Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242051 7.5 危険 galeria zdjec - Galeria Zdjec の zd_numer.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-0637 2012-06-26 15:46 2007-01-31 Show GitHub Exploit DB Packet Storm
242052 7.5 危険 encapscms - EncapsCMS における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0635 2012-06-26 15:46 2007-01-31 Show GitHub Exploit DB Packet Storm
242053 7.5 危険 asp edge - ASP EDGE の artreplydelete.asp における SQL インジェクションの脆弱性 - CVE-2007-0632 2012-06-26 15:46 2007-01-31 Show GitHub Exploit DB Packet Storm
242054 7.5 危険 eclectic designs - Eclectic Designs CascadianFAQ の index.php における SQL インジェクションの脆弱性 - CVE-2007-0631 2012-06-26 15:46 2007-01-31 Show GitHub Exploit DB Packet Storm
242055 7.6 危険 Drupal
vbdrupal
- Drupal および vbDrupal の comment_form_add_preview 関数における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2007-0626 2012-06-26 15:46 2007-01-29 Show GitHub Exploit DB Packet Storm
242056 9.3 危険 chmlib - chmlib における任意のコードを実行される脆弱性 - CVE-2007-0619 2012-06-26 15:46 2007-01-31 Show GitHub Exploit DB Packet Storm
242057 6.8 警告 earthlink - Earthlink TotalAccess の SpamBlocker.dll ActiveX コントロールにおける電子メールアドレスを追加される脆弱性 - CVE-2007-0617 2012-06-26 15:46 2007-01-31 Show GitHub Exploit DB Packet Storm
242058 5 警告 アップル - Apple Mac OS X の Bonjour 機能におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0613 2012-06-26 15:46 2007-01-31 Show GitHub Exploit DB Packet Storm
242059 6.8 警告 free lan intra internet portal - FLIP におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0611 2012-06-26 15:46 2007-01-30 Show GitHub Exploit DB Packet Storm
242060 6.8 警告 CMS Made Simple - CMSimple の mailform 機能におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0610 2012-06-26 15:46 2007-01-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
891 5.3 MEDIUM
Network
- - By publishing and querying a crafted zone an attacker can cause allocation of large entries in the negative and aggressive NSEC(3) caches. New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-33258 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
892 5.0 MEDIUM
Network
- - Having many concurrent transfers of the same RPZ can lead to inconsistent RPZ data, use after free and/or a crash of the recursor. Normally concurrent transfers of the same RPZ zone can only occur wi… New CWE-416
 Use After Free
CVE-2026-33259 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
893 5.3 MEDIUM
Network
- - An attacker can send a web request that causes unlimited memory allocation in the internal web server, leading to a denial of service. The internal web server is disabled by default. New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-33260 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
894 5.9 MEDIUM
Network
- - A zone transition from NSEC to NSEC3 might trigger an internal inconsistency and cause a denial of service. New CWE-353
 Missing Support for Integrity Check
CVE-2026-33261 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
895 5.9 MEDIUM
Network
- - An attacker can send replies that result in a null pointer dereference, caused by a missing consistency check and leading to a denial of service. Cookies are disabled by default. New CWE-476
 NULL Pointer Dereference
CVE-2026-33262 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
896 4.4 MEDIUM
Network
- - An RPZ sent by a malicious authoritative server can result in a null pointer dereference, caused by a missing consistency check and leading to a denial of service. New CWE-476
 NULL Pointer Dereference
CVE-2026-33600 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
897 4.4 MEDIUM
Network
- - If you use the zoneToCache function with a malicious authoritative server, an attacker can send a zone that result in a null pointer dereference, caused by a missing consistency check and leading to … New CWE-476
 NULL Pointer Dereference
CVE-2026-33601 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
898 5.4 MEDIUM
Network
- - A flaw was found in Red Hat Quay. When Red Hat Quay requests password re-verification for sensitive operations, such as token generation or robot account creation, the re-authentication prompt can be… New CWE-613
 Insufficient Session Expiration
CVE-2026-6848 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
899 7.1 HIGH
Local
- - A flaw was found in InstructLab. A local attacker could exploit a path traversal vulnerability in the chat session handler by manipulating the `logs_dir` parameter. This allows the attacker to create… New CWE-22
Path Traversal
CVE-2026-6855 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm
900 7.5 HIGH
Network
- - A flaw was found in camel-infinispan. This vulnerability involves unsafe deserialization in the ProtoStream remote aggregation repository. A remote attacker with low privileges could exploit this by … New CWE-502
 Deserialization of Untrusted Data
CVE-2026-6857 2026-04-23 06:23 2026-04-22 Show GitHub Exploit DB Packet Storm