Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1871 7.5 重要
Network
ザイオソフト株式会社 Ziostation2 Ziostation2におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-40062 2026-04-22 14:16 2026-04-22 Show GitHub Exploit DB Packet Storm
1872 7.8 重要
Local
ジャパンメディアシステム株式会社 Windows PC用LiveOn Meetクライアントインストーラ
キヤノンネットワークカメラ用プラグインインストーラ
LiveOn MeetのWindows PC用クライアントインストーラおよびプラグインインストーラにおける任意のDLL読み込みの脆弱性 CWE-Other
その他
CVE-2026-32679 2026-04-22 14:08 2026-04-22 Show GitHub Exploit DB Packet Storm
1873 6.1 警告
Network
DeepL DeepL DeepL Chrome拡張機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-40451 2026-04-22 12:06 2026-04-22 Show GitHub Exploit DB Packet Storm
1874 9.9 緊急
Network
Percona Percona Monitoring and Management PerconaのPercona Monitoring and Managementにおける不要な特権による実行に関する脆弱性 CWE-250
不要な特権による実行
CVE-2026-25212 2026-04-22 10:10 2026-04-2 Show GitHub Exploit DB Packet Storm
1875 9.8 緊急
Network
Progress Software Corporation ShareFile Storage Zone Controller Progress Software CorporationのShareFile Storage Zone Controllerにおける複数の脆弱性 CWE-284
CWE-698
CWE-noinfo
CVE-2026-2699 2026-04-22 10:10 2026-04-2 Show GitHub Exploit DB Packet Storm
1876 8.8 重要
Network
Progress Software Corporation ShareFile Storage Zone Controller Progress Software CorporationのShareFile Storage Zone Controllerにおける複数の脆弱性 CWE-434
CWE-434
CWE-78
CWE-94
CVE-2026-2701 2026-04-22 10:10 2026-04-2 Show GitHub Exploit DB Packet Storm
1877 7.8 重要
Local
Jeremiah Lowin FastMCP Jeremiah LowinのFastMCPにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2025-64340 2026-04-22 10:10 2026-04-3 Show GitHub Exploit DB Packet Storm
1878 4.9 警告
Network
Canonical Juju CanonicalのJujuにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2025-68152 2026-04-22 10:10 2026-04-3 Show GitHub Exploit DB Packet Storm
1879 6.5 警告
Network
Canonical Juju CanonicalのJujuにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2025-68153 2026-04-22 10:10 2026-04-3 Show GitHub Exploit DB Packet Storm
1880 9.8 緊急
Network
lfprojects mlflow lfprojectsのmlflowにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-0545 2026-04-22 10:10 2026-04-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314431 - rtfm ssldump Buffer underflow in ssldump 0.9b2 and earlier allows remote attackers to cause a denial of service (memory corruption) via a crafted SSLv2 challenge value. CWE-787
 Out-of-bounds Write
CVE-2002-2227 2024-02-9 12:26 2002-12-31 Show GitHub Exploit DB Packet Storm
314432 - microsoft windows_xp
windows_2000
windows_98
windows_me
windows_98se
windows_nt
internet_explorer
office
outlook_express
The (1) CertGetCertificateChain, (2) CertVerifyCertificateChainPolicy, and (3) WinVerifyTrust APIs within the CryptoAPI for Microsoft products including Microsoft Windows 98 through XP, Office for Ma… CWE-295
Improper Certificate Validation 
CVE-2002-0862 2024-02-9 12:26 2002-10-4 Show GitHub Exploit DB Packet Storm
314433 - cjguestbook_project cjguestbook Cross-site scripting (XSS) vulnerability in sign.php in cjGuestbook 1.3 and earlier allows remote attackers to inject Javascript code via a javascript URI in an img bbcode tag in the comments paramet… CWE-79
Cross-site Scripting
CVE-2006-3211 2024-02-9 12:21 2006-06-24 Show GitHub Exploit DB Packet Storm
314434 - fantastic_guestbook_project fantastic_guestbook Multiple cross-site scripting (XSS) vulnerabilities in guestbook.php in Fantastic Guestbook 2.0.1, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via the… CWE-79
Cross-site Scripting
CVE-2006-3568 2024-02-9 12:20 2006-07-13 Show GitHub Exploit DB Packet Storm
314435 - aol aim Buffer overflow in AOL Instant Messenger (AIM) before 4.3.2229 allows remote attackers to execute arbitrary commands via a "buddyicon" command with a long "src" argument. CWE-120
Classic Buffer Overflow
CVE-2000-1094 2024-02-9 12:20 2001-01-9 Show GitHub Exploit DB Packet Storm
314436 - sendmail
netbsd
hp
windriver
sun
gentoo
oracle
sendmail
netbsd
hp-ux
bsdos
sunos
linux
solaris
alphaserver_sc
platform_sa
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the … CWE-120
Classic Buffer Overflow
CVE-2002-1337 2024-02-9 12:19 2003-03-7 Show GitHub Exploit DB Packet Storm
314437 - bsdi
sun
hp
oracle
debian
ibm
freebsd
netbsd
digital
next
bsd_os
sunos
hp-ux
solaris
debian_linux
aix
freebsd
netbsd
ultrix
nextstep
Buffer overflow of rlogin program using TERM environmental variable. CWE-120
Classic Buffer Overflow
CVE-1999-0046 2024-02-9 12:19 1997-02-6 Show GitHub Exploit DB Packet Storm
314438 - terascript wintango_application_server Buffer overflow in WiTango Application Server and Tango 2000 allows remote attackers to execute arbitrary code via a long cookie to Witango_UserReference. CWE-120
Classic Buffer Overflow
CVE-2003-0595 2024-02-9 12:18 2003-08-27 Show GitHub Exploit DB Packet Storm
314439 9.8 CRITICAL
Network
anybus ipc\@chip_firmware Beck IPC GmbH IPC@CHIP telnet service does not delay or disconnect users from the service when bad passwords are entered, which makes it easier for remote attackers to conduct brute force password gu… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2001-1339 2024-02-9 12:15 2001-05-24 Show GitHub Exploit DB Packet Storm
314440 9.8 CRITICAL
Network
cgi script_center_news_update CGI Script Center News Update 1.1 does not properly validate the original news administration password during a password change operation, which allows remote attackers to modify the password without… CWE-522
 Insufficiently Protected Credentials
CVE-2000-0944 2024-02-9 12:15 2000-12-19 Show GitHub Exploit DB Packet Storm