Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1391 8.8 重要
Network
langflow Langflow Desktop langflowのLangflow Desktopにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-6543 2026-05-13 10:26 2026-04-30 Show GitHub Exploit DB Packet Storm
1392 7.8 重要
Local
ウォッチガード・テクノロジー WatchGuard Agent ウォッチガード・テクノロジーのWatchGuard Agentにおけるハードコードされた暗号鍵の使用に関する脆弱性 CWE-321
ハードコードされた暗号鍵の使用
CVE-2026-6787 2026-05-13 10:26 2026-05-6 Show GitHub Exploit DB Packet Storm
1393 7.8 重要
Local
ウォッチガード・テクノロジー WatchGuard Agent ウォッチガード・テクノロジーのWatchGuard Agentにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-6788 2026-05-13 10:26 2026-05-6 Show GitHub Exploit DB Packet Storm
1394 7.5 重要
Network
Thales Group Ercom Cryptobox Thales GroupのErcom Cryptoboxにおける不十分なパーミッションまたは特権の不適切な処理に関する脆弱性 CWE-280
CWE-noinfo
CVE-2026-6805 2026-05-13 10:26 2026-05-7 Show GitHub Exploit DB Packet Storm
1395 6.5 警告
Network
Apache Software Foundation CloudStack Apache Software FoundationのCloudStackにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2025-66170 2026-05-13 10:26 2026-05-8 Show GitHub Exploit DB Packet Storm
1396 7.5 重要
Network
Google Android GoogleのAndroidにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2025-71251 2026-05-13 10:26 2026-05-6 Show GitHub Exploit DB Packet Storm
1397 7.5 重要
Network
Google Android GoogleのAndroidにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2025-71252 2026-05-13 10:26 2026-05-6 Show GitHub Exploit DB Packet Storm
1398 6.5 警告
Network
Vsevolod Stakhov libucl API Vsevolod Stakhovのlibucl APIにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-0708 2026-05-13 10:26 2026-03-17 Show GitHub Exploit DB Packet Storm
1399 5.5 警告
Local
Linux Linux Kernel LinuxのLinux KernelにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-31765 2026-05-13 10:26 2026-05-1 Show GitHub Exploit DB Packet Storm
1400 7.1 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-31766 2026-05-13 10:25 2026-05-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346271 - - - Cross-site scripting (XSS) vulnerability in UseModWiki 1.0 allows remote attackers to inject arbitrary web script or HTML via an argument to wiki.pl. NVD-CWE-Other
CVE-2004-1397 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
346272 - roxio toast Format string vulnerability in prelink.c in kextload in Apple OS X, as used by TDIXSupport in Roxio Toast Titanium and possibly other products, allows local users to execute arbitrary code via format… NVD-CWE-Other
CVE-2004-1398 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
346273 - nd nd Multiple buffer overflows in the nd WebDAV interface 0.8.2 and earlier allows remote web servers to execute arbitrary code via certain long strings. NVD-CWE-Other
CVE-2004-0014 2017-07-11 10:29 2004-01-20 Show GitHub Exploit DB Packet Storm
346274 - phorum phorum Multiple cross-site scripting (XSS) vulnerabilities in Phorum 3.4.5 and earlier allow remote attackers to inject arbitrary HTML or web script via (1) the phorum_check_xss function in common.php, (2) … NVD-CWE-Other
CVE-2004-0034 2017-07-11 10:29 2004-01-20 Show GitHub Exploit DB Packet Storm
346275 - opentext opentext_firstclass_desktop_client FirstClass Desktop Client 7.1 allows remote attackers to execute arbitrary commands via hyperlinks in FirstClass RTF messages. NVD-CWE-Other
CVE-2004-0037 2017-07-11 10:29 2004-01-20 Show GitHub Exploit DB Packet Storm
346276 - mcafee epolicy_orchestrator McAfee ePolicy Orchestrator (ePO) 2.5.1 Patch 13 and 3.0 SP2a Patch 3 allows remote attackers to execute arbitrary commands via certain HTTP POST requests to the spipe/file handler on ePO TCP port 81. NVD-CWE-Other
CVE-2004-0038 2017-07-11 10:29 2004-06-14 Show GitHub Exploit DB Packet Storm
346277 - checkpoint firewall-1 Multiple format string vulnerabilities in HTTP Application Intelligence (AI) component in Check Point Firewall-1 NG-AI R55 and R54, and Check Point Firewall-1 HTTP Security Server included with NG FP… NVD-CWE-Other
CVE-2004-0039 2017-07-11 10:29 2004-03-3 Show GitHub Exploit DB Packet Storm
346278 - yahoo messenger Buffer overflow in Yahoo Instant Messenger 5.6.0.1351 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long filename in the download … NVD-CWE-Other
CVE-2004-0043 2017-07-11 10:29 2004-02-3 Show GitHub Exploit DB Packet Storm
346279 - - - Cross-site scripting (XSS) vulnerability in SnapStream PVS LITE allows remote attackers to inject arbitrary web script or HTML via a GET request containing a terminating '"' (double quote) character. NVD-CWE-Other
CVE-2004-0046 2017-07-11 10:29 2004-02-3 Show GitHub Exploit DB Packet Storm
346280 - yamamoto_hirotaka trr19 Multiple programs in trr19 1.0 do not properly drop privileges before executing a system command, which could allow local users to gain privileges. NVD-CWE-Other
CVE-2004-0047 2017-07-11 10:29 2004-03-3 Show GitHub Exploit DB Packet Storm