Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
221 4.3 警告
Network
Joomla! Joomla! Joomla!におけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-48900 2026-05-28 14:39 2026-05-26 Show GitHub Exploit DB Packet Storm
222 6.1 警告
Network
Joomla! Joomla! Joomla!におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-48903 2026-05-28 14:39 2026-05-26 Show GitHub Exploit DB Packet Storm
223 9.8 緊急
Network
Joomla! Joomla! Joomla!におけるアクセス制御に関する脆弱性 CWE-284
CWE-noinfo
CVE-2026-48904 2026-05-28 14:39 2026-05-26 Show GitHub Exploit DB Packet Storm
224 6.1 警告
Network
Joomla! Joomla! Joomla!におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-48905 2026-05-28 14:39 2026-05-26 Show GitHub Exploit DB Packet Storm
225 6.3 警告
Local
Inkscape Inkscape InkscapeにおけるXML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2026-4980 2026-05-28 14:39 2026-03-27 Show GitHub Exploit DB Packet Storm
226 4.3 警告
Network
Devolutions Devolutions Server DevolutionsのDevolutions Serverにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-5146 2026-05-28 14:39 2026-05-12 Show GitHub Exploit DB Packet Storm
227 4.3 警告
Network
Devolutions Devolutions Server DevolutionsのDevolutions Serverにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-5171 2026-05-28 14:39 2026-05-22 Show GitHub Exploit DB Packet Storm
228 7.5 重要
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-5308 2026-05-28 14:39 2026-05-22 Show GitHub Exploit DB Packet Storm
229 8.8 重要
Adjacent
TP-LINK Technologies Archer C7 ファームウェア TP-LINK TechnologiesのArcher C7 ファームウェアにおける暗号強度に関する脆弱性 CWE-326
不適切な暗号強度
CVE-2026-5363 2026-05-28 14:39 2026-04-16 Show GitHub Exploit DB Packet Storm
230 7.5 重要
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおける過剰なサイズ値のメモリ割り当てに関する脆弱性 CWE-789
過剰なサイズ値のメモリ割り当て
CVE-2026-5740 2026-05-28 14:39 2026-05-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
318881 8.2 HIGH
Network
- - An unauthenticated attacker can exploit improper neutralization of input during web page generation in Microsoft Dynamics 365 to spoof over a network by tricking a user to click on a link. CWE-79
Cross-site Scripting
CVE-2024-38166 2024-08-8 11:15 2024-08-7 Show GitHub Exploit DB Packet Storm
318882 - - - Format string vulnerability in vsybase.c in vpopmail 5.4.2 and earlier has unknown impact and attack vectors. NOTE: in a followup post, it was observed that the source code used constants that, when… NVD-CWE-Other
CVE-2004-2238 2024-08-8 11:15 2004-12-31 Show GitHub Exploit DB Packet Storm
318883 - gnu less Format string bug in the open_altfile function in filename.c for GNU less 382, 381, and 358 might allow local users to cause a denial of service or possibly execute arbitrary code via format strings … NVD-CWE-Other
CVE-2004-2264 2024-08-8 11:15 2004-12-31 Show GitHub Exploit DB Packet Storm
318884 - microsoft windows_2000
windows_2003_server
windows_xp
Microsoft Windows 2000, XP, and possibly 2003 allows local users with the SeDebugPrivilege privilege to execute arbitrary code as kernel and read or write kernel memory via the NtSystemDebugControl f… NVD-CWE-Other
CVE-2004-2339 2024-08-8 11:15 2004-12-31 Show GitHub Exploit DB Packet Storm
318885 - apache http_server Apache HTTP Server 2.0.47 and earlier allows local users to bypass .htaccess file restrictions, as specified in httpd.conf with directives such as Deny From All, by using an ErrorDocument directive. … NVD-CWE-Other
CVE-2004-2343 2024-08-8 11:15 2004-12-31 Show GitHub Exploit DB Packet Storm
318886 - mozilla firefox Mozilla Firefox 1.5.0.1, and possibly other versions, preserves some records of user activity even after uninstalling, which allows local users who share a Windows profile to view the records after a… NVD-CWE-Other
CVE-2004-2657 2024-08-8 11:15 2004-12-31 Show GitHub Exploit DB Packet Storm
318887 - zonelabs zonealarm Zone Alarm Pro 1.0 through 5.1 gives full access to %windir%\Internet Logs\* to the EVERYONE group, which allows local users to cause a denial of service by modifying the folder contents or permissio… CWE-264
Permissions, Privileges, and Access Controls
CVE-2004-2713 2024-08-8 11:15 2004-12-31 Show GitHub Exploit DB Packet Storm
318888 - nessus nessus Nessus 2.0.10a stores account passwords in plaintext in .nessusrc files, which allows local users to obtain passwords. NOTE: the original researcher reports that the vendor has disputed this issue CWE-255
Credentials Management
CVE-2004-2722 2024-08-8 11:15 2004-12-31 Show GitHub Exploit DB Packet Storm
318889 - php php PHP treats unknown methods such as "PoSt" as a GET request, which could allow attackers to intended access restrictions if PHP is running on a server that passes on all methods, such as Apache httpd … NVD-CWE-Other
CVE-2003-0249 2024-08-8 11:15 2003-12-31 Show GitHub Exploit DB Packet Storm
318890 - ibm lotus_domino NOTE: this issue has been disputed by the vendor. Cross-site scripting (XSS) vulnerability in IBM Lotus Notes R6 and Domino R6, and possibly earlier versions, allows remote attackers to execute arbi… NVD-CWE-Other
CVE-2004-1621 2024-08-8 10:15 2004-10-18 Show GitHub Exploit DB Packet Storm