Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
237451 4.6 警告 maxum development corporation - Rumpus における権限を取得される脆弱性 - CVE-2007-0366 2012-09-25 16:47 2007-01-19 Show GitHub Exploit DB Packet Storm
237452 6.8 警告 nicola asuni - AIOCP におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0365 2012-09-25 16:47 2007-01-19 Show GitHub Exploit DB Packet Storm
237453 4.3 警告 nicecoder - nicecoder.com INDEXU におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-0364 2012-09-25 16:47 2007-01-19 Show GitHub Exploit DB Packet Storm
237454 6.8 警告 Openads - Openads などの admin-search.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0363 2012-09-25 16:47 2007-01-18 Show GitHub Exploit DB Packet Storm
237455 7.5 危険 letterman - Joomla! の letterman コンポーネントにおける SQL インジェクションの脆弱性 - CVE-2007-0382 2012-09-25 16:47 2006-02-28 Show GitHub Exploit DB Packet Storm
237456 7.5 危険 oreon project - Oreon の lang/index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0360 2012-09-25 16:47 2007-01-18 Show GitHub Exploit DB Packet Storm
237457 7.8 危険 ヒューレット・パッカード - HP Jetdirect の FTP サーバの実装におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0358 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
237458 7.5 危険 mgb - MGB OpenSource Gustbook の email.php における SQL インジェクションの脆弱性 - CVE-2007-0354 2012-09-25 16:47 2007-01-18 Show GitHub Exploit DB Packet Storm
237459 6.8 警告 mywebland - myBloggie の index.php などにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0353 2012-09-25 16:47 2007-01-18 Show GitHub Exploit DB Packet Storm
237460 9.3 危険 マイクロソフト - Microsoft Help Workshop におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-0352 2012-09-25 16:47 2007-01-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
891 5.5 MEDIUM
Local
- - A stack-based out-of-bounds read vulnerability in VrmlData_Scene::ReadLine in the VRML parser in Open CASCADE Technology (OCCT) V8_0_0_rc5 allows attackers to cause a denial of service via a crafted … Update CWE-125
Out-of-bounds Read
CVE-2026-42480 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
892 7.1 HIGH
Adjacent
- - openxc/isotp-c thru commit 5a5d19245f65189202719321facd49ce6f5d46ac (2021-08-09) contains an out-of-bounds read in the ISO-TP Single Frame receive handler, where the 4-bit payload length nibble is us… Update CWE-125
Out-of-bounds Read
CVE-2026-37535 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
893 8.8 HIGH
Adjacent
- - miaofng/uds-c commit e506334e270d77b20c0bc259ac6c7d8c9b702b7a (2016-10-05) contains a stack buffer overflow in send_diagnostic_request. A 6-byte stack buffer (MAX_DIAGNOSTIC_PAYLOAD_SIZE=6) receives … Update CWE-121
Stack-based Buffer Overflow
CVE-2026-37536 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
894 8.1 HIGH
Adjacent
- - collin80/Open-SAE-J1939 thru commit 744024d4306bc387857dfce439558336806acb06 (2023-03-08) contains an integer underflow leading to out-of-bounds write in Transport Protocol Data Transfer handling. At… Update CWE-190
 Integer Overflow or Wraparound
CVE-2026-37537 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
895 7.5 HIGH
Network
- - Buffer overflow vulnerability in socketcand 0.4.2 in file socketcand.c in function main allows attackers to cause a denial of service or other unspecified impacts via crafted bus_name. Update CWE-121
Stack-based Buffer Overflow
CVE-2026-37538 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
896 8.4 HIGH
Local
- - OpenAMP v2025.10.0 ELF loader contains an integer overflow vulnerability in firmware image parsing. In elf_loader.c, it performs multiplication of two attacker-controlled 16-bit values from the ELF h… Update CWE-190
 Integer Overflow or Wraparound
CVE-2026-37540 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
897 7.8 HIGH
Local
- - An issue in the component DirectIo64.sys of PassMark BurnInTest v11.0 Build 1011, OSForensics v11.1 Build 1007, and PerformanceTest v11.1 Build 1004 allows attackers to access kernel memory and escal… Update CWE-20
CWE-269
 Improper Input Validation 
 Improper Privilege Management
CVE-2025-52347 2026-05-8 00:53 2026-05-2 Show GitHub Exploit DB Packet Storm
898 8.1 HIGH
Network
- - phpBB before 3.3.16 is vulnerable to Host Header Injection that can lead to password rest link poisoning. When force_server_vars is disabled, the servers hostname may be extracted from the HTTP Host … Update CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2026-29199 2026-05-8 00:53 2026-05-4 Show GitHub Exploit DB Packet Storm
899 7.8 HIGH
Local
- - An issue in Lymphatus caesium-image-compressor All versions up to and including commit 02da2c6 allows a local attacker to execute arbitrary code via the shutdownMachine and putMachineToSleep function… Update CWE-77
CWE-94
Command Injection
Code Injection
CVE-2026-36365 2026-05-8 00:53 2026-05-5 Show GitHub Exploit DB Packet Storm
900 6.5 MEDIUM
Network
- - Missing input validation in the MP_REACH_NLRI component of FRRouting (FRR) stable/10.0 to stable/10.6 allows authenticated attackers to cause a Denial of Service (DoS) via supplying a crafted UPDATE … Update CWE-20
 Improper Input Validation 
CVE-2026-37458 2026-05-8 00:53 2026-05-5 Show GitHub Exploit DB Packet Storm