Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1 - - (複数のベンダ) (複数の製品) 一部のHTTP/2サーバーにおけるフロー制御に起因したサービス拒否(DoS)の脆弱性 New - - 2026-07-21 14:05 2026-07-17 Show GitHub Exploit DB Packet Storm
2 - - (複数のベンダ) (複数の製品) CISA ICS Advisory / ICS Medical Advisory(2026年07月16日) New - - 2026-07-21 14:05 2026-07-17 Show GitHub Exploit DB Packet Storm
3 - - LMSYS Org SGLang SGLangにおけるPickleのデシリアライゼーションに関する脆弱性 New - - 2026-07-21 14:05 2026-07-17 Show GitHub Exploit DB Packet Storm
4 6.5 警告
Network
Drupal AI Agents Drupalプラグイン「AI Agents」における不正な認証の脆弱性 New CWE-Other
その他
CVE-2026-13236 2026-07-21 12:21 2026-07-21 Show GitHub Exploit DB Packet Storm
5 6.8 警告
Physics
ソニー株式会社 2017年以前に出荷された一部のFeliCa ICチップ 非接触型ICカード技術FeliCaの一部のICチップにおける脆弱性 New CWE-Other
その他
CVE-2026-59776 2026-07-21 12:13 2026-07-21 Show GitHub Exploit DB Packet Storm
6 7.8 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows Server 2012
Microsoft Windows 11 25h2
Microsoft Windows Server 2019
Microsoft …
WinSock 用 Windows Ancillary Function Driver の特権の昇格の脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-50312 2026-07-21 10:44 2026-07-14 Show GitHub Exploit DB Packet Storm
7 7.8 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows Server 2012
Microsoft Windows 11 25h2
Microsoft Windows Server 2019
Microsoft …
Windows NTFS のリモートでコードが実行される脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-50313 2026-07-21 10:44 2026-07-14 Show GitHub Exploit DB Packet Storm
8 7.8 重要
Local
マイクロソフト Microsoft Office 2021 Long Term Servicing Channel Edition
Microsoft Office 2019
Microsoft 365 Apps
Microsoft Office 2024 …
Microsoft Office のリモート コードが実行される脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-50314 2026-07-21 10:44 2026-07-14 Show GitHub Exploit DB Packet Storm
9 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 11 24h2
Microsoft Windows 11 26h1
Microsoft Windows 11 25h2
Windows Image Acquisition の特権の昇格の脆弱性 New CWE-476
NULL ポインタデリファレンス
CVE-2026-50315 2026-07-21 10:44 2026-07-14 Show GitHub Exploit DB Packet Storm
10 5.5 警告
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows 11 25h2
Microsoft Windows 10 22h2
Microsoft Windows Server 2022
Microsoft Wind…
Windows カーネルの情報漏えいの脆弱性 New CWE-532
ログファイルからの情報漏えい
CVE-2026-50316 2026-07-21 10:44 2026-07-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 21, 2026, 4:31 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
368801 - coxco_support a-cart
metacart
midicart_asp
midicart_asp_maxi
midicart_asp_plus
salescart-pro
salescart-std
MidiCart stores the midicart.mdb database file under the Web document root, which allows remote attackers to steal sensitive information by directly requesting the database. CWE-200
Information Exposure
CVE-2002-1432 2008-09-5 13:00 2003-04-11 Show GitHub Exploit DB Packet Storm
368802 - ikonboard ikonboard Cross-site scripting (XSS) vulnerability in Ikonboard 3.1.1 allows remote attackers to inject arbitrary web script or HTML via a private message with a javascript: URL in the IMG tag, in which the UR… CWE-79
Cross-site Scripting
CVE-2002-2230 2008-09-5 13:00 2002-12-31 Show GitHub Exploit DB Packet Storm
368803 - - - The echo service is running. NVD-CWE-Other
CVE-1999-0635 2007-07-13 13:00 1999-01-1 Show GitHub Exploit DB Packet Storm
368804 - - - This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System … NVD-CWE-Other
CVE-1999-0635 2007-07-13 13:00 1999-01-1 Show GitHub Exploit DB Packet Storm
368805 - - - The Echo Service is an unsecured and obsolete protocol and it should be disabled. Historically it has been used to perform denial of service attacks. NVD-CWE-Other
CVE-1999-0635 2007-07-13 13:00 1999-01-1 Show GitHub Exploit DB Packet Storm
368806 - - - Multiple vulnerabilities in multiple vendor implementations of the X.400 protocol allow remote attackers to cause a denial of service and possibly execute arbitrary code via an X.400 message containi… NVD-CWE-Other
CVE-2003-0565 2005-10-20 13:00 2003-12-1 Show GitHub Exploit DB Packet Storm
368807 - - - Two Sun security certificates have been compromised, which could allow attackers to insert malicious code such as applets and make it appear that it is signed by Sun. NVD-CWE-Other
CVE-2000-0889 2005-10-20 13:00 2001-02-12 Show GitHub Exploit DB Packet Storm
368808 - - - Buffer overflow in post-query sample CGI program allows remote attackers to execute arbitrary commands via an HTTP POST request that contains at least 10001 parameters. NVD-CWE-Other
CVE-2001-0291 2005-10-20 13:00 2001-05-3 Show GitHub Exploit DB Packet Storm