Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2411 4.6 警告
Physics
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows ブート マネージャーのセキュリティ機能のバイパスの脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2026-26175 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2412 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows クライアント側のキャッシュ ドライバー (csc.sys) の特権昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-26176 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2413 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
WinSock 用 Windows Ancillary Function Driver の特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-26177 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2414 8.8 重要
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows Advanced Rasterization Platform の特権昇格の脆弱性 CWE-190
CWE-681
CVE-2026-26178 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2415 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft Windows 11 24h2
Microsoft Wind…
Windows カーネルの特権の昇格の脆弱性 CWE-415
二重解放
CVE-2026-26179 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2416 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows カーネルの特権の昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-26180 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2417 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft Windows 11 24h2
Microsoft Wind…
Microsoft Resilient File System の特権昇格の脆弱性 CWE-362
CWE-416
CVE-2026-26181 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2418 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
WinSock 用 Windows Ancillary Function Driver の特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-26182 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2419 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows Server 2025
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microso…
リモート アクセス管理サービス/API (RPC サーバー) の特権昇格の脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-26183 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
2420 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows 10 1809
Microsoft Wind…
Windows Projected File System の特権の昇格の脆弱性 CWE-126
バッファオーバーリード
CVE-2026-26184 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
316011 - ethereal_group ethereal Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (application hang) and possibly fill available disk space via an invalid RTP timestamp. NVD-CWE-Other
CVE-2004-1140 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
316012 - ethereal_group ethereal The HTTP dissector in Ethereal 0.10.1 through 0.10.7 allows remote attackers to cause a denial of service (application crash) via a certain packet that causes the dissector to access previously-freed… NVD-CWE-Other
CVE-2004-1141 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
316013 - psychostats psychostats Cross-site scripting (XSS) vulnerability in login.php in PsychoStats 2.2.4 Beta and earlier allows remote attackers to inject arbitrary web script or HTML via the login parameter. CWE-79
Cross-site Scripting
CVE-2004-1417 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
316014 - argosoft ftp_server ArGoSoft FTP before 1.4.2.1 generates an error message if the user name does not exist instead of prompting for a password, which allows remote attackers to determine valid usernames. CWE-203
 Information Exposure Through Discrepancy
CVE-2004-1428 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
316015 - ethereal_group ethereal Unknown vulnerability in Ethereal 0.8.13 to 0.10.2 allows attackers to cause a denial of service (segmentation fault) via a malformed color filter file. NVD-CWE-Other
CVE-2004-1761 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
316016 - alan_ward a-cart SQL injection vulnerability in category.asp in A-CART Pro and A-CART 2.0 allows remote attackers to gain privileges via the catcode parameter. NVD-CWE-Other
CVE-2004-1873 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
316017 - oscommerce oscommerce Directory traversal vulnerability in file_manager.php in osCommerce 2.2 allows remote attackers to view arbitrary files via a .. (dot dot) in the filename argument. NVD-CWE-Other
CVE-2004-2021 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
316018 - allwebscripts mysqlguest Cross-site scripting (XSS) vulnerability in AWSguest.php in AllWebScripts MySQLGuest allows remote attackers to inject arbitrary HTML and PHP code via the (1) Name, (2) Email, (3) Homepage or (4) Com… NVD-CWE-Other
CVE-2004-2138 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
316019 - phpx phpx PHPX 3.2.6 and earlier allows remote attackers to obtain the physical path of PHPX via a null or invalid value in the limit parameter, which leaks the pathname in a database error message, as demonst… NVD-CWE-Other
CVE-2004-2362 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
316020 - phpx phpx Validate-Before-Canonicalize vulnerability in the checkURI function in functions.inc.php in PHPX 3.0 through 3.2.6 allows remote attackers to conduct cross-site scripting (XSS) attacks via hex-encode… NVD-CWE-Other
CVE-2004-2363 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm