Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2651 8.1 重要
Adjacent
PowerDNS dnsdist PowerDNSのdnsdistにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-33599 2026-04-27 10:50 2026-04-22 Show GitHub Exploit DB Packet Storm
2652 8.2 重要
Network
PowerDNS dnsdist PowerDNSのdnsdistにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-33602 2026-04-27 10:50 2026-04-22 Show GitHub Exploit DB Packet Storm
2653 10 緊急
Network
Flatpak Flatpak FlatpakにおけるUNIX Symbolic Link のフォローに関する脆弱性 CWE-61
UNIX Symbolic Link のフォロー
CVE-2026-34078 2026-04-27 10:50 2026-04-7 Show GitHub Exploit DB Packet Storm
2654 9.1 緊急
Network
- オラクルのEnterprise Manager Base Platformにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-34279 2026-04-27 10:50 2026-04-21 Show GitHub Exploit DB Packet Storm
2655 4.7 警告
Network
オラクル Oracle Applications Framework オラクルのOracle Applications Frameworkにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34298 2026-04-27 10:50 2026-04-21 Show GitHub Exploit DB Packet Storm
2656 6.5 警告
Network
オラクル PeopleSoft Enterprise FIN Maintenance Management オラクルのPeopleSoft Enterprise FIN Maintenance Managementにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34299 2026-04-27 10:49 2026-04-21 Show GitHub Exploit DB Packet Storm
2657 6.5 警告
Network
オラクル PeopleSoft Enterprise FIN Maintenance Management オラクルのPeopleSoft Enterprise FIN Maintenance Managementにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34301 2026-04-27 10:49 2026-04-21 Show GitHub Exploit DB Packet Storm
2658 5.5 警告
Network
オラクル Oracle Workflow オラクルのOracle Workflowにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34302 2026-04-27 10:49 2026-04-21 Show GitHub Exploit DB Packet Storm
2659 7.5 重要
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34305 2026-04-27 10:49 2026-04-21 Show GitHub Exploit DB Packet Storm
2660 6.5 警告
Network
オラクル PeopleSoft Enterprise FIN Project Costing オラクルのPeopleSoft Enterprise FIN Project Costingにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34306 2026-04-27 10:49 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
316241 9.8 CRITICAL
Network
optical_character_recognition_project optical_character_recognition Integer overflow in the readpgm function in pnm.c for GOCR 0.40, when using the netpbm library, allows remote attackers to execute arbitrary code via a PNM file with large width and height values, wh… CWE-190
 Integer Overflow or Wraparound
CVE-2005-1141 2024-02-9 03:37 2005-04-15 Show GitHub Exploit DB Packet Storm
316242 9.8 CRITICAL
Network
openbsd openssh Integer overflow in sshd in OpenSSH 2.9.9 through 3.3 allows remote attackers to execute arbitrary code during challenge response authentication (ChallengeResponseAuthentication) when OpenSSH is usin… CWE-190
 Integer Overflow or Wraparound
CVE-2002-0639 2024-02-9 03:37 2002-07-3 Show GitHub Exploit DB Packet Storm
316243 7.8 HIGH
Local
linux linux_kernel Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which cau… CWE-190
 Integer Overflow or Wraparound
CVE-2004-2013 2024-02-9 02:59 2004-12-31 Show GitHub Exploit DB Packet Storm
316244 9.8 CRITICAL
Network
wuftpd
redhat
apple
sun
freebsd
netbsd
openbsd
wu-ftpd
wu_ftpd
mac_os_x_server
mac_os_x
solaris
freebsd
netbsd
openbsd
Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code, as demonstrated in wu-ftpd 2.5.0 through 2.6.2 via command… CWE-193
 Off-by-one Error
CVE-2003-0466 2024-02-9 00:50 2003-08-27 Show GitHub Exploit DB Packet Storm
316245 5.5 MEDIUM
Local
mandrakesoft mandrake_linux The Standard security setting for Mandrake-Security package (msec) in Mandrake 8.2 installs home directories with world-readable permissions, which could allow local users to read other user's files. CWE-276
Incorrect Default Permissions 
CVE-2002-1713 2024-02-9 00:50 2002-12-31 Show GitHub Exploit DB Packet Storm
316246 7.8 HIGH
Local
microsoft windows_media_player Microsoft Windows Media Player (WMP) 6.3, when installed on Solaris, installs executables with world-writable permissions, which allows local users to delete or modify the executables to gain privile… CWE-276
Incorrect Default Permissions 
CVE-2002-1844 2024-02-9 00:50 2002-12-31 Show GitHub Exploit DB Packet Storm
316247 9.8 CRITICAL
Network
suse suse_linux The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing. CWE-276
Incorrect Default Permissions 
CVE-1999-0426 2024-02-9 00:50 1999-03-1 Show GitHub Exploit DB Packet Storm
316248 7.8 HIGH
Local
isc bind dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD5 shared secret key file used for DNS Transactional Signatures (TSIG), which al… CWE-276
Incorrect Default Permissions 
CVE-2001-0497 2024-02-9 00:49 2001-07-21 Show GitHub Exploit DB Packet Storm
316249 7.5 HIGH
Network
aol aim The GIF parser in ateimg32.dll in AOL Instant Messenger (AIM) 5.9.3797 and earlier allows remote attackers to cause a denial of service (crash) via a malformed buddy icon that causes an integer under… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2005-1891 2024-02-9 00:44 2005-06-9 Show GitHub Exploit DB Packet Storm
316250 9.8 CRITICAL
Network
barton ngircd Integer underflow in the Lists_MakeMask() function in lists.c in ngIRCd before 0.8.2 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2005-0199 2024-02-9 00:43 2005-05-2 Show GitHub Exploit DB Packet Storm