploit DB Packet Storm
217023 7.5 危険 アドビシステムズ - Adobe Dreamweaver における SQL インジェクション攻撃を実行される脆弱性 - CVE-2006-2042 2013-12-26 15:44 2006-05-9 Show GitHub Exploit DB Packet Storm
217024 5 警告 asteriskathome - Asterisk Recording Interface の recordings/misc/audio.php における絶対パストラバーサルの脆弱性 - CVE-2006-2021 2013-12-26 15:44 2006-04-25 Show GitHub Exploit DB Packet Storm
217025 7.8 危険 asteriskathome - Asterisk@Home の Asterisk Recording Interface におけるパスワード情報を取得される脆弱性 - CVE-2006-2020 2013-12-26 15:44 2006-04-25 Show GitHub Exploit DB Packet Storm
217026 5 警告 アップル - Apple Mac OS X の Safari におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-2019 2013-12-26 15:44 2006-04-25 Show GitHub Exploit DB Packet Storm
217027 7.5 危険 アップル - Apple Safari におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-1987 2013-12-26 15:44 2006-04-21 Show GitHub Exploit DB Packet Storm
217028 7.5 危険 アップル - Apple Safari におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-1986 2013-12-26 15:44 2006-04-21 Show GitHub Exploit DB Packet Storm
217029 5 警告 フォーティネット - 不特定の Fortinet 製品におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-1966 2013-12-26 15:44 2006-04-21 Show GitHub Exploit DB Packet Storm
217030 4.9 警告 AVAST Software s.r.o. - avast! における任意のファイルの権限を変更される脆弱性 - CVE-2006-1892 2013-12-26 15:44 2006-04-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
71 9.8 CRITICAL
Network
cryptography.io cryptography cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 45.0.0 to before 46.0.7, if a non-contiguous buffer was passed to APIs which accepted Pyth… New CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-39892 2026-04-16 01:12 2026-04-9 Show GitHub Exploit DB Packet Storm
72 8.4 HIGH
Local
nixos nix Nix is a package manager for Linux and other Unix systems. A bug in the fix for CVE-2024-27297 allowed for arbitrary overwrites of files writable by the Nix process orchestrating the builds (typicall… New CWE-61
 UNIX Symbolic Link (Symlink) Following
CVE-2026-39860 2026-04-16 01:12 2026-04-9 Show GitHub Exploit DB Packet Storm
73 4.9 MEDIUM
Network
kamailio kamailio Kamailio is an open source implementation of a SIP Signaling Server. Prior to 6.0.5 and 5.8.7, an out-of-bounds read in the auth module of Kamailio (formerly OpenSER and SER) allows remote attackers … New CWE-125
Out-of-bounds Read
CVE-2026-39864 2026-04-16 01:06 2026-04-9 Show GitHub Exploit DB Packet Storm
74 6.5 MEDIUM
Network
openclaw openclaw OpenClaw before 2026.3.22 contains an information disclosure vulnerability that allows attackers with operator.read scope to expose credentials embedded in channel baseUrl and httpUrl fields. Attacke… New CWE-312
 Cleartext Storage of Sensitive Information
CVE-2026-35644 2026-04-16 01:03 2026-04-10 Show GitHub Exploit DB Packet Storm
75 7.5 HIGH
Network
kamailio kamailio Kamailio is an open source implementation of a SIP Signaling Server. Prior to 6.1.1, 6.0.6, and 5.8.8, an out-of-bounds access in the core of Kamailio (formerly OpenSER and SER) allows remote attacke… New CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-39863 2026-04-16 00:58 2026-04-9 Show GitHub Exploit DB Packet Storm
76 4.3 MEDIUM
Network
apache openmeetings Improper Handling of Insufficient Privileges vulnerability in Apache OpenMeetings. Any registered user can query web service with their credentials and get files/sub-folders of any folder by ID (met… New CWE-274
 Improper Handling of Insufficient Privileges
CVE-2026-33005 2026-04-16 00:27 2026-04-10 Show GitHub Exploit DB Packet Storm
77 7.5 HIGH
Network
apache openmeetings Use of Hard-coded Cryptographic Key vulnerability in Apache OpenMeetings. The remember-me cookie encryption key is set to default value in openmeetings.properties and not being auto-rotated. In case… New CWE-321
 Use of Hard-coded Cryptographic Key
CVE-2026-33266 2026-04-16 00:21 2026-04-10 Show GitHub Exploit DB Packet Storm
78 7.5 HIGH
Network
apache openmeetings Use of GET Request Method With Sensitive Query Strings vulnerability in Apache OpenMeetings. The REST login endpoint uses HTTP GET method with username and password passed as query parameters. Pleas… New CWE-598
Information Exposure Through Query Strings in GET Request 
CVE-2026-34020 2026-04-16 00:21 2026-04-10 Show GitHub Exploit DB Packet Storm
79 6.5 MEDIUM
Network
- - The YML for Yandex Market WordPress plugin before 5.0.26 is vulnerable to Remote Code Execution via the feed generation process. New - CVE-2025-14545 2026-04-16 00:05 2026-04-10 Show GitHub Exploit DB Packet Storm
80 6.5 MEDIUM
Network
- - The YITH WooCommerce Wishlist WordPress plugin before 4.13.0 does not properly validate wishlist ownership in the save_title() AJAX handler before allowing wishlist renaming operations. The function … New - CVE-2026-4432 2026-04-16 00:05 2026-04-10 Show GitHub Exploit DB Packet Storm