Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2431 6.2 警告
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Active Directory のなりすましの脆弱性 CWE-287
不適切な認証
CVE-2026-32072 2026-04-24 11:31 2026-04-14 Show GitHub Exploit DB Packet Storm
2432 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
WinSock 用 Windows Ancillary Function Driver の特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-32073 2026-04-24 11:31 2026-04-14 Show GitHub Exploit DB Packet Storm
2433 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows 10 1809
Microsoft Wind…
Windows Projected File System の特権の昇格の脆弱性 CWE-415
二重解放
CVE-2026-32074 2026-04-24 11:31 2026-04-14 Show GitHub Exploit DB Packet Storm
2434 7.5 重要
Network
EMQX nanomq EMQXのnanomqにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-32135 2026-04-24 11:31 2026-04-20 Show GitHub Exploit DB Packet Storm
2435 7.4 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows UPnP デバイス ホストのリモートでコードが実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-32156 2026-04-24 11:31 2026-04-14 Show GitHub Exploit DB Packet Storm
2436 7.5 重要
Network
jqlang jq jqlangのjqにおける複数の脆弱性 CWE-122
CWE-190
CVE-2026-32316 2026-04-24 11:31 2026-04-13 Show GitHub Exploit DB Packet Storm
2437 8.1 重要
Network
nginxui nginx ui Nginx UI TeamのNginx UIにおける複数の脆弱性 CWE-284
CWE-863
CVE-2026-33031 2026-04-24 11:31 2026-04-20 Show GitHub Exploit DB Packet Storm
2438 4.3 警告
Network
Docmost Docmost Docmostにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-33146 2026-04-24 11:30 2026-04-14 Show GitHub Exploit DB Packet Storm
2439 8.1 重要
Network
tandoor recipes tandoorのrecipesにおけるHTTP ヘッダのスクリプト構文の不適切な無効化に関する脆弱性 CWE-644
HTTP ヘッダのスクリプト構文の不適切な無効化
CVE-2026-33149 2026-04-24 11:30 2026-03-26 Show GitHub Exploit DB Packet Storm
2440 4.6 警告
Network
Docmost Docmost Docmostにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-33193 2026-04-24 11:30 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348071 - alex_heiphetz_group ezshopper EZShopper 3.0 loadpage.cgi CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack or execute commands via shell metacharacters. NVD-CWE-Other
CVE-2000-0187 2008-09-11 04:03 2000-02-27 Show GitHub Exploit DB Packet Storm
348072 - alex_heiphetz_group ezshopper EZShopper 3.0 search.cgi CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack or execute commands via shell metacharacters. NVD-CWE-Other
CVE-2000-0188 2008-09-11 04:03 2000-02-27 Show GitHub Exploit DB Packet Storm
348073 - allaire coldfusion_server ColdFusion Server 4.x allows remote attackers to determine the real pathname of the server via an HTTP request to the application.cfm or onrequestend.cfm files. NVD-CWE-Other
CVE-2000-0189 2008-09-11 04:03 2000-03-1 Show GitHub Exploit DB Packet Storm
348074 - aol instant_messenger AOL Instant Messenger (AIM) client allows remote attackers to cause a denial of service via a message with a malformed ASCII value. NVD-CWE-Other
CVE-2000-0190 2008-09-11 04:03 2000-03-2 Show GitHub Exploit DB Packet Storm
348075 - caldera openlinux The default installation of Caldera OpenLinux 2.3 includes the CGI program rpm_query, which allows remote attackers to determine what packages are installed on the system. NVD-CWE-Other
CVE-2000-0192 2008-09-11 04:03 2000-03-5 Show GitHub Exploit DB Packet Storm
348076 - corel linux buildxconf in Corel Linux allows local users to modify or create arbitrary files via the -x or -f parameters. NVD-CWE-Other
CVE-2000-0194 2008-09-11 04:03 2000-02-24 Show GitHub Exploit DB Packet Storm
348077 - corel linux setxconf in Corel Linux allows local users to gain root access via the -T parameter, which executes the user's .xserverrc file. NVD-CWE-Other
CVE-2000-0195 2008-09-11 04:03 2000-02-24 Show GitHub Exploit DB Packet Storm
348078 - nmh
redhat
turbolinux
nmh
linux
turbolinux
Buffer overflow in mhshow in the Linux nmh package allows remote attackers to execute commands via malformed MIME headers in an email message. NVD-CWE-Other
CVE-2000-0196 2008-09-11 04:03 2000-02-28 Show GitHub Exploit DB Packet Storm
348079 - microsoft windows_nt The Windows NT scheduler uses the drive mapping of the interactive user who is currently logged onto the system, which allows the local user to gain privileges by providing a Trojan horse batch file … NVD-CWE-Other
CVE-2000-0197 2008-09-11 04:03 2000-02-14 Show GitHub Exploit DB Packet Storm
348080 - atrium_software mercur_imap4_server
mercur_mailserver
mercur_pop3_server
Buffer overflow in POP3 and IMAP servers in the MERCUR mail server suite allows remote attackers to cause a denial of service. NVD-CWE-Other
CVE-2000-0198 2008-09-11 04:03 2000-03-15 Show GitHub Exploit DB Packet Storm