Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1481 9.8 緊急
Network
Martin (Fosowl) AgenticSeek Martin (Fosowl)のAgenticSeekにおける複数の脆弱性 CWE-74
CWE-94
CVE-2026-5584 2026-05-7 12:27 2026-04-5 Show GitHub Exploit DB Packet Storm
1482 7.5 重要
Network
Tencent AI-Infra-Guard TencentのAI-Infra-Guardにおける複数の脆弱性 CWE-200
CWE-284
CWE-noinfo
CVE-2026-5585 2026-05-7 12:27 2026-04-5 Show GitHub Exploit DB Packet Storm
1483 3.7
Network
Simon Tatham PuTTY PuTTYにおける複数の脆弱性 CWE-345
CWE-347
CVE-2026-4115 2026-05-7 12:27 2026-03-22 Show GitHub Exploit DB Packet Storm
1484 9.8 緊急
Network
cPanel cPanel
WP Squared
cPanel WHM
cPanelのcPanel等の複数製品における重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-41940 2026-05-7 12:27 2026-04-29 Show GitHub Exploit DB Packet Storm
1485 9.8 緊急
Network
Provectus UI for Apache Kafka ProvectusのUI for Apache Kafkaにおける複数の脆弱性 CWE-74
CWE-94
CVE-2026-5562 2026-05-7 12:27 2026-04-5 Show GitHub Exploit DB Packet Storm
1486 6.1 警告
Network
WSO2 WSO2 Identity Server WSO2のWSO2 Identity Serverにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-10503 2026-05-7 12:07 2026-04-29 Show GitHub Exploit DB Packet Storm
1487 5.3 警告
Network
MCPHub MCPHub MCPHubにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2025-13822 2026-05-7 12:07 2026-04-14 Show GitHub Exploit DB Packet Storm
1488 5.3 警告
Network
IBM IBM DB2 IBMのIBM DB2における入力で指定された数量の不適切な検証に関する脆弱性 CWE-1284
入力で指定された数量の不適切な検証
CVE-2025-14688 2026-05-7 12:07 2026-04-30 Show GitHub Exploit DB Packet Storm
1489 6.5 警告
Network
IBM IBM DB2 IBMのIBM DB2における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-36122 2026-05-7 12:07 2026-04-30 Show GitHub Exploit DB Packet Storm
1490 5.3 警告
Network
HCL Technologies Limited HCL AION HCL Technologies LimitedのHCL AIONにおけるエラーメッセージによる情報漏えいに関する脆弱性 CWE-209
エラーメッセージによる情報漏えい
CVE-2025-52641 2026-05-7 12:07 2026-04-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346621 - kaspersky_lab kaspersky_anti-virus
kaspersky_anti-virus_personal
The klif.sys driver in Kaspersky Labs Anti-Virus 5.0.227, 5.0.228, and 5.0.335 on Windows 2000 allows local users to gain privileges by modifying certain critical code addresses that are later access… NVD-CWE-Other
CVE-2005-1905 2016-10-18 12:23 2005-06-9 Show GitHub Exploit DB Packet Storm
346622 - goodtech_systems goodtech_smtp_server GoodTech SMTP Server 5.14 allows remote attackers to cause a denial of service (application crash) via a RCPT TO command with an invalid argument, as demonstrated using an "A" character. NVD-CWE-Other
CVE-2005-1931 2016-10-18 12:23 2005-07-5 Show GitHub Exploit DB Packet Storm
346623 - - - Multiple SQL injection vulnerabilities in Loki download manager 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) password field to default.asp or (2) cat parameter to catinfo.… NVD-CWE-Other
CVE-2005-1943 2016-10-18 12:23 2005-06-8 Show GitHub Exploit DB Packet Storm
346624 - xmysqladmin xmysqladmin xmysqladmin 1.0 and earlier allows local users to delete arbitrary files via a symlink attack on a database backup file in /tmp. NVD-CWE-Other
CVE-2005-1944 2016-10-18 12:23 2005-06-9 Show GitHub Exploit DB Packet Storm
346625 - invision_power_services invision_community_blog Cross-site scripting (XSS) vulnerability in the convert_highlite_words function in Invision Blog before 1.1.2 Final allows remote attackers to inject arbitrary web script or HTML via double hex encod… NVD-CWE-Other
CVE-2005-1945 2016-10-18 12:23 2005-06-9 Show GitHub Exploit DB Packet Storm
346626 - invision_power_services invision_community_blog Multiple SQL injection vulnerabilities in Invision Blog before 1.1.2 Final allow remote attackers to execute arbitrary SQL commands via the (1) eid parameter to an editentry, replyentry, or editcomme… NVD-CWE-Other
CVE-2005-1946 2016-10-18 12:23 2005-06-9 Show GitHub Exploit DB Packet Storm
346627 - invision_power_services invision_gallery Multiple SQL injection vulnerabilities in Invision Gallery before 1.3.1 allow remote attackers to execute arbitrary SQL commands via (1) the comment parameter in an editcomment action or (2) the rati… NVD-CWE-Other
CVE-2005-1948 2016-10-18 12:23 2005-06-9 Show GitHub Exploit DB Packet Storm
346628 - darryl_burgdorf webhints hints.pl in Webhints 1.03 allows remote attackers to execute arbitrary commands via shell metacharacters in the argument. NVD-CWE-Other
CVE-2005-1950 2016-10-18 12:23 2005-06-9 Show GitHub Exploit DB Packet Storm
346629 - oscommerce oscommerce Multiple HTTP Response Splitting vulnerabilities in osCommerce 2.2 Milestone 2 and earlier allow remote attackers to spoof web content and poison web caches via hex-encoded CRLF ("%0d%0a") sequences … NVD-CWE-Other
CVE-2005-1951 2016-10-18 12:23 2005-06-16 Show GitHub Exploit DB Packet Storm
346630 - pico_server pico_server Directory traversal vulnerability in Pico Server (pServ) 3.3 allows remote attackers to read arbitrary files and execute arbitrary commands via a /./ (slash dot slash) before each .. (dot dot) sequen… NVD-CWE-Other
CVE-2005-1952 2016-10-18 12:23 2005-06-16 Show GitHub Exploit DB Packet Storm