Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
233271 4.3 警告 Joomla! - Joomla! におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5577 2012-09-25 16:59 2007-10-18 Show GitHub Exploit DB Packet Storm
233272 6.8 警告 LimeSurvey - LimeSurvey の classes/core/language.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5573 2012-09-25 16:59 2007-10-18 Show GitHub Exploit DB Packet Storm
233273 4.3 警告 ネットギア - Netgear SSL312 PROSAFE SSL VPN-Concentrator におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5562 2012-09-25 16:59 2007-10-18 Show GitHub Exploit DB Packet Storm
233274 10 危険 オラクル - Oracle OPMN デーモンの logging 関数コンポーネントにおけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2007-5561 2012-09-25 16:59 2007-01-16 Show GitHub Exploit DB Packet Storm
233275 10 危険 ジュニパーネットワークス - Juniper HTTP Service におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5560 2012-09-25 16:59 2007-10-18 Show GitHub Exploit DB Packet Storm
233276 10 危険 IBM - IBM ThinkVantage TPM Service におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5559 2012-09-25 16:59 2007-10-18 Show GitHub Exploit DB Packet Storm
233277 7.8 危険 LG Electronics - LG Mobile ハンドセットにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2007-5558 2012-09-25 16:59 2007-10-18 Show GitHub Exploit DB Packet Storm
233278 7.1 危険 オラクル - Oracle におけるサーバのメモリコンテンツを取得される脆弱性 CWE-200
情報漏えい
CVE-2007-5554 2012-09-25 16:59 2007-10-16 Show GitHub Exploit DB Packet Storm
233279 9.3 危険 miranda-im - Miranda IM におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5543 2012-09-25 16:59 2007-10-18 Show GitHub Exploit DB Packet Storm
233280 9.3 危険 miranda-im - Miranda IM におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5542 2012-09-25 16:59 2007-10-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2301 9.1 CRITICAL
Network
- - Pyroscope is an open-source continuous profiling database. The database supports various storage backends, including Tencent Cloud Object Storage (COS). If the database is configured to use Tencent … - CVE-2025-41118 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2302 5.3 MEDIUM
Network
- - The CVE-2021-36156 fix validates the namespace parameter for path traversal sequences after a single URL decode, by double encoding, an attacker can read files at the Ruler API endpoint /loki/api/v1/… - CVE-2026-21726 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2303 3.3 LOW
Network
- - --- title: Cross-Tenant Legacy Correlation Disclosure and Deletion draft: false hero: image: /static/img/heros/hero-legal2.svg content: "# Cross-Tenant Legacy Correlation Disclosure and Deletion"… - CVE-2026-21727 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2304 8.7 HIGH
Network
- - ApostropheCMS is an open-source Node.js content management system. Versions 4.28.0 and prior contain a stored cross-site scripting vulnerability in SEO-related fields (SEO Title and Meta Description)… CWE-79
CWE-116
Cross-site Scripting
 Improper Encoding or Escaping of Output
CVE-2026-35569 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2305 5.5 MEDIUM
Local
- - A flaw was found in GIMP. A remote attacker could exploit an integer overflow vulnerability in the FITS image loader by providing a specially crafted FITS file. This integer overflow leads to a zero-… CWE-190
 Integer Overflow or Wraparound
CVE-2026-40915 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2306 5.0 MEDIUM
Local
- - A flaw was found in GIMP. A stack buffer overflow vulnerability in the TIM image loader's 4BPP decoding path allows a local user to cause a Denial of Service (DoS). By opening a specially crafted TIM… CWE-787
 Out-of-bounds Write
CVE-2026-40916 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2307 5.0 MEDIUM
Local
- - A flaw was found in GIMP. This vulnerability, a heap buffer over-read in the `icns_slurp()` function, occurs when processing specially crafted ICNS image files. An attacker could provide a malicious … CWE-125
Out-of-bounds Read
CVE-2026-40917 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2308 5.5 MEDIUM
Local
- - A flaw was found in GIMP. Processing a specially crafted PVR image file with large dimensions can lead to a denial of service (DoS). This occurs due to a stack-based buffer overflow and an out-of-bou… CWE-131
Incorrect Calculation of Buffer Size
CVE-2026-40918 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2309 6.1 MEDIUM
Local
- - A flaw was found in GIMP. This vulnerability, a buffer overflow in the `file-seattle-filmworks` plugin, can be exploited when a user opens a specially crafted Seattle Filmworks file. A remote attacke… CWE-787
 Out-of-bounds Write
CVE-2026-40919 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm
2310 8.8 HIGH
Network
- - Use after free in Permissions in Google Chrome on Android prior to 147.0.7727.101 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a craf… CWE-416
 Use After Free
CVE-2026-6315 2026-04-18 00:08 2026-04-16 Show GitHub Exploit DB Packet Storm