Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
11 7.5 重要
Network
NLnet Labs unbound NLnet Labsのunboundにおける初期化されていないポインタのアクセスに関する脆弱性 New CWE-824
初期化されていないポインタのアクセス
CVE-2026-42959 2026-05-22 10:59 2026-05-20 Show GitHub Exploit DB Packet Storm
12 10 緊急
Network
NLnet Labs unbound NLnet Labsのunboundにおける信頼できるデータ受け入れ時の信頼できない無関係なデータの受け入れに関する脆弱性 New CWE-349
信頼できるデータ受け入れ時の信頼できない無関係なデータの受け入れ
CVE-2026-42960 2026-05-22 10:59 2026-05-20 Show GitHub Exploit DB Packet Storm
13 5.3 警告
Network
NLnet Labs unbound NLnet Labsのunboundにおけるアルゴリズムの複雑さに関する脆弱性 New CWE-407
アルゴリズムの複雑性
CVE-2026-44390 2026-05-22 10:59 2026-05-20 Show GitHub Exploit DB Packet Storm
14 5.9 警告
Network
NLnet Labs unbound NLnet Labsのunboundにおける不適切なリソースロックに関する脆弱性 New CWE-413
不適切なリソースロック
CVE-2026-44608 2026-05-22 10:59 2026-05-20 Show GitHub Exploit DB Packet Storm
15 6.1 警告
Network
Drupal Drupal Drupalにおけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-6365 2026-05-22 10:59 2026-05-19 Show GitHub Exploit DB Packet Storm
16 6.6 警告
Network
Drupal Drupal Drupalにおける動的に決定されたオブジェクト属性の不適切に制御された変更に関する脆弱性 New CWE-915
動的に決定されたオブジェクト属性の不適切に制御された変更
CVE-2026-6366 2026-05-22 10:59 2026-05-19 Show GitHub Exploit DB Packet Storm
17 6.1 警告
Network
Drupal Drupal Drupalにおけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-6367 2026-05-22 10:59 2026-05-19 Show GitHub Exploit DB Packet Storm
18 7.5 重要
Network
Progress Software Corporation MOVEit Automation Web Admin Progress Software CorporationのMOVEit Automation Web Adminにおける過剰なサイズ値のメモリ割り当てに関する脆弱性 New CWE-789
過剰なサイズ値のメモリ割り当て
CVE-2026-8485 2026-05-22 10:59 2026-05-20 Show GitHub Exploit DB Packet Storm
19 9.8 緊急
Network
NVIDIA TensorRT LLM NVIDIAのTensorRT LLMにおける信頼できないデータのデシリアライゼーションに関する脆弱性 New CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2025-33255 2026-05-22 10:59 2026-05-20 Show GitHub Exploit DB Packet Storm
20 9.8 緊急
Network
NVIDIA TensorRT LLM NVIDIAのTensorRT LLMにおける信頼できないデータのデシリアライゼーションに関する脆弱性 New CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-24142 2026-05-22 10:59 2026-05-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345971 - oracle oracle8i
oracle9i
Buffer overflow in the KSDWRTB function in the dbms_system package (dbms_system.ksdwrt) for Oracle 9i Database Server Release 2 9.2.0.3 and 9.2.0.4, 9i Release 1 9.0.1.4 and 9.0.1.5, and 8i Release 1… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2004-0638 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
345972 - open_webmail
sgi
squirrelmail
open_webmail
propack
squirrelmail
Multiple cross-site scripting (XSS) vulnerabilities in Squirrelmail 1.2.10 and earlier allow remote attackers to inject arbitrary HTML or script via (1) the $mailer variable in read_body.php, (2) the… NVD-CWE-Other
CVE-2004-0639 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345973 - netkit
ssltelnetd
linux_netkit
secure_telnet
Format string vulnerability in the SSL_set_verify function in telnetd.c for SSLtelnet daemon (SSLtelnetd) 0.13 allows remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2004-0640 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345974 - thomson speedtouch Thomson SpeedTouch 510 ADSL Router with firmware GV8BAA3.270, and possibly earlier versions, generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijac… NVD-CWE-Other
CVE-2004-0641 2017-07-11 10:30 2004-08-5 Show GitHub Exploit DB Packet Storm
345975 - abisource
wvware
community_abiword
wvware
Buffer overflow in the wvHandleDateTimePicture function in wv library (wvWare) 0.7.4 through 0.7.6 and 1.0.0 allows remote attackers to execute arbitrary code via a document with a long DateTime fiel… NVD-CWE-Other
CVE-2004-0645 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345976 - macromedia coldfusion
jrun
Buffer overflow in the WriteToLog function for JRun 3.0 through 4.0 web server connectors, such as (1) mod_jrun and (2) mod_jrun20 for Apache, with verbose logging enabled, allows remote attackers to… NVD-CWE-Other
CVE-2004-0646 2017-07-11 10:30 2004-12-23 Show GitHub Exploit DB Packet Storm
345977 - shorewall shorewall shorewall 1.4.10c and earlier, and 2.0.x before 2.0.3a, allows local users to overwrite arbitrary files via a symlink attack on the chains-$$ temporary file. NVD-CWE-Other
CVE-2004-0647 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345978 - mozilla firefox
mozilla
thunderbird
Mozilla (Suite) before 1.7.1, Firefox before 0.9.2, and Thunderbird before 0.7.2 allow remote attackers to launch arbitrary programs via a URI referencing the shell: protocol. NVD-CWE-Other
CVE-2004-0648 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345979 - l2tpd
gentoo
l2tpd
linux
Buffer overflow in write_packet in control.c for l2tpd may allow remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2004-0649 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345980 - newatlanta servletexec UploadServlet in Cisco Collaboration Server (CCS) running ServletExec before 3.0E allows remote attackers to upload and execute arbitrary files via a direct call to the UploadServlet URL. NVD-CWE-Other
CVE-2004-0650 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm