Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
243671 7.5 危険 Atomix Productions - AtomixMP3 におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-2487 2012-06-26 15:46 2007-05-3 Show GitHub Exploit DB Packet Storm
243672 7.1 危険 Cerulean Studios - Cerulean Studios Trillian Pro における重要な情報を取得される脆弱性 - CVE-2007-2479 2012-06-26 15:46 2007-05-2 Show GitHub Exploit DB Packet Storm
243673 9.3 危険 Cerulean Studios - Cerulean Studios Trillian Pro の IRC コンポーネントにおけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2007-2478 2012-06-26 15:46 2007-05-2 Show GitHub Exploit DB Packet Storm
243674 7.5 危険 CMS Made Simple - CMS Made Simple の stylesheet.php における SQL インジェクションの脆弱性 - CVE-2007-2473 2012-06-26 15:46 2007-04-24 Show GitHub Exploit DB Packet Storm
243675 5.8 警告 filerun - FileRun の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2470 2012-06-26 15:46 2007-05-2 Show GitHub Exploit DB Packet Storm
243676 7.5 危険 filerun - FileRun の index.php における SQL インジェクションの脆弱性 - CVE-2007-2469 2012-06-26 15:46 2007-05-2 Show GitHub Exploit DB Packet Storm
243677 7.5 危険 firefly - FireFly の modules/admin/include/config.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2460 2012-06-26 15:46 2007-05-2 Show GitHub Exploit DB Packet Storm
243678 7.5 危険 firefly - FireFly における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2456 2012-06-26 15:46 2007-05-2 Show GitHub Exploit DB Packet Storm
243679 6 警告 GNU Project - GNU findutils の locate におけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2007-2452 2012-06-26 15:46 2007-06-4 Show GitHub Exploit DB Packet Storm
243680 5 警告 Caucho Technology - Caucho Resin Professional および Caucho Resin におけるシステムパスを取得される脆弱性 - CVE-2007-2441 2012-06-26 15:46 2007-05-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
51 - - - In adbd_tls_verify_cert of auth.cpp, there is a possible bypass of wireless ADB mutual authentication due to a logic error in the code. This could lead to remote (proximal/adjacent) code execution as… New - CVE-2026-0073 2026-05-5 03:16 2026-05-5 Show GitHub Exploit DB Packet Storm
52 5.9 MEDIUM
Network
- - An issue in Assimp v.6.0.2 allows a remote attacker to cause a denial of service via the FBXParser.cpp, ParseVectorDataArray() New CWE-400
CWE-770
 Uncontrolled Resource Consumption
 Allocation of Resources Without Limits or Throttling
CVE-2025-70071 2026-05-5 03:16 2026-05-5 Show GitHub Exploit DB Packet Storm
53 7.5 HIGH
Network
- - An issue in Assimp v.6.0.2 allows a remote attacker to cause a denial of service via the FBXConverter.cpp and ConvertMeshMultiMaterial() method New CWE-400
CWE-770
 Uncontrolled Resource Consumption
 Allocation of Resources Without Limits or Throttling
CVE-2025-70069 2026-05-5 03:16 2026-05-4 Show GitHub Exploit DB Packet Storm
54 7.5 HIGH
Network
- - Assertion failure vulnerability in the PCO (Protocol Configuration Options) parser in the SMF (Session Management Function) component of Open5GS before v2.7.5 allows remote attackers to cause denial … New CWE-617
 Reachable Assertion
CVE-2025-56568 2026-05-5 03:16 2026-05-1 Show GitHub Exploit DB Packet Storm
55 7.5 HIGH
Network
- - An issue in open5gs v.2.7.3 allows a remote attacker to cause a denial of service via a crafted PDU Session Modification Request New CWE-20
CWE-400
 Improper Input Validation 
 Uncontrolled Resource Consumption
CVE-2025-46115 2026-05-5 03:16 2026-05-1 Show GitHub Exploit DB Packet Storm
56 9.8 CRITICAL
Network
cpanel cpanel
whm
wp_squared
cPanel and WHM versions after 11.40 contain an authentication bypass vulnerability in the login flow that allows unauthenticated remote attackers to gain unauthorized access to the control panel. Update CWE-306
Missing Authentication for Critical Function
CVE-2026-41940 2026-05-5 03:09 2026-04-30 Show GitHub Exploit DB Packet Storm
57 6.5 MEDIUM
Network
gnu glibc The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to validate the RDATA content against the RDATA length in a DNS response when processing… Update CWE-126
 Buffer Over-read
CVE-2026-6238 2026-05-5 02:57 2026-04-29 Show GitHub Exploit DB Packet Storm
58 9.9 CRITICAL
Network
- - In Apache Iceberg, the table's metadata files are control files: they tell readers which data files belong to the table and which table version to read. `write.metadata.path` is an optional table … New CWE-20
CWE-284
CWE-732
CWE-863
 Improper Input Validation 
Improper Access Control
 Incorrect Permission Assignment for Critical Resource
 Incorrect Authorization
CVE-2026-42812 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm
59 9.9 CRITICAL
Network
- - In plain terms, Apache Polaris is supposed to issue short-lived GCS credentials that only work for one table's files, but a crafted namespace or table name can cause those credentials to work across … New CWE-20
CWE-917
 Improper Input Validation 
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2026-42811 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm
60 9.9 CRITICAL
Network
- - Apache Polaris can issue broad temporary ("vended") storage credentials during staged table creation before the effective table location has been validated or durably reserved. Those temporary crede… New CWE-20
CWE-862
 Improper Input Validation 
 Missing Authorization
CVE-2026-42809 2026-05-5 02:16 2026-05-5 Show GitHub Exploit DB Packet Storm