Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1901 6.7 警告
Local
Acronis International GmbH True Image Acronis International GmbHのTrue Imageにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-28728 2026-04-21 10:50 2026-04-2 Show GitHub Exploit DB Packet Storm
1902 8.3 重要
Network
Daylight Studio FUEL CMS Daylight StudioのFUEL CMSにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-30461 2026-04-21 10:50 2026-04-15 Show GitHub Exploit DB Packet Storm
1903 8.6 重要
Network
Agent Zero Agent Zero Agent Zeroにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-30624 2026-04-21 10:50 2026-04-15 Show GitHub Exploit DB Packet Storm
1904 7.5 重要
Network
Apache Software Foundation skywalking Apache Software Foundationのskywalkingにおけるデータクエリからの重要な情報の漏えいに関する脆弱性 CWE-202
データクエリからの重要な情報の漏えい
CVE-2026-30778 2026-04-21 10:50 2026-04-15 Show GitHub Exploit DB Packet Storm
1905 7.5 重要
Network
Apache Software Foundation Apache Airflow Apache Software FoundationのApache Airflowにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2026-31987 2026-04-21 10:50 2026-04-16 Show GitHub Exploit DB Packet Storm
1906 4.8 警告
Network
OpenClaw OpenClaw OpenClawにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2026-32018 2026-04-21 10:50 2026-03-19 Show GitHub Exploit DB Packet Storm
1907 5.3 警告
Network
OpenClaw OpenClaw OpenClawにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-32019 2026-04-21 10:50 2026-03-19 Show GitHub Exploit DB Packet Storm
1908 7.1 重要
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-32035 2026-04-21 10:50 2026-03-19 Show GitHub Exploit DB Packet Storm
1909 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows Function Discovery Service (fdwsd.dll) の特権昇格の脆弱性 CWE-122
CWE-362
CWE-367
CVE-2026-32093 2026-04-21 10:50 2026-04-14 Show GitHub Exploit DB Packet Storm
1910 7.3 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows Hyper-V のリモートでコードが実行される脆弱性 CWE-122
CWE-191
CWE-20
CVE-2026-32149 2026-04-21 10:50 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 3, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349311 - daydream daydream_bbs Buffer overflows in DayDream BBS 2.9 through 2.13 allow remote attackers to possibly execute arbitrary code via the control codes (1) ~#MC, (2) ~#TF, or (3) ~#RA. NVD-CWE-Other
CVE-2001-1207 2008-09-6 05:25 2001-12-30 Show GitHub Exploit DB Packet Storm
349312 - ipswitch imail Ipswitch IMail 7.0.4 and earlier allows attackers with administrator privileges to read and modify user alias and mailing list information for other domains hosted by the same server via the (1) alia… NVD-CWE-Other
CVE-2001-1211 2008-09-6 05:25 2001-12-31 Show GitHub Exploit DB Packet Storm
349313 - oracle application_server Buffer overflow in PL/SQL Apache module in Oracle 9i Application Server allows remote attackers to execute arbitrary code via a long request for a help page. NVD-CWE-Other
CVE-2001-1216 2008-09-6 05:25 2001-12-21 Show GitHub Exploit DB Packet Storm
349314 - oracle application_server Directory traversal vulnerability in PL/SQL Apache module in Oracle Oracle 9i Application Server allows remote attackers to access sensitive information via a double encoded URL with .. (dot dot) seq… NVD-CWE-Other
CVE-2001-1217 2008-09-6 05:25 2001-12-21 Show GitHub Exploit DB Packet Storm
349315 - d-link dwl-1000ap D-Link DWL-1000AP Firmware 3.2.28 #483 Wireless LAN Access Point stores the administrative password in plaintext in the default Management Information Base (MIB), which allows remote attackers to gai… NVD-CWE-Other
CVE-2001-1220 2008-09-6 05:25 2001-12-21 Show GitHub Exploit DB Packet Storm
349316 - d-link dwl-1000ap D-Link DWL-1000AP Firmware 3.2.28 #483 Wireless LAN Access Point uses a default SNMP community string of 'public' which allows remote attackers to gain sensitive information. NVD-CWE-Other
CVE-2001-1221 2008-09-6 05:25 2001-12-21 Show GitHub Exploit DB Packet Storm
349317 - plesk plesk_server_administrator Plesk Server Administrator (PSA) 1.0 allows remote attackers to obtain PHP source code via an HTTP request containing the target's IP address and a valid account name for the domain. NVD-CWE-Other
CVE-2001-1222 2008-09-6 05:25 2002-03-25 Show GitHub Exploit DB Packet Storm
349318 - elsa lancom_1100_office The web administration server for ELSA Lancom 1100 Office does not require authentication, which allows arbitrary remote attackers to gain administrative privileges by connecting to the server. NVD-CWE-Other
CVE-2001-1223 2008-09-6 05:25 2001-12-26 Show GitHub Exploit DB Packet Storm
349319 - lightwave consoleserver The pre-login mode in the System Administrator interface of Lightwave ConsoleServer 3200 allows remote attackers to obtain sensitive information such as system status, configuration, and users. NVD-CWE-Other
CVE-2001-0396 2008-09-6 05:24 2001-07-2 Show GitHub Exploit DB Packet Storm
349320 - silent_runner silent_runner_collector_src Buffer overflow in Silent Runner Collector (SRC) 1.6.1 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long SMTP HELO command. NVD-CWE-Other
CVE-2001-0397 2008-09-6 05:24 2001-06-18 Show GitHub Exploit DB Packet Storm