Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2881 7.5 重要
Network
Bluspark BLUVOYIX BlusparkのBLUVOYIXにおける複数の脆弱性 CWE-200
CWE-312
CWE-522
CWE-522
CVE-2026-22240 2026-02-4 18:40 2026-01-14 Show GitHub Exploit DB Packet Storm
2882 9.8 緊急
Network
franklioxygen MyTube franklioxygenのMyTubeにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-23837 2026-02-4 18:40 2026-01-19 Show GitHub Exploit DB Packet Storm
2883 5.3 警告
Network
franklioxygen MyTube franklioxygenのMyTubeにおけるセキュリティ決定の信頼できない入力への依存に関する脆弱性 CWE-807
セキュリティ決定の信頼できない入力への依存
CVE-2026-23848 2026-02-4 18:40 2026-01-19 Show GitHub Exploit DB Packet Storm
2884 9.8 緊急
Network
Arcane Arcane Arcaneにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-23944 2026-02-4 18:40 2026-01-19 Show GitHub Exploit DB Packet Storm
2885 5.5 警告
Local
Copier Copier CopierにおけるUNIX Symbolic Link のフォローに関する脆弱性 CWE-61
UNIX Symbolic Link のフォロー
CVE-2026-23968 2026-02-4 18:40 2026-01-21 Show GitHub Exploit DB Packet Storm
2886 7.1 重要
Local
Copier Copier CopierにおけるUNIX Symbolic Link のフォローに関する脆弱性 CWE-61
UNIX Symbolic Link のフォロー
CVE-2026-23986 2026-02-4 18:40 2026-01-21 Show GitHub Exploit DB Packet Storm
2887 6.5 警告
Network
franklioxygen MyTube franklioxygenのMyTubeにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-24139 2026-02-4 18:40 2026-01-24 Show GitHub Exploit DB Packet Storm
2888 5.3 警告
Network
franklioxygen MyTube franklioxygenのMyTubeにおける動的に決定されたオブジェクト属性の不適切に制御された変更に関する脆弱性 CWE-915
動的に決定されたオブジェクト属性の不適切に制御された変更
CVE-2026-24140 2026-02-4 18:40 2026-01-24 Show GitHub Exploit DB Packet Storm
2889 6.1 警告
Network
butor team
Ghost Foundation
Ghost
Portal
Ghost FoundationのGhost等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-24778 2026-02-4 18:40 2026-01-27 Show GitHub Exploit DB Packet Storm
2890 5.4 警告
Network
OpenEMR OpenEMR OpenEMRにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-47817 2026-02-4 18:40 2026-01-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
601 6.3 MEDIUM
Network
- - A vulnerability was determined in langflow-ai langflow up to 1.8.4. Affected by this issue is the function CodeParser.parse_callable_details of the file src/lfx/src/lfx/custom/code_parser/code_parser… Update CWE-74
CWE-77
Injection
Command Injection
CVE-2026-7687 2026-05-6 04:13 2026-05-3 Show GitHub Exploit DB Packet Storm
602 7.3 HIGH
Network
- - A flaw has been found in Acrel Electrical ECEMS Enterprise Microgrid Energy Efficiency Management System 1.3.0. The impacted element is an unknown function of the file /SubstationWEBV2/main/elecMaxMi… Update CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-7694 2026-05-6 04:13 2026-05-3 Show GitHub Exploit DB Packet Storm
603 7.3 HIGH
Network
- - A flaw has been found in AV Stumpfl Pixera Two Media Server up to 25.2 R2. Impacted is an unknown function of the component Websocket API. This manipulation causes code injection. The attack can be i… Update CWE-74
CWE-94
Injection
Code Injection
CVE-2026-7703 2026-05-6 04:13 2026-05-4 Show GitHub Exploit DB Packet Storm
604 4.3 MEDIUM
Adjacent
- - A vulnerability has been found in AV Stumpfl Pixera Two Media Server up to 25.1 R2. The affected element is an unknown function of the component Service Port 1338. Such manipulation leads to path tra… Update CWE-22
Path Traversal
CVE-2026-7704 2026-05-6 04:13 2026-05-4 Show GitHub Exploit DB Packet Storm
605 4.3 MEDIUM
Network
- - A vulnerability has been found in Open5GS up to 2.7.7. This issue affects the function gmm_handle_service_request of the file /src/amf/gmm-handler.c of the component AMF. The manipulation leads to de… New CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7706 2026-05-6 04:13 2026-05-4 Show GitHub Exploit DB Packet Storm
606 4.3 MEDIUM
Network
- - A vulnerability was determined in Open5GS up to 2.7.7. The affected element is the function ogs_dbi_subscription_data in the library /lib/dbi/subscription.c of the component UDR. This manipulation of… New CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7708 2026-05-6 04:13 2026-05-4 Show GitHub Exploit DB Packet Storm
607 7.3 HIGH
Network
- - A weakness has been identified in MindsDB up to 26.01. This impacts the function exec of the file mindsdb/integrations/handlers/byom_handler/proc_wrapper.py of the component Engine Handler. Executing… New CWE-284
CWE-434
Improper Access Control
 Unrestricted Upload of File with Dangerous Type 
CVE-2026-7711 2026-05-6 04:13 2026-05-4 Show GitHub Exploit DB Packet Storm
608 6.3 MEDIUM
Network
- - A security vulnerability has been detected in MindsDB up to 26.01. Affected is the function pickle.loads of the component Pickle Handler. The manipulation leads to deserialization. The attack is poss… New CWE-20
CWE-502
 Improper Input Validation 
 Deserialization of Untrusted Data
CVE-2026-7712 2026-05-6 04:13 2026-05-4 Show GitHub Exploit DB Packet Storm
609 5.3 MEDIUM
Network
- - A vulnerability has been found in osrg GoBGP up to 4.3.0. This impacts the function SRv6L3ServiceAttribute.DecodeFromBytes of the file pkg/packet/bgp/prefix_sid.go of the component SRv6 L3 Service. S… New CWE-404
 Improper Resource Shutdown or Release
CVE-2026-7734 2026-05-6 04:12 2026-05-4 Show GitHub Exploit DB Packet Storm
610 7.3 HIGH
Network
- - A vulnerability was found in osrg GoBGP up to 4.3.0. Affected is the function PathAttributeAigp.DecodeFromBytes of the file pkg/packet/bgp/bgp.go of the component AIGP Attribute Parser. Performing a … New CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7735 2026-05-6 04:12 2026-05-4 Show GitHub Exploit DB Packet Storm