Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1731 - - (複数のベンダ) (複数の製品) CISA ICS Advisory / ICS Medical Advisory(2026年04月21日) - - 2026-04-23 17:41 2026-04-22 Show GitHub Exploit DB Packet Storm
1732 8.8 重要
Network
サイレックス・テクノロジー株式会社 SD-330AC
AMC Manager
サイレックス・テクノロジー製SD-330ACおよびAMC Managerにおける複数の脆弱性 CWE-1188
CWE-121
CWE-122
CWE-1395
CWE-226
CWE-266
CWE-306
CWE-321
CWE-327
CWE-79
CWE-93
CVE-2015-5621
CVE-2024-24487
CVE-2026-32955
CVE-2026-32956
CVE-2026-32957
CVE-2026-32958
CVE-2026-32959
CVE-2026-32960
CVE-2026-32961
CVE-2026-32962
CVE-2026-32963
CV…
2026-04-23 17:36 2026-04-20 Show GitHub Exploit DB Packet Storm
1733 7.5 重要
Network
株式会社GROWI GROWI GROWIにおける、正規表現を用いたサービス運用妨害(ReDoS)の脆弱性 CWE-Other
その他
CVE-2026-41040 2026-04-23 15:16 2026-04-23 Show GitHub Exploit DB Packet Storm
1734 8.8 重要
Network
一般社団法人 JPCERT コーディネーションセンター LogonTracer LogonTracerにおける複数の脆弱性 CWE-78
CWE-Other
CVE-2026-33277
CVE-2026-33566
2026-04-23 14:12 2026-04-23 Show GitHub Exploit DB Packet Storm
1735 7.3 重要
Local
i-PRO株式会社 IP簡単設定ソフトウェア i-PRO製IP簡単設定ソフトウェアにおけるDLL読み込みに関する脆弱性 CWE-Other
その他
CVE-2026-34488 2026-04-23 12:21 2026-04-23 Show GitHub Exploit DB Packet Storm
1736 4.7 警告
Network
彼方株式会社 CMS ALAYA CMS ALAYAにおけるSQLインジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-40529 2026-04-23 12:07 2026-04-23 Show GitHub Exploit DB Packet Storm
1737 10 緊急
Network
Quest Software Inc. KACE Systems Management Appliance Quest Software Inc.のKACE Systems Management Applianceにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2025-32975 2026-04-23 10:17 2025-06-24 Show GitHub Exploit DB Packet Storm
1738 7.5 重要
Network
jsonparser project jsonparser jsonparser projectのjsonparserにおける配列インデックスの検証に関する脆弱性 CWE-129
配列インデックスの不適切な検証
CVE-2026-32285 2026-04-23 10:17 2026-03-26 Show GitHub Exploit DB Packet Storm
1739 7.5 重要
Network
antchfx Xpath antchfxのXpathにおける無限ループに関する脆弱性 CWE-835
無限ループ
CVE-2026-32287 2026-04-23 10:17 2026-03-26 Show GitHub Exploit DB Packet Storm
1740 5.5 警告
Local
Direct-Soft Inc. WinMPG Video Convert Direct-Soft Inc.のWinMPG Video Convertにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2019-25644 2026-04-23 10:17 2026-03-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 3, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348311 - cisco bams
pgw_2200
sc2200
vsc3000
vspt
The Cisco Media Gateway Controller (MGC) in (1) SC2200 7.4 and earlier, (2) VSC3000 9.1 and earlier, (3) PGW 2200 9.1 and earlier, (4) Billing and Management Server (BAMS) and (5) Voice Services Prov… NVD-CWE-Other
CVE-2002-2037 2008-09-6 05:32 2002-12-31 Show GitHub Exploit DB Packet Storm
348312 - bill_abt next_generation_posix_threading Next Generation POSIX Threading (NGPT) 1.9.0 uses a filesystem-based shared memory entry, which allows local users to cause a denial of service or in threaded processes or spoof files via unknown met… NVD-CWE-Other
CVE-2002-2038 2008-09-6 05:32 2002-12-31 Show GitHub Exploit DB Packet Storm
348313 - qnx rtos The (1) phrafx and (2) phgrafx-startup programs in QNX realtime operating system (RTOS) 4.25 and 6.1.0 do not properly drop privileges before executing the system command, which allows local users to… NVD-CWE-Other
CVE-2002-2040 2008-09-6 05:32 2002-12-31 Show GitHub Exploit DB Packet Storm
348314 - qnx rtos ptrace in the QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows programs to attach to privileged processes, which could allow local users to execute arbitrary code by modifying running proce… NVD-CWE-Other
CVE-2002-2042 2008-09-6 05:32 2002-12-31 Show GitHub Exploit DB Packet Storm
348315 - cyrus sasl SQL injection vulnerability in the LDAP and MySQL authentication patch for Cyrus SASL 1.5.24 and 1.5.27 allows remote attackers to execute arbitrary SQL commands and log in as arbitrary POP mail user… NVD-CWE-Other
CVE-2002-2043 2008-09-6 05:32 2002-12-31 Show GitHub Exploit DB Packet Storm
348316 - xqus x-stat Cross-site scripting (XSS) vulnerability in x_stat_admin.php in x-stat 2.3 and earlier allows remote attackers to inject arbitrary web script or HTML via a parameter to the phpinfo action. NVD-CWE-Other
CVE-2002-2044 2008-09-6 05:32 2002-12-31 Show GitHub Exploit DB Packet Storm
348317 - xqus x-news x_news.php in X-News (x_news) 1.1 and earlier allows remote attackers to gain administrative privileges by stealing and replaying the md5_password cookie. NVD-CWE-Other
CVE-2002-2046 2008-09-6 05:32 2002-12-31 Show GitHub Exploit DB Packet Storm
348318 - sketch sketch The file preview functionality in Sketch 0.6.12 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the filename of an encapsulated Postscript (EPS) file. NVD-CWE-Other
CVE-2002-2047 2008-09-6 05:32 2002-12-31 Show GitHub Exploit DB Packet Storm
348319 - dug_song dsniff
fragroute
fragrouter
configure for Dsniff 2.3, fragroute 1.2, and fragrouter 1.6, when downloaded from monkey.org on May 17, 2002, has been modified to contain a backdoor, which allows remote attackers to access the syst… NVD-CWE-Other
CVE-2002-2049 2008-09-6 05:32 2002-12-31 Show GitHub Exploit DB Packet Storm
348320 - modlogan modlogan Directory traversal vulnerability in processor_web plugin for ModLogAn 0.5.0 through 0.7.11, when used with the splitby option, allows local users to overwrite arbitrary files via a .. (dot dot) in t… NVD-CWE-Other
CVE-2002-2050 2008-09-6 05:32 2002-12-31 Show GitHub Exploit DB Packet Storm