Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 12:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2651 6.5 警告
Network
オラクル PeopleSoft Enterprise SCM Purchasing オラクルのPeopleSoft Enterprise SCM Purchasingにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34295 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2652 4.3 警告
Network
オラクル Oracle Agile Product Lifecycle Management for Process オラクルのOracle Agile Product Lifecycle Management for Processにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34296 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2653 7.5 重要
Network
オラクル Oracle HCM Common Architecture オラクルのOracle HCM Common Architectureにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34297 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2654 6.5 警告
Network
オラクル Oracle Financial Services Analytical Applications Infrastructure オラクルのOracle Financial Services Analytical Applications Infrastructureにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34313 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2655 6.8 警告
Network
オラクル Oracle Financial Services Analytical Applications Infrastructure オラクルのOracle Financial Services Analytical Applications Infrastructureにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-34314 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2656 4.8 警告
Network
オラクル Oracle Financial Services Analytical Applications Infrastructure オラクルのOracle Financial Services Analytical Applications Infrastructureにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-34321 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2657 6.3 警告
Network
オラクル Oracle Life Sciences InForm オラクルのOracle Life Sciences InFormにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34323 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2658 6.5 警告
Network
オラクル Oracle Life Sciences InForm オラクルのOracle Life Sciences InFormにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34324 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2659 6.8 警告
Local
オラクル Oracle Financial Services Analytical Applications Infrastructure オラクルのOracle Financial Services Analytical Applications Infrastructureにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34325 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2660 8.8 重要
Network
jellyfin jellyfin jellyfinにおける複数の脆弱性 CWE-187
CWE-20
CWE-22
CVE-2026-35031 2026-04-27 11:22 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
315791 - maxdev md-pro Cross-site scripting (XSS) vulnerability in MAXdev MDPro 1.0.76 before 20060918 allows remote attackers to inject arbitrary web script or HTML via (1) vectors that bypass the XSS protection mechanism… NVD-CWE-Other
CVE-2006-4964 2024-02-14 10:17 2006-09-23 Show GitHub Exploit DB Packet Storm
315792 - phpbb_xs phpbb_xs PHP remote file inclusion vulnerability in bb_usage_stats/includes/bb_usage_stats.php in phpBB XS 0.58 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_pa… NVD-CWE-Other
CVE-2006-4893 2024-02-14 10:17 2006-09-20 Show GitHub Exploit DB Packet Storm
315793 - telekorn signkorn_guestbook Multiple PHP remote file inclusion vulnerabilities in Telekorn SignKorn Guestbook (SL) 1.3 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a UR… NVD-CWE-Other
CVE-2006-4889 2024-02-14 10:17 2006-09-20 Show GitHub Exploit DB Packet Storm
315794 - all_enthusiast_inc reviewpost_php_pro PHP remote file inclusion vulnerability in index.php in All Enthusiast ReviewPost 2.5 allows remote attackers to execute arbitrary PHP code via a URL in the RP_PATH parameter. NVD-CWE-Other
CVE-2006-4864 2024-02-14 10:17 2006-09-20 Show GitHub Exploit DB Packet Storm
315795 - phpquiz phpquiz PHP remote file inclusion vulnerability in index.php in Jule Slootbeek phpQuiz 0.01 allows remote attackers to execute arbitrary PHP code via a URL in the pagename parameter. NVD-CWE-Other
CVE-2006-4834 2024-02-14 10:17 2006-09-16 Show GitHub Exploit DB Packet Storm
315796 - telekorn signkorn_guestbook PHP remote file inclusion vulnerability in includes/log.inc.php in Telekorn SignKorn Guestbook (SL) 1.3 and earlier, when register_globals is enabled and _SESSION[permission] parameter is set to "yes… NVD-CWE-Other
CVE-2006-4788 2024-02-14 10:17 2006-09-14 Show GitHub Exploit DB Packet Storm
315797 - comscripts phprog Directory traversal vulnerability in index.php in PHProg before 1.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the lang parameter. NVD-CWE-Other
CVE-2006-4753 2024-02-14 10:17 2006-09-14 Show GitHub Exploit DB Packet Storm
315798 - comscripts phprog Cross-site scripting (XSS) vulnerability in index.php in PHProg before 1.1 allows remote attackers to inject arbitrary web script or HTML via the album parameter, which is used in an opendir call. N… NVD-CWE-Other
CVE-2006-4754 2024-02-14 10:17 2006-09-14 Show GitHub Exploit DB Packet Storm
315799 - microsoft ie
windows_2003_server
windows_xp
windows_2000
Heap-based buffer overflow in URLMON.DLL in Microsoft Internet Explorer 6 SP1 on Windows 2000 and XP SP1, with versions the MS06-042 patch before 20060912, allows remote attackers to cause a denial o… NVD-CWE-Other
CVE-2006-3873 2024-02-14 10:17 2006-09-13 Show GitHub Exploit DB Packet Storm
315800 - mcgallery mcgallery_pro PHP remote file inclusion vulnerability in random2.php in mcGalleryPRO 2006 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NVD-CWE-Other
CVE-2006-4720 2024-02-14 10:17 2006-09-13 Show GitHub Exploit DB Packet Storm