Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240551 4.9 警告 glyph and cog - alternate pdftops filter の pdftops.pl における任意のファイルを上書きされる脆弱性 CWE-DesignError
CVE-2007-6358 2012-06-26 15:54 2007-12-3 Show GitHub Exploit DB Packet Storm
240552 5 警告 aertherwide - exiftags におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2007-6356 2012-06-26 15:54 2007-12-18 Show GitHub Exploit DB Packet Storm
240553 6.8 警告 アカマイテクノロジーズ - Akamai Download Manager ActiveX コントロール (DownloadManagerV2.ocx) における任意のファイルを強制実行される脆弱性 CWE-94
コード・インジェクション
CVE-2007-6339 2012-06-26 15:54 2008-05-1 Show GitHub Exploit DB Packet Storm
240554 10 危険 aertherwide - exiftags における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2007-6355 2012-06-26 15:54 2007-12-18 Show GitHub Exploit DB Packet Storm
240555 10 危険 aertherwide - exiftags における詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2007-6354 2012-06-26 15:54 2007-12-18 Show GitHub Exploit DB Packet Storm
240556 7.5 危険 Exiv2 project - exiv2 library の exif.cpp における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2007-6353 2012-06-26 15:54 2007-12-19 Show GitHub Exploit DB Packet Storm
240557 7.5 危険 aurora - aurora framework における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6345 2012-06-26 15:54 2007-12-13 Show GitHub Exploit DB Packet Storm
240558 7.5 危険 david castro - Apache HTTP Server の David Castro AuthCAS.pm における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6342 2012-06-26 15:54 2007-12-13 Show GitHub Exploit DB Packet Storm
240559 7.5 危険 avs media - Online Media Technologies AVSMJPEGFILE.DLL の特定の ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6327 2012-06-26 15:54 2007-12-13 Show GitHub Exploit DB Packet Storm
240560 6.8 警告 fastpublish - Fastpublish CMS の adminbereich/designconfig.php における PHP リモートファイルインクルージョンの脆弱性 CWE-20
CWE-94
CVE-2007-6325 2012-06-26 15:54 2007-12-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
991 5.9 MEDIUM
Network
- - A zone transition from NSEC to NSEC3 might trigger an internal inconsistency and cause a denial of service. CWE-353
 Missing Support for Integrity Check
CVE-2026-33261 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
992 5.9 MEDIUM
Network
- - An attacker can send replies that result in a null pointer dereference, caused by a missing consistency check and leading to a denial of service. Cookies are disabled by default. CWE-476
 NULL Pointer Dereference
CVE-2026-33262 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
993 4.4 MEDIUM
Network
- - An RPZ sent by a malicious authoritative server can result in a null pointer dereference, caused by a missing consistency check and leading to a denial of service. CWE-476
 NULL Pointer Dereference
CVE-2026-33600 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
994 4.4 MEDIUM
Network
- - If you use the zoneToCache function with a malicious authoritative server, an attacker can send a zone that result in a null pointer dereference, caused by a missing consistency check and leading to … CWE-476
 NULL Pointer Dereference
CVE-2026-33601 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
995 5.4 MEDIUM
Network
- - A flaw was found in Red Hat Quay. When Red Hat Quay requests password re-verification for sensitive operations, such as token generation or robot account creation, the re-authentication prompt can be… CWE-613
 Insufficient Session Expiration
CVE-2026-6848 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
996 7.1 HIGH
Local
- - A flaw was found in InstructLab. A local attacker could exploit a path traversal vulnerability in the chat session handler by manipulating the `logs_dir` parameter. This allows the attacker to create… CWE-22
Path Traversal
CVE-2026-6855 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
997 7.5 HIGH
Network
- - A flaw was found in camel-infinispan. This vulnerability involves unsafe deserialization in the ProtoStream remote aggregation repository. A remote attacker with low privileges could exploit this by … CWE-502
 Deserialization of Untrusted Data
CVE-2026-6857 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
998 - - - Incorrect Default Permissions in pcvisit service binary on Windows allows a low-privileged local attacker to escalate their privileges by overwriting the service binary with arbitrary contents. This … CWE-276
Incorrect Default Permissions 
CVE-2026-0539 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
999 6.5 MEDIUM
Network
- - Insufficient validation of Chrome extension identifiers in Raindrop.io Bookmark Manager Web App 5.6.76.0 allows attackers to obtain sensitive user data via a crafted request. CWE-20
CWE-284
 Improper Input Validation 
Improper Access Control
CVE-2026-31192 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
1000 5.3 MEDIUM
Network
- - An attacker can create a large number of concurrent DoQ or DoH3 connections, causing unlimited memory allocation in DNSdist and leading to a denial of service. DOQ and DoH3 are disabled by default. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-33254 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm