Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1861 6.1 警告
Local
マイクロソフト Microsoft 365 Apps
Office Long Term Servicing Channel (LTSC)
Microsoft Word の情報漏えいの脆弱性 CWE-125
境界外読み取り
CVE-2026-33822 2026-05-1 10:47 2026-04-14 Show GitHub Exploit DB Packet Storm
1862 5.2 警告
Physics
wolfSSL Inc. wolfSSL wolfSSL Inc.のwolfSSLにおけるPRNG におけるシードの不正な使用に関する脆弱性 CWE-335
PRNGにおけるシードの不正な使用
CVE-2026-3503 2026-05-1 10:47 2026-03-19 Show GitHub Exploit DB Packet Storm
1863 9.8 緊急
Network
wolfSSL Inc. wolfSSL wolfSSL Inc.のwolfSSLにおける複数の脆弱性 CWE-122
CWE-787
CWE-787
CVE-2026-3548 2026-05-1 10:47 2026-03-19 Show GitHub Exploit DB Packet Storm
1864 5.9 警告
Network
VMware Spring AI VMwareのSpring AIにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-40966 2026-05-1 10:47 2026-04-28 Show GitHub Exploit DB Packet Storm
1865 8.6 重要
Network
VMware Spring AI VMwareのSpring AIにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-40967 2026-05-1 10:47 2026-04-28 Show GitHub Exploit DB Packet Storm
1866 7.5 重要
Adjacent
VMware Spring Boot VMwareのSpring Bootにおけるタイミングの違いに起因する情報漏えいに関する脆弱性 CWE-208
タイミングの違いに起因する情報漏えい
CVE-2026-40972 2026-05-1 10:47 2026-04-28 Show GitHub Exploit DB Packet Storm
1867 7 重要
Local
VMware Spring Boot VMwareのSpring Bootにおける安全でない一時ファイルに関する脆弱性 CWE-377
安全でない一時ファイル
CVE-2026-40973 2026-05-1 10:47 2026-04-28 Show GitHub Exploit DB Packet Storm
1868 7.5 重要
Network
VMware Spring Boot VMwareのSpring Bootにおける不十分なランダム値の使用に関する脆弱性 CWE-330
不十分なランダム値の使用
CVE-2026-40975 2026-05-1 10:47 2026-04-28 Show GitHub Exploit DB Packet Storm
1869 9.1 緊急
Network
VMware Spring Boot VMwareのSpring Bootにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-40976 2026-05-1 10:47 2026-04-28 Show GitHub Exploit DB Packet Storm
1870 6.7 警告
Local
VMware Spring Boot VMwareのSpring Bootにおけるリンク解釈に関する脆弱性 CWE-59
リンク解釈の問題
CVE-2026-40977 2026-05-1 10:47 2026-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346911 - redhat linux The default configuration of the pam_xauth module forwards MIT-Magic-Cookies to new X sessions, which could allow local users to gain root privileges by stealing the cookies from a temporary .xauth f… NVD-CWE-Other
CVE-2002-1160 2016-10-18 11:24 2003-02-19 Show GitHub Exploit DB Packet Storm
346912 - sendmail
netbsd
sendmail
netbsd
Sendmail Consortium's Restricted Shell (SMRSH) in Sendmail 8.12.6, 8.11.6-15, and possibly other versions after 8.11 from 5/19/1998, allows attackers to bypass the intended restrictions of smrsh by i… NVD-CWE-Other
CVE-2002-1165 2016-10-18 11:24 2002-10-11 Show GitHub Exploit DB Packet Storm
346913 - john_franks wn_server Buffer overflow in John Franks WN Server 1.18.2 through 2.0.0 allows remote attackers to execute arbitrary code via a long GET request. NVD-CWE-Other
CVE-2002-1166 2016-10-18 11:24 2002-10-11 Show GitHub Exploit DB Packet Storm
346914 - fetchmail fetchmail Buffer overflows in Fetchmail 6.0.0 and earlier allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) long headers that are not properly processed by the readh… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2002-1174 2016-10-18 11:24 2002-10-11 Show GitHub Exploit DB Packet Storm
346915 - fetchmail fetchmail The getmxrecord function in Fetchmail 6.0.0 and earlier does not properly check the boundary of a particular malformed DNS packet from a malicious DNS server, which allows remote attackers to cause a… CWE-20
 Improper Input Validation 
CVE-2002-1175 2016-10-18 11:24 2002-10-11 Show GitHub Exploit DB Packet Storm
346916 - nullsoft winamp Buffer overflow in Winamp 2.81 allows remote attackers to execute arbitrary code via a long Artist ID3v2 tag in an MP3 file. NVD-CWE-Other
CVE-2002-1176 2016-10-18 11:24 2002-12-26 Show GitHub Exploit DB Packet Storm
346917 - nullsoft winamp Multiple buffer overflows in Winamp 3.0, when displaying an MP3 in the Media Library window, allows remote attackers to execute arbitrary code via an MP3 file containing a long (1) Artist or (2) Albu… NVD-CWE-Other
CVE-2002-1177 2016-10-18 11:24 2002-12-26 Show GitHub Exploit DB Packet Storm
346918 - jetty jetty_http_server Directory traversal vulnerability in the CGIServlet for Jetty HTTP server before 4.1.0 allows remote attackers to execute arbitrary commands via ..\ (dot-dot backslash) sequences in an HTTP request t… NVD-CWE-Other
CVE-2002-1178 2016-10-18 11:24 2002-10-11 Show GitHub Exploit DB Packet Storm
346919 - sabre desktop_reservation_software The Sabserv client component in Sabre Desktop Reservation Software 4.2 through 4.4 allows remote attackers to cause a denial of service via malformed input to TCP port 1001. NVD-CWE-Other
CVE-2002-1191 2016-10-18 11:24 2002-10-28 Show GitHub Exploit DB Packet Storm
346920 - gabriele_bartolini ht_check Cross-site scripting vulnerability (XSS) in the PHP interface for ht://Check 1.1 allows remote web servers to insert arbitrary HTML, including script, via a web page. NVD-CWE-Other
CVE-2002-1195 2016-10-18 11:24 2002-10-28 Show GitHub Exploit DB Packet Storm