Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1681 5.5 警告
Local
River Past Ringtone Converter Project River Past Ringtone Converter River Past Ringtone Converter ProjectのRiver Past Ringtone Converterにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2019-25665 2026-04-28 10:11 2026-04-5 Show GitHub Exploit DB Packet Storm
1682 7.8 重要
Local
River Past Video Clear Project River Past Video Clear River Past Video Clear ProjectのRiver Past Video Clearにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2019-25670 2026-04-28 10:11 2026-04-5 Show GitHub Exploit DB Packet Storm
1683 7.8 重要
Local
iBoysoft NTFS for Mac iBoysoftのNTFS for Macにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-2637 2026-04-28 10:11 2026-03-3 Show GitHub Exploit DB Packet Storm
1684 6.6 警告
Local
Saurabh Kumar python-dotenv Saurabh Kumarのpython-dotenvにおける複数の脆弱性 CWE-59
CWE-61
CVE-2026-28684 2026-04-28 10:11 2026-04-20 Show GitHub Exploit DB Packet Storm
1685 10 緊急
Network
Smallstep Step CA SmallstepのStep CAにおける複数の脆弱性 CWE-287
CWE-295
CWE-295
CVE-2026-30836 2026-04-28 10:11 2026-03-19 Show GitHub Exploit DB Packet Storm
1686 4.7 警告
Local
GL.iNet Comet (GL-RM1) Firmware GL.iNetのComet (GL-RM1) Firmwareにおけるデータの信頼性についての不十分な検証に関する脆弱性 CWE-345
データの信頼性についての不十分な検証
CVE-2026-32290 2026-04-28 10:11 2026-03-17 Show GitHub Exploit DB Packet Storm
1687 6.8 警告
Physics
GL.iNet Comet (GL-RM1) Firmware GL.iNetのComet (GL-RM1) Firmwareにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-32291 2026-04-28 10:11 2026-03-17 Show GitHub Exploit DB Packet Storm
1688 7.5 重要
Network
GL.iNet Comet (GL-RM1) Firmware GL.iNetのComet (GL-RM1) Firmwareにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2026-32292 2026-04-28 10:11 2026-03-17 Show GitHub Exploit DB Packet Storm
1689 3.7
Network
GL.iNet Comet (GL-RM1) Firmware GL.iNetのComet (GL-RM1) Firmwareにおける証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2026-32293 2026-04-28 10:11 2026-03-17 Show GitHub Exploit DB Packet Storm
1690 6.5 警告
Network
オラクル PeopleSoft Enterprise FIN Contracts オラクルのPeopleSoft Enterprise FIN Contractsにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34300 2026-04-28 10:11 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313821 - jelsoft vbulletin Jelsoft vBulletin 3.5.4 allows remote attackers to register multiple arbitrary users and cause a denial of service (resource consumption) via a large number of requests to register.php. NOTE: the ve… NVD-CWE-Other
CVE-2006-4272 2024-08-8 04:15 2006-08-22 Show GitHub Exploit DB Packet Storm
313822 - cisco pix_firewall_501
pix_firewall_515
pix_firewall_525
pix_firewall_520
pix_firewall_515e
pix_firewall_535
pix_firewall_506
pix_firewall_software
Unspecified vulnerability in Cisco PIX 500 Series Security Appliances allows remote attackers to send arbitrary UDP packets to intranet devices via unspecified vectors involving Session Initiation Pr… NVD-CWE-Other
CVE-2006-4194 2024-08-8 04:15 2006-08-17 Show GitHub Exploit DB Packet Storm
313823 - pearlabs mafia_moblog PHP remote file inclusion vulnerability in big.php in pearlabs mafia moblog 6 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the pathtotemplate parameter. NOTE: a thi… NVD-CWE-Other
CVE-2006-4156 2024-08-8 04:15 2006-08-17 Show GitHub Exploit DB Packet Storm
313824 - mywebland minibloggie PHP remote file inclusion vulnerability in cls_fast_template.php in myWebland miniBloggie 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the fname parameter. NOTE… NVD-CWE-Other
CVE-2006-4163 2024-08-8 04:15 2006-08-17 Show GitHub Exploit DB Packet Storm
313825 - vincent_hor calendarix PHP remote file inclusion vulnerability in cal_config.inc.php in Calendarix 0.7.20060401 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the calpath parameter. NOTE: t… NVD-CWE-Other
CVE-2006-4135 2024-08-8 04:15 2006-08-15 Show GitHub Exploit DB Packet Storm
313826 - thomas_pequet phpprintanalyzer PHP remote file inclusion vulnerability in index.php in Thomas Pequet phpPrintAnalyzer 1.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the re… NVD-CWE-Other
CVE-2006-4061 2024-08-8 04:15 2006-08-10 Show GitHub Exploit DB Packet Storm
313827 - lussumo vanilla PHP remote file inclusion vulnerability in upgrader.php in Vanilla CMS 1.0.1 and earlier, when /conf/old_settings.php exists, allows remote attackers to execute arbitrary PHP code via a URL in the Ro… NVD-CWE-Other
CVE-2006-3850 2024-08-8 04:15 2006-07-26 Show GitHub Exploit DB Packet Storm
313828 - microsoft windows_2003_server
windows_xp
windows_2000
Microsoft Windows NT 4.0, Windows 2000, Windows XP, and Windows Small Business Server 2003 allow remote attackers to cause a denial of service (IP stack hang) via a continuous stream of packets on TC… NVD-CWE-Other
CVE-2006-3880 2024-08-8 04:15 2006-07-27 Show GitHub Exploit DB Packet Storm
313829 - amazing_flash_commerce afcommerce_shopping_cart SQL injection vulnerability in Amazing Flash AFCommerce Shopping Cart allows remote attackers to execute arbitrary SQL commands via the search field. NOTE: the vendor has disputed this issue, statin… NVD-CWE-Other
CVE-2006-3794 2024-08-8 04:15 2006-07-24 Show GitHub Exploit DB Packet Storm
313830 - codeworks gnomedia_subberz PHP remote file inclusion vulnerability in user-func.php in Codeworks Gnomedia SubberZ[Lite] allows remote attackers to execute arbitrary PHP code via a URL in the myadmindir parameter. NOTE: this i… NVD-CWE-Other
CVE-2006-3689 2024-08-8 04:15 2006-07-21 Show GitHub Exploit DB Packet Storm