Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
233201 7.5 危険 infuseum - ASP Message Board の boards/printer.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5887 2012-09-25 16:59 2007-11-7 Show GitHub Exploit DB Packet Storm
233202 7.5 危険 GuppYTeam - GuppY の error.php におけるディレクトリトラバーサルの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5845 2012-09-25 16:59 2007-11-6 Show GitHub Exploit DB Packet Storm
233203 4.3 警告 Nagios Enterprises, LLC - Nagios の CGI プログラムにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5803 2012-09-25 16:59 2008-05-13 Show GitHub Exploit DB Packet Storm
233204 7.2 危険 Novell - Novell NetWare Client で使用される cdriver における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2007-5762 2012-09-25 16:59 2008-01-9 Show GitHub Exploit DB Packet Storm
233205 7.2 危険 Motorola Solutions, Inc - Motorola netOctopus の NantSys デバイスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5761 2012-09-25 16:59 2008-01-8 Show GitHub Exploit DB Packet Storm
233206 6.9 警告 IBM - IBM DB2 Universal Database の db2dasrrm におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5758 2012-09-25 16:59 2008-04-16 Show GitHub Exploit DB Packet Storm
233207 6.9 警告 IBM - IBM DB2 UDB の db2pd における root 権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5757 2012-09-25 16:59 2008-02-12 Show GitHub Exploit DB Packet Storm
233208 7.5 危険 GuppYTeam - GuppY の inc/includes.inc におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5844 2012-09-25 16:59 2007-11-6 Show GitHub Exploit DB Packet Storm
233209 6.8 警告 nuboard - nuBoard の admin/index.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5841 2012-09-25 16:59 2007-11-6 Show GitHub Exploit DB Packet Storm
233210 2.1 注意 iscsitarget - iscsitarget におけるパスワードを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5827 2012-09-25 16:59 2007-11-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2291 9.9 CRITICAL
Network
- - A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To exploi… CWE-77
Command Injection
CVE-2026-20186 2026-04-18 00:09 2026-04-16 Show GitHub Exploit DB Packet Storm
2292 8.2 HIGH
Local
- - Adobe Photoshop Installer was affected by an Uncontrolled Search Path Element vulnerability that could have resulted in arbitrary code execution in the context of the current user. A low-privileged l… CWE-427
 Uncontrolled Search Path Element
CVE-2026-34632 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2293 8.1 HIGH
Network
- - An authenticated user with access to a kvv2 path through a policy containing a glob may be able to delete secrets they were not authorized to read or write, resulting in denial-of-service. This vulne… CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2026-3605 2026-04-18 00:08 2026-04-17 Show GitHub Exploit DB Packet Storm
2294 7.5 HIGH
Network
- - If a Vault auth mount is configured to pass through the "Authorization" header, and the "Authorization" header is used to authenticate to Vault, Vault forwarded the Vault token to the auth plugin bac… CWE-201
 Insertion of Sensitive Information Into Sent Data
CVE-2026-4525 2026-04-18 00:08 2026-04-17 Show GitHub Exploit DB Packet Storm
2295 5.3 MEDIUM
Network
- - Vault’s PKI engine’s ACME validation did not reject local targets when issuing http-01 and tls-alpn-01 challenges. This may lead to these requests being sent to local network targets, potentially lea… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-5052 2026-04-18 00:08 2026-04-17 Show GitHub Exploit DB Packet Storm
2296 7.5 HIGH
Network
- - Vault is vulnerable to a denial-of-service condition where an unauthenticated attacker can repeatedly initiate or cancel root token generation or rekey operations, occupying the single in-progress op… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-5807 2026-04-18 00:08 2026-04-17 Show GitHub Exploit DB Packet Storm
2297 8.4 HIGH
Network
- - IdentityIQ 8.5, all IdentityIQ 8.5 patch levels prior to 8.5p2, IdentityIQ 8.4, and all IdentityIQ 8.4 patch levels prior to 8.4p4 allow authenticated users assigned the Debug Pages Read Only capabil… CWE-863
 Incorrect Authorization
CVE-2026-4857 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2298 - - - CWE-798: Use of Hard-coded Credentials in Sonatype Nexus Repository Manager versions 3.0.0 through 3.70.5 allows an unauthenticated attacker with network access to gain unauthorized read/write access… CWE-798
 Use of Hard-coded Credentials
CVE-2026-5189 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2299 5.5 MEDIUM
Local
- - A flaw was found in the System Security Services Daemon (SSSD). The pam_passkey_child_read_data() function within the PAM passkey responder fails to properly handle raw bytes received from a pipe. Be… CWE-805
 Buffer Access with Incorrect Length Value
CVE-2026-6245 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2300 5.4 MEDIUM
Network
- - A flaw was found in KubeVirt's Role-Based Access Control (RBAC) evaluation logic. The authorization mechanism improperly truncates subresource names, leading to incorrect permission evaluations. This… CWE-863
 Incorrect Authorization
CVE-2026-6383 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm