Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
244061 7.5 危険 gnuedu - gnuedu における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-2609 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
244062 7.8 危険 Firebird Project - Firebird におけるバッファオーバーフローの脆弱性 - CVE-2007-2606 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
244063 7.1 危険 brujula toolbar - Brujula Toolbar の BRUJULA4.NET.DLL におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2605 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
244064 7.8 危険 brew city software - FlexLabel ActiveX コントロールにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2604 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
244065 7.8 危険 audio cd tools - Audio CD Ripper OCX ActiveX コントロールの Init 関数におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2603 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
244066 9.3 危険 divx city - fix.dll の GDivX Zenith Player AviFixer クラスの ActiveX コントロールにおけるバッファオーバーフローの脆弱性 - CVE-2007-2601 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
244067 7.5 危険 agner fog - aForum の common/func.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2596 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
244068 9.3 危険 BarCodeWiz, Inc. - BarCodeWiz ActiveX コントロールおよび BarcodeWiz.dll の Verify 関数におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-2585 2012-06-26 15:46 2007-05-9 Show GitHub Exploit DB Packet Storm
244069 1.9 注意 アップル - Apple Safari における重要な情報を取得される脆弱性 - CVE-2007-2580 2012-06-26 15:46 2007-05-9 Show GitHub Exploit DB Packet Storm
244070 5.8 警告 acp3 - ACP3 におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2579 2012-06-26 15:46 2007-05-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
31 8.8 HIGH
Network
n8n n8n n8n is an open source workflow automation platform. Prior to versions 1.123.32, 2.17.4, and 2.18.1, an authenticated user with permission to create or modify workflows containing a Python Code Node c… New CWE-94
Code Injection
CVE-2026-42234 2026-05-7 03:05 2026-05-5 Show GitHub Exploit DB Packet Storm
32 9.6 CRITICAL
Network
n8n n8n n8n is an open source workflow automation platform. Prior to versions 1.123.32, 2.17.4, and 2.18.1, an unauthenticated attacker could register a malicious MCP OAuth client with a crafted client_name.… New CWE-79
CWE-87
Cross-site Scripting
 Improper Neutralization of Alternate XSS Syntax
CVE-2026-42235 2026-05-7 03:05 2026-05-5 Show GitHub Exploit DB Packet Storm
33 7.3 HIGH
Network
apache thrift Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixe… New CWE-297
 Improper Validation of Certificate with Host Mismatch
CVE-2026-43869 2026-05-7 03:05 2026-05-5 Show GitHub Exploit DB Packet Storm
34 5.3 MEDIUM
Network
apache thrift Memory Allocation with Excessive Size Value vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issu… New CWE-789
 Memory Allocation with Excessive Size Value
CVE-2026-43868 2026-05-7 03:05 2026-05-5 Show GitHub Exploit DB Packet Storm
35 7.3 HIGH
Network
apache thrift Origin Validation Error, Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting'),… New CWE-22
CWE-113
CWE-346
CWE-400
Path Traversal
HTTP Response Splitting
 Origin Validation Error
 Uncontrolled Resource Consumption
CVE-2026-43870 2026-05-7 03:05 2026-05-5 Show GitHub Exploit DB Packet Storm
36 7.5 HIGH
Network
qualcomm fastconnect_6200_firmware
fastconnect_6700_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
flight_rb5_5g_firmware
fwa_gen_3_ultra_firmware
g2_gen_1_firmware
g3x_gen_…
Transient DOS when processing target power rate tables during channel configuration. New CWE-126
CWE-125
 Buffer Over-read
Out-of-bounds Read
CVE-2025-47401 2026-05-7 03:03 2026-05-5 Show GitHub Exploit DB Packet Storm
37 7.5 HIGH
Network
qualcomm snapdragon_x65_5g_modem-rf_firmware
snapdragon_x72_5g_modem-rf_firmware
snapdragon_x75_5g_modem-rf_firmware
srv1h_firmware
srv1m_firmware
sxr2230p_firmware
sxr2250p_firmware
sxr2…
Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming. New CWE-126
CWE-125
 Buffer Over-read
Out-of-bounds Read
CVE-2025-47403 2026-05-7 03:03 2026-05-5 Show GitHub Exploit DB Packet Storm
38 7.8 HIGH
Local
qualcomm qca8695au_firmware
qca9367_firmware
qca9377_firmware
qcc710_firmware
qcm2290_firmware
qcm4325_firmware
qcm5430_firmware
qcm6125_firmware
qcm6490_firmware
qcn6224_firmware
Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modified. New CWE-120
CWE-787
Classic Buffer Overflow
 Out-of-bounds Write
CVE-2025-47404 2026-05-7 03:03 2026-05-5 Show GitHub Exploit DB Packet Storm
39 7.8 HIGH
Local
qualcomm fastconnect_6900_firmware
fastconnect_7800_firmware
iqx5121_firmware
iqx7181_firmware
qca0000_firmware
sc8380xp_firmware
sd865_5g_firmware
snapdragon_xr2_5g_firmware
snapdrago…
Memory corruption when processing camera sensor input/output control codes with invalid output buffers. New CWE-822
CWE-119
 Untrusted Pointer Dereference
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2025-47405 2026-05-7 03:03 2026-05-5 Show GitHub Exploit DB Packet Storm
40 7.8 HIGH
Local
qualcomm fastconnect_6200_firmware
fastconnect_6900_firmware
fastconnect_7800_firmware
iqx5121_firmware
iqx7181_firmware
qca0000_firmware
sc8380xp_firmware
sd865_5g_firmware
sm6250_fir…
Memory corruption when another driver calls an IOCTL with invalid input/output buffer. New CWE-822
CWE-119
 Untrusted Pointer Dereference
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2025-47408 2026-05-7 03:03 2026-05-5 Show GitHub Exploit DB Packet Storm