Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251851 6.8 警告 アップル - Apple Mac OS X の Apple Type Services におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-0174 2011-04-25 10:22 2011-03-23 Show GitHub Exploit DB Packet Storm
251852 6.8 警告 アップル - Apple Mac OS X における任意のコードを実行される脆弱性 CWE-134
書式文字列の問題
CVE-2011-0173 2011-04-25 10:21 2011-03-23 Show GitHub Exploit DB Packet Storm
251853 4.9 警告 アップル - Apple Mac OS X におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2011-0172 2011-04-25 10:20 2011-03-23 Show GitHub Exploit DB Packet Storm
251854 7.5 危険 アップル
ClamAV
- ClamAV の libclamav の pdf.c における任意のコードを実行される脆弱性性 CWE-noinfo
情報不足
CVE-2010-4479 2011-04-25 10:19 2010-12-7 Show GitHub Exploit DB Packet Storm
251855 7.5 危険 アップル
ClamAV
- ClamAV の libclamav の pe_icons.c 内にある icon_cb 関数における一つずれエラーの脆弱性 CWE-189
数値処理の問題
CVE-2010-4261 2011-04-25 10:17 2010-12-7 Show GitHub Exploit DB Packet Storm
251856 5 警告 アップル
ClamAV
- ClamAV の libclamav の pdf.c における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-4260 2011-04-21 18:57 2010-12-7 Show GitHub Exploit DB Packet Storm
251857 9.3 危険 アップル
ClamAV
- ClamAV の find_stream_bounds 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-3434 2011-04-21 17:56 2010-09-30 Show GitHub Exploit DB Packet Storm
251858 7.5 危険 Git project
オラクル
- Git の is_git_directory 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2542 2011-04-21 17:54 2010-08-11 Show GitHub Exploit DB Packet Storm
251859 5 警告 Git project
オラクル
- Git の git-daemon におけるサービス運用妨害(無限ループおよび CPU 資源の消費)の脆弱性 CWE-399
リソース管理の問題
CVE-2009-2108 2011-04-21 17:53 2009-06-18 Show GitHub Exploit DB Packet Storm
251860 4.6 警告 Git project
オラクル
- Git の gitweb/gitweb.perl における任意のコマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5916 2011-04-21 17:52 2009-01-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3101 8.8 HIGH
Network
- - The Vertex Addons for Elementor plugin for WordPress is vulnerable to Missing Authorization in all versions up to and including 1.6.4. This is due to improper authorization enforcement in the activat… CWE-862
 Missing Authorization
CVE-2026-4326 2026-04-25 03:04 2026-04-9 Show GitHub Exploit DB Packet Storm
3102 7.3 HIGH
Network
- - A vulnerability was found in code-projects Simple IT Discussion Forum 1.0. The affected element is an unknown function of the file /functions/addcomment.php. The manipulation of the argument postid r… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-5828 2026-04-25 03:04 2026-04-9 Show GitHub Exploit DB Packet Storm
3103 7.3 HIGH
Network
- - A vulnerability was determined in code-projects Simple IT Discussion Forum 1.0. The impacted element is an unknown function of the file /pages/content.php. This manipulation of the argument post_id c… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-5829 2026-04-25 03:04 2026-04-9 Show GitHub Exploit DB Packet Storm
3104 6.3 MEDIUM
Network
- - A security flaw has been discovered in Agions taskflow-ai up to 2.1.8. This impacts an unknown function of the file src/mcp/server/handlers.ts of the component terminal_execute. Performing a manipula… CWE-77
CWE-78
Command Injection
OS Command 
CVE-2026-5831 2026-04-25 03:04 2026-04-9 Show GitHub Exploit DB Packet Storm
3105 7.3 HIGH
Network
- - A weakness has been identified in atototo api-lab-mcp up to 0.2.1. This affects the function analyze_api_spec/generate_test_scenarios/test_http_endpoint of the file src/mcp/http-server.ts of the comp… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-5832 2026-04-25 03:04 2026-04-9 Show GitHub Exploit DB Packet Storm
3106 4.3 MEDIUM
Network
- - The MStore API plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 4.18.3. This is due to the update_user_profile() function in controllers/f… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-3568 2026-04-25 03:04 2026-04-9 Show GitHub Exploit DB Packet Storm
3107 4.4 MEDIUM
Network
- - The Experto Dashboard for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's settings fields (including 'Navigation Font Size', 'Navigation Font Weight', '… CWE-79
Cross-site Scripting
CVE-2026-3574 2026-04-25 03:04 2026-04-9 Show GitHub Exploit DB Packet Storm
3108 6.4 MEDIUM
Network
- - The OSM – OpenStreetMap plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'marker_name' and 'file_color_list' shortcode attribute of the [osm_map_v3] shortcode in all versions… CWE-79
Cross-site Scripting
CVE-2026-4429 2026-04-25 03:03 2026-04-9 Show GitHub Exploit DB Packet Storm
3109 2.4 LOW
Network
- - A vulnerability was detected in code-projects Online Shoe Store 1.0. Affected is an unknown function of the file /admin/admin_running.php. Performing a manipulation of the argument product_name resul… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-5834 2026-04-25 03:03 2026-04-9 Show GitHub Exploit DB Packet Storm
3110 2.4 LOW
Network
- - A flaw has been found in code-projects Online Shoe Store 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/admin_football.php. Executing a manipulation of the argumen… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-5835 2026-04-25 03:03 2026-04-9 Show GitHub Exploit DB Packet Storm