Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2651 5.3 警告
Network
PowerDNS PowerDNS Recursor PowerDNSのPowerDNS RecursorにおけるCapture-replay による認証回避に関する脆弱性 CWE-294
Capture-replayによる認証回避
CVE-2026-24027 2026-04-21 10:51 2026-02-9 Show GitHub Exploit DB Packet Storm
2652 6.7 警告
Local
Acronis International GmbH True Image Acronis International GmbHのTrue Imageにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-27774 2026-04-21 10:51 2026-04-2 Show GitHub Exploit DB Packet Storm
2653 5.3 警告
Network
Talishar Talishar Talisharにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2026-28428 2026-04-21 10:51 2026-03-6 Show GitHub Exploit DB Packet Storm
2654 7.5 重要
Network
Talishar Talishar Talisharにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-28429 2026-04-21 10:50 2026-03-6 Show GitHub Exploit DB Packet Storm
2655 6.7 警告
Local
Acronis International GmbH True Image Acronis International GmbHのTrue Imageにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-28728 2026-04-21 10:50 2026-04-2 Show GitHub Exploit DB Packet Storm
2656 8.3 重要
Network
Daylight Studio FUEL CMS Daylight StudioのFUEL CMSにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-30461 2026-04-21 10:50 2026-04-15 Show GitHub Exploit DB Packet Storm
2657 8.6 重要
Network
Agent Zero Agent Zero Agent Zeroにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-30624 2026-04-21 10:50 2026-04-15 Show GitHub Exploit DB Packet Storm
2658 7.5 重要
Network
Apache Software Foundation skywalking Apache Software Foundationのskywalkingにおけるデータクエリからの重要な情報の漏えいに関する脆弱性 CWE-202
データクエリからの重要な情報の漏えい
CVE-2026-30778 2026-04-21 10:50 2026-04-15 Show GitHub Exploit DB Packet Storm
2659 7.5 重要
Network
Apache Software Foundation Apache Airflow Apache Software FoundationのApache Airflowにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2026-31987 2026-04-21 10:50 2026-04-16 Show GitHub Exploit DB Packet Storm
2660 4.8 警告
Network
OpenClaw OpenClaw OpenClawにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2026-32018 2026-04-21 10:50 2026-03-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349771 - xtokkaetama xtokkaetama Multiple buffer overflows in xtokkaetama 1.0 allow local users to gain privileges via a long (1) -display command line argument or (2) XTOKKAETAMADIR environment variable. NVD-CWE-Other
CVE-2003-0611 2008-09-6 05:34 2003-08-27 Show GitHub Exploit DB Packet Storm
349772 - novell ichain Novell iChain 2.2 before Support Pack 1 does not properly verify that URL redirects match the DNS name of an accelerator, which allows attackers to redirect URLs to malicious web sites. NVD-CWE-Other
CVE-2003-0636 2008-09-6 05:34 2003-08-27 Show GitHub Exploit DB Packet Storm
349773 - bea weblogic_server BEA WebLogic Server and Express, when using NodeManager to start servers, provides Operator users with privileges to overwrite usernames and passwords, which may allow Operators to gain Admin privile… NVD-CWE-Other
CVE-2003-0640 2008-09-6 05:34 2003-08-27 Show GitHub Exploit DB Packet Storm
349774 - johannes_sixt kdbg Kdbg 1.1.0 through 1.2.8 does not check permissions of the .kdbgrc file, which allows local users to execute arbitrary commands. NVD-CWE-Other
CVE-2003-0644 2008-09-6 05:34 2003-09-7 Show GitHub Exploit DB Packet Storm
349775 - mod_mylo mod_mylo Buffer overflow in the mylo_log logging function for mod_mylo 0.2.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request. NVD-CWE-Other
CVE-2003-0651 2008-09-6 05:34 2003-08-27 Show GitHub Exploit DB Packet Storm
349776 - phpgroupware phpgroupware Multiple SQL injection vulnerabilities in the infolog module for phpgroupware 0.9.14 and earlier could allow remote attackers to conduct unauthorized database actions. NVD-CWE-Other
CVE-2003-0657 2008-09-6 05:34 2003-08-27 Show GitHub Exploit DB Packet Storm
349777 - sgi irix NFS in SGI 6.5.21m and 6.5.21f does not perform access checks in certain configurations when an /etc/exports entry uses wildcards without any hostnames or groups, which could allow attackers to bypas… NVD-CWE-Other
CVE-2003-0683 2008-09-6 05:34 2003-11-3 Show GitHub Exploit DB Packet Storm
349778 - hp hp-ux Buffer overflow in passwd for HP UX B.10.20 allows local users to execute arbitrary commands with root privileges via a long LANG environment variable. NVD-CWE-Other
CVE-2003-0061 2008-09-6 05:33 2002-01-11 Show GitHub Exploit DB Packet Storm
349779 - nokia 6210_handset Format string vulnerability in Nokia 6210 handset allows remote attackers to cause a denial of service (crash, lockup, or restart) via a Multi-Part vCard with fields containing a large number of form… NVD-CWE-Other
CVE-2003-0103 2008-09-6 05:33 2003-03-7 Show GitHub Exploit DB Packet Storm
349780 - peoplesoft peopletools Directory traversal vulnerability in PeopleTools 8.10 through 8.18, 8.40, and 8.41 allows remote attackers to overwrite arbitrary files via the SchedulerTransfer servlet. NVD-CWE-Other
CVE-2003-0104 2008-09-6 05:33 2003-03-18 Show GitHub Exploit DB Packet Storm