Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1431 2.3
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35250 2026-04-24 11:43 2026-04-21 Show GitHub Exploit DB Packet Storm
1432 7.5 重要
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35251 2026-04-24 11:43 2026-04-21 Show GitHub Exploit DB Packet Storm
1433 5.3 警告
Network
WWBN AVideo WWBNのAVideoにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-35449 2026-04-24 11:42 2026-04-6 Show GitHub Exploit DB Packet Storm
1434 8.7 重要
Network
Apostrophe Technologies ApostropheCMS Apostrophe TechnologiesのApostropheCMSにおける複数の脆弱性 CWE-116
CWE-79
CVE-2026-35569 2026-04-24 11:42 2026-04-15 Show GitHub Exploit DB Packet Storm
1435 6.3 警告
Local
Glances project Glances Nicolas Hennion (nicolargo)のGlancesにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-35588 2026-04-24 11:42 2026-04-21 Show GitHub Exploit DB Packet Storm
1436 7.3 重要
Local
Anthropic PBC Claude Code Anthropic PBCのClaude Codeにおける信頼できない検索パスに関する脆弱性 CWE-426
信頼性のない検索パス
CVE-2026-35603 2026-04-24 11:42 2026-04-17 Show GitHub Exploit DB Packet Storm
1437 6.5 警告
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost ServerにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-3590 2026-04-24 11:42 2026-04-15 Show GitHub Exploit DB Packet Storm
1438 6.5 警告
Network
WWBN AVideo WWBNのAVideoにおけるデータの信頼性についての不十分な検証に関する脆弱性 CWE-345
データの信頼性についての不十分な検証
CVE-2026-39366 2026-04-24 11:42 2026-04-7 Show GitHub Exploit DB Packet Storm
1439 5.4 警告
Network
WWBN AVideo WWBNのAVideoにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-39367 2026-04-24 11:42 2026-04-7 Show GitHub Exploit DB Packet Storm
1440 6.5 警告
Network
WWBN AVideo WWBNのAVideoにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-39368 2026-04-24 11:42 2026-04-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313991 - trend_micro officescan
pc-cillin
Buffer overflow in pop3trap.exe for PC-cillin 2000, 2002, and 2003 allows local users to execute arbitrary code via a long input string to TCP port 110 (POP3). NVD-CWE-Other
CVE-2002-1349 2024-02-14 10:17 2002-12-18 Show GitHub Exploit DB Packet Storm
313992 - care_2002 care_2002 Directory traversal vulnerability in cafenews.php for CARE 2002 before beta 1.0.02 allows remote attackers to read arbitrary files via .. (dot dot) sequences and null characters in the lang parameter… NVD-CWE-Other
CVE-2002-0998 2024-02-14 10:17 2002-10-4 Show GitHub Exploit DB Packet Storm
313993 - care_2002 care_2002 Multiple SQL injection vulnerabilities in CARE 2002 before beta 1.0.02 allow remote attackers to perform unauthorized database operations. CWE-89
SQL Injection
CVE-2002-0999 2024-02-14 10:17 2002-10-4 Show GitHub Exploit DB Packet Storm
313994 - ethereal_group ethereal Buffer overflow in the ISIS dissector for Ethereal 0.9.5 and earlier allows remote attackers to cause a denial of service or execute arbitrary code via malformed packets. NVD-CWE-Other
CVE-2002-0834 2024-02-14 10:17 2002-09-24 Show GitHub Exploit DB Packet Storm
313995 - linux_directory_penguin linux_directory_penguin_traceroute Linux Directory Penguin traceroute.pl CGI script 1.0 allows remote attackers to execute arbitrary code via shell metacharacters in the host parameter. NVD-CWE-Other
CVE-2002-0488 2024-02-14 10:17 2002-08-12 Show GitHub Exploit DB Packet Storm
313996 - symatec popper_mod The PHP administration script in popper_mod 1.2.1 and earlier relies on Apache .htaccess authentication, which allows remote attackers to gain privileges if the script is not appropriately configured… NVD-CWE-Other
CVE-2002-0513 2024-02-14 10:17 2002-08-12 Show GitHub Exploit DB Packet Storm
313997 - levcgi.com myguestbook Cross-site scripting vulnerability in MyGuestbook 1.0 allows remote attackers to execute arbitrary script or inject HTML via fields such as (1) user name or (2) comments. NVD-CWE-Other
CVE-2002-0732 2024-02-14 10:17 2002-08-12 Show GitHub Exploit DB Packet Storm
313998 - ethereal_group ethereal Buffer overflows in Ethereal 0.9.4 and earlier allow remote attackers to cause a denial of service or execute arbitrary code via (1) the BGP dissector, or (2) the WCP dissector. NVD-CWE-Other
CVE-2002-0821 2024-02-14 10:17 2002-08-12 Show GitHub Exploit DB Packet Storm
313999 - ethereal_group ethereal Ethereal 0.9.4 and earlier allows remote attackers to cause a denial of service and possibly excecute arbitrary code via the (1) SOCKS, (2) RSVP, (3) AFS, or (4) LMP dissectors, which can be caused t… NVD-CWE-Other
CVE-2002-0822 2024-02-14 10:17 2002-08-12 Show GitHub Exploit DB Packet Storm
314000 - ethereal_group ethereal The ASN.1 parser in Ethereal 0.9.2 and earlier allows remote attackers to cause a denial of service (crash) via a certain malformed packet, which causes Ethereal to allocate memory incorrectly, possi… NVD-CWE-Other
CVE-2002-0353 2024-02-14 10:17 2002-06-25 Show GitHub Exploit DB Packet Storm