Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
235111 7.5 危険 hotscripts
phpBB
- phpBB の PJIRC モジュールの forum/irc/irc.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1565 2012-09-25 17:16 2008-03-31 Show GitHub Exploit DB Packet Storm
235112 10 危険 MPlayer project - MPlayer の stream/realrtsp/sdpplin.c における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2008-1558 2012-09-25 17:16 2008-03-31 Show GitHub Exploit DB Packet Storm
235113 4.3 警告 マイクロソフト - Exchange Server 2003 SP2 用の Microsoft OWA におけるオープンリダイレクトの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1547 2012-09-25 17:16 2008-10-20 Show GitHub Exploit DB Packet Storm
235114 7.8 危険 三菱電機 - Mitsubishi Electric GB 空調制御システムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2008-1546 2012-09-25 17:16 2008-03-28 Show GitHub Exploit DB Packet Storm
235115 4.3 警告 マイクロソフト - Microsoft Internet Explorer 7 の XMLHttpRequest object の setRequestHeader メソッドにおける HTTP リクエスト分割攻撃などを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-1545 2012-09-25 17:16 2008-03-28 Show GitHub Exploit DB Packet Storm
235116 4.3 警告 his - HIS Webshop の cgi-bin/his-webshop.pl におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1541 2012-09-25 17:16 2008-03-28 Show GitHub Exploit DB Packet Storm
235117 7.5 危険 Mambo Foundation
Joomla!
- Joomla! および Mambo 用の Datsogallery における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1540 2012-09-25 17:16 2008-03-28 Show GitHub Exploit DB Packet Storm
235118 4.3 警告 Zoho Corporation - ManageEngine EventLog Analyzer の searchAction.do におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1538 2012-09-25 17:16 2008-03-28 Show GitHub Exploit DB Packet Storm
235119 7.5 危険 matti kiviharju - Joomla! 用の Matti Kiviharju rekry コンポーネントにおける SQL インジェクションの脆弱性 CWE-20
CWE-89
CVE-2008-1535 2012-09-25 17:16 2008-03-28 Show GitHub Exploit DB Packet Storm
235120 6.8 警告 Joomla! - Joomla! の XML-RPC Blogger API プラグインにおける無許可の記事操作を実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-1533 2012-09-25 17:16 2008-02-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
851 8.8 HIGH
Network
- - An XML external entity (XXE) vulnerability in the /designer/loadReport endpoint of SpringBlade v4.8.0 allows authenticated attackers to execute arbitrary code via injecting a crafted payload. Update CWE-611
XXE
CVE-2026-36765 2026-05-5 03:16 2026-05-1 Show GitHub Exploit DB Packet Storm
852 8.8 HIGH
Network
- - An issue in the fileEntityId parameter in the /a/file/upload endpoint of JeeSite v5.15.1 allows authenticated attackers with file upload permissions to execute a path traversal and write arbitrary fi… Update CWE-22
Path Traversal
CVE-2026-36762 2026-05-5 03:16 2026-05-1 Show GitHub Exploit DB Packet Storm
853 7.5 HIGH
Network
- - Buffer Over-read vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue. New CWE-126
 Buffer Over-read
CVE-2026-34059 2026-05-5 03:16 2026-05-4 Show GitHub Exploit DB Packet Storm
854 5.3 MEDIUM
Network
- - Improper Null Termination, Out-of-bounds Read vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which f… New CWE-125
CWE-170
Out-of-bounds Read
 Improper Null Termination
CVE-2026-34032 2026-05-5 03:16 2026-05-4 Show GitHub Exploit DB Packet Storm
855 5.3 MEDIUM
Network
- - Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the… New CWE-125
Out-of-bounds Read
CVE-2026-33857 2026-05-5 03:16 2026-05-4 Show GitHub Exploit DB Packet Storm
856 6.5 MEDIUM
Network
- - HTTP response splitting vulnerability in multiple Apache HTTP Server modules with untrusted or compromised backend servers. This issue affects Apache HTTP Server: from through 2.4.66. Users are rec… New CWE-443
 DEPRECATED: HTTP response splitting
CVE-2026-33523 2026-05-5 03:16 2026-05-5 Show GitHub Exploit DB Packet Storm
857 5.3 MEDIUM
Network
- - A NULL pointer dereference in the mod_authn_socache in Apache HTTP Server 2.4.66 and earlier allows an unauthenticated remote user to crash a child process in a caching forward proxy configuration. … New CWE-476
 NULL Pointer Dereference
CVE-2026-33007 2026-05-5 03:16 2026-05-5 Show GitHub Exploit DB Packet Storm
858 - - - A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows a bypass of Digest authentication by a remote attacker. Users are recommended to upgrade to version 2.4.67, which fixes th… New CWE-208
 Information Exposure Through Timing Discrepancy
CVE-2026-33006 2026-05-5 03:16 2026-05-5 Show GitHub Exploit DB Packet Storm
859 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… New - CVE-2026-2828 2026-05-5 03:16 2026-05-5 Show GitHub Exploit DB Packet Storm
860 - - - An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and earlier allows local .htaccess authors to read files with the privileges of the httpd user. Users are recommended to upgra… New CWE-269
 Improper Privilege Management
CVE-2026-24072 2026-05-5 03:16 2026-05-4 Show GitHub Exploit DB Packet Storm