Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2791 7.7 重要
Network
Istio Istio Istioにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-41413 2026-05-11 11:09 2026-05-7 Show GitHub Exploit DB Packet Storm
2792 8.1 重要
Network
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAI等の複数製品におけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-41496 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
2793 9.8 緊急
Network
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAIにおける複数の脆弱性 CWE-77
CWE-78
CVE-2026-41497 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
2794 9.8 緊急
Network
Electerm project Electerm Electerm projectのElectermにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-41500 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
2795 9.8 緊急
Network
Electerm project Electerm Electerm projectのElectermにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-41501 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
2796 7.8 重要
Local
Sebastian Bergmann PHPUnit Sebastian BergmannのPHPUnitにおける複数の脆弱性 CWE-88
CWE-93
CVE-2026-41570 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
2797 7.5 重要
Network
Zcash Foundation Zebra-chain
Zebrad
Zcash FoundationのZebra-chain等の複数製品における到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-41584 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
2798 5.3 警告
Network
projectdiscovery Nuclei ProjectDiscovery, Inc.のNucleiにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-41645 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
2799 5.5 警告
Local
projectdiscovery Nuclei ProjectDiscovery, Inc.のNucleiにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-41646 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
2800 8.1 重要
Network
- OpenC3のOpenC3 COSMOSにおける未検証のパスワード変更に関する脆弱性 CWE-620
未検証のパスワード変更
CVE-2026-42084 2026-05-11 11:09 2026-05-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345911 - akfingerd akfingerd Akfingerd 0.5 and earlier versions allow local users to cause a denial of service (crash) via a .plan with a symlink to /dev/urandom or other device, then disconnecting while data is being transferre… CWE-362
Race Condition
CVE-2002-2244 2017-07-29 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
345912 - deerfield visnetic_website Cross-site scripting (XSS) vulnerability in VisNetic Website before 3.5.15 allows remote attackers to inject arbitrary web script or HTML via the HTTP referer header (HTTP_REFERER) to a non-existent … CWE-79
Cross-site Scripting
CVE-2002-2246 2017-07-29 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
345913 - mambo mambo_site_server The administrator/phpinfo.php script in Mambo Site Server 4.0.11 allows remote attackers to obtain sensitive information such as the full web root path via phpinfo.php, which calls the phpinfo functi… CWE-16
Configuration
CVE-2002-2247 2017-07-29 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
345914 - netscape communicator Buffer overflow in the sun.awt.windows.WDefaultFontCharset Java class implementation in Netscape 4.0 allows remote attackers to execute arbitrary code via an applet that calls the WDefaultFontCharset… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2002-2248 2017-07-29 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
345915 - php_evolution news_evolution PHP remote file inclusion vulnerability in News Evolution 2.0 allows remote attackers to execute arbitrary PHP commands via the neurl parameter to (1) backend.php, (2) screen.php, or (3) admin/module… CWE-94
Code Injection
CVE-2002-2249 2017-07-29 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
345916 - sybase adaptive_server Multiple buffer overflows in Sybase Adaptive Server 12.0 and 12.5 allow remote attackers to execute arbitrary code via (1) a long parameter to the xp_freedll extended stored procedure or (2) a long d… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2002-2250 2017-07-29 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
345917 - marcos_luiz_onisto lib_cgi Buffer overflow in the changevalue function in libcgi.h for Marcos Luiz Onisto Lib CGI 0.1 allows remote attackers to execute arbitrary code via a long argument. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2002-2251 2017-07-29 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
345918 - atthat.com thatware SQL injection vulnerability in auth.inc.php in Thatware 0.5.0 and earlier allows remote attackers to execute arbitrary SQL commands via a base64-encoded user parameter. CWE-89
SQL Injection
CVE-2002-2252 2017-07-29 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
345919 - cyrus libsieve Multiple buffer overflows in Cyrus Sieve / libSieve 2.1.2 and earlier allow remote attackers to execute arbitrary code via (1) a long header name, (2) a long IMAP flag, or (3) a script that generates… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2002-2253 2017-07-29 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
345920 - linux linux_kernel The experimental IP packet queuing feature in Netfilter / IPTables in Linux kernel 2.4 up to 2.4.19 and 2.5 up to 2.5.31, when a privileged process exits and network traffic is not being queued, may … CWE-264
Permissions, Privileges, and Access Controls
CVE-2002-2254 2017-07-29 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm