Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2641 9.1 緊急
Network
LMSYS Org SGLang LMSYS OrgのSGLangにおけるパストラバーサルの脆弱性 CWE-35
パストラバーサル
CVE-2026-7302 2026-05-21 10:50 2026-05-18 Show GitHub Exploit DB Packet Storm
2642 9.8 緊急
Network
LMSYS Org SGLang LMSYS OrgのSGLangにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-7304 2026-05-21 10:50 2026-05-18 Show GitHub Exploit DB Packet Storm
2643 5.5 警告
Local
Open Source Geospatial Foundation GDAL Open Source Geospatial FoundationのGDALにおける複数の脆弱性 CWE-119
CWE-122
CWE-125
CVE-2026-8212 2026-05-21 10:49 2026-05-9 Show GitHub Exploit DB Packet Storm
2644 5.5 警告
Local
Open Source Geospatial Foundation GDAL Open Source Geospatial FoundationのGDALにおける複数の脆弱性 CWE-119
CWE-122
CWE-125
CVE-2026-8213 2026-05-21 10:49 2026-05-9 Show GitHub Exploit DB Packet Storm
2645 7.5 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける不変と仮定される Web パラメータの外部制御に関する脆弱性 CWE-472
不変と仮定される Web パラメータの外部制御
CVE-2026-8510 2026-05-21 10:49 2026-05-14 Show GitHub Exploit DB Packet Storm
2646 8.3 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-8513 2026-05-21 10:49 2026-05-14 Show GitHub Exploit DB Packet Storm
2647 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおけるライフタイムを通してのリソース制御に関する脆弱性 CWE-664
ライフタイムを通してのリソースの不適切な制御
CVE-2026-8517 2026-05-21 10:49 2026-05-14 Show GitHub Exploit DB Packet Storm
2648 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける不変と仮定される Web パラメータの外部制御に関する脆弱性 CWE-472
不変と仮定される Web パラメータの外部制御
CVE-2026-8519 2026-05-21 10:49 2026-05-14 Show GitHub Exploit DB Packet Storm
2649 8.8 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-8522 2026-05-21 10:49 2026-05-14 Show GitHub Exploit DB Packet Storm
2650 8.3 重要
Network
Google Google Chrome GoogleのGoogle Chromeにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-8525 2026-05-21 10:49 2026-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345411 - x.org
xfree86_project
gentoo
x11r6
xdm
linux
XDM in XFree86 opens a chooserFd TCP socket even when DisplayManager.requestPort is 0, which could allow remote attackers to connect to the port, in violation of the intended restrictions. NVD-CWE-Other
CVE-2004-0419 2017-10-11 10:29 2004-08-18 Show GitHub Exploit DB Packet Storm
345412 - andrew_tridgell rsync rsync before 2.6.1 does not properly sanitize paths when running a read/write daemon without using chroot, which allows remote attackers to write files outside of the module's path. NVD-CWE-Other
CVE-2004-0426 2017-10-11 10:29 2004-07-7 Show GitHub Exploit DB Packet Storm
345413 - linux linux_kernel Unknown vulnerability in Linux before 2.4.26 for IA64 allows local users to cause a denial of service, with unknown impact. NOTE: due to a typo, this issue was accidentally assigned CVE-2004-0477. … NVD-CWE-Other
CVE-2004-0447 2017-10-11 10:29 2004-08-6 Show GitHub Exploit DB Packet Storm
345414 - larry_wall perl Race condition in the rmtree function in the File::Path module in Perl 5.6.1 and 5.8.4 sets read/write permissions for the world, which allows local users to delete arbitrary files and directories, a… NVD-CWE-Other
CVE-2004-0452 2017-10-11 10:29 2004-12-21 Show GitHub Exploit DB Packet Storm
345415 - redhat enterprise_linux The linux-2.4.21-mlock.patch in Red Hat Enterprise Linux 3 does not properly maintain the mlock page count when one process unlocks pages that belong to another process, which allows local users to m… NVD-CWE-Other
CVE-2004-0491 2017-10-11 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
345416 - avaya
redhat
cvlan
enterprise_linux
enterprise_linux_desktop
linux_advanced_workstation
Multiple extfs backend scripts for GNOME virtual file system (VFS) before 1.0.1 may allow remote attackers to perform certain unauthorized actions via a gnome-vfs URI. NVD-CWE-Other
CVE-2004-0494 2017-10-11 10:29 2004-11-23 Show GitHub Exploit DB Packet Storm
345417 - avaya
gentoo
linux
redhat
suse
conectiva
converged_communications_server
modular_messaging_message_storage_server
linux
linux_kernel
enterprise_linux
suse_linux
intuity_audix
suse_email_server
suse_linux_admin-cd_for…
Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memory, as found by the Sparse source code checking tool. NVD-CWE-Other
CVE-2004-0495 2017-10-11 10:29 2004-08-6 Show GitHub Exploit DB Packet Storm
345418 - mandrakesoft
conectiva
gentoo
linux
redhat
suse
trustix
mandrake_multi_network_firewall
linux
linux_kernel
mandrake_linux
mandrake_linux_corporate_server
enterprise_linux
suse_linux
secure_linux
Unknown vulnerability in Linux kernel 2.x may allow local users to modify the group ID of files, such as NFS exported files in kernel 2.4. NVD-CWE-Other
CVE-2004-0497 2017-10-11 10:29 2004-12-6 Show GitHub Exploit DB Packet Storm
345419 - rob_flynn
gentoo
mandrakesoft
gaim
linux
mandrake_linux
Buffer overflow in the MSN protocol plugins (1) object.c and (2) slp.c for Gaim before 0.82 allows remote attackers to cause a denial of service and possibly execute arbitrary code via MSNSLP protoco… NVD-CWE-Other
CVE-2004-0500 2017-10-11 10:29 2004-09-28 Show GitHub Exploit DB Packet Storm
345420 - sgi
squirrelmail
propack
squirrelmail
Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail 1.4.2 allow remote attackers to execute arbitrary script as other users and possibly steal authentication information via multiple … NVD-CWE-Other
CVE-2004-0519 2017-10-11 10:29 2004-08-18 Show GitHub Exploit DB Packet Storm