Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2861 9.8 緊急
Network
Zeit, Inc. Turborepo Vercel, Inc. (旧 Zeit, Inc.)のTurborepoにおける信頼できない検索パスに関する脆弱性 CWE-426
信頼性のない検索パス
CVE-2026-45772 2026-05-21 10:54 2026-05-15 Show GitHub Exploit DB Packet Storm
2862 6.5 警告
Network
Zeit, Inc. Turborepo Vercel, Inc. (旧 Zeit, Inc.)のTurborepoにおける複数の脆弱性 CWE-352
CWE-384
CVE-2026-45773 2026-05-21 10:54 2026-05-15 Show GitHub Exploit DB Packet Storm
2863 7.8 重要
Local
Zeit, Inc. The Turborepo Language Server Protocol (LSP) Vercel, Inc. (旧 Zeit, Inc.)のThe Turborepo Language Server Protocol (LSP)におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-46508 2026-05-21 10:54 2026-05-15 Show GitHub Exploit DB Packet Storm
2864 9.1 緊急
Network
FreeRTOS coreMQTT FreeRTOSのcoreMQTTにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-8686 2026-05-21 10:54 2026-05-15 Show GitHub Exploit DB Packet Storm
2865 9.1 緊急
Network
Aden OpenHive AdenのOpenHiveにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-8757 2026-05-21 10:54 2026-05-17 Show GitHub Exploit DB Packet Storm
2866 6.5 警告
Network
Kilo Code Kilo Code Kilo Codeにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-8765 2026-05-21 10:54 2026-05-17 Show GitHub Exploit DB Packet Storm
2867 6.5 警告
Network
Kilo Code Kilo Code Kilo Codeにおける複数の脆弱性 CWE-200
CWE-284
CWE-noinfo
CVE-2026-8766 2026-05-21 10:54 2026-05-17 Show GitHub Exploit DB Packet Storm
2868 3.3
Local
Continue Continue Continueにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-8770 2026-05-21 10:54 2026-05-18 Show GitHub Exploit DB Packet Storm
2869 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40901 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
2870 4.8 警告
Network
Nozomi Networks Inc. cmc
Guardian
Nozomi Networks Inc.のCMC等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-40902 2026-05-21 10:54 2026-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345391 - michael_boehme webdiscount_e_shop_online_shop_system eshop.pl in WebDiscount(e)shop allows remote attackers to execute arbitrary commands via shell metacharacters in the seite parameter. NVD-CWE-Other
CVE-2001-1014 2017-12-19 11:29 2001-09-15 Show GitHub Exploit DB Packet Storm
345392 - lotus domino Lotus Domino web server 5.08 allows remote attackers to determine the internal IP address of the server when NAT is enabled via a GET request that contains a long sequence of / (slash) characters. NVD-CWE-Other
CVE-2001-1018 2017-12-19 11:29 2001-09-20 Show GitHub Exploit DB Packet Storm
345393 - seaglass_technologies_inc. sglmerchant Directory traversal vulnerability in view_item CGI program in sglMerchant 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the HTML_FILE parameter. NVD-CWE-Other
CVE-2001-1019 2017-12-19 11:29 2001-09-8 Show GitHub Exploit DB Packet Storm
345394 - xcache_technologies xcache Xcache 2.1 allows remote attackers to determine the absolute path of web server documents by requesting a URL that is not cached by Xcache, which returns the full pathname in the Content-PageName hea… NVD-CWE-Other
CVE-2001-1023 2017-12-19 11:29 2001-09-21 Show GitHub Exploit DB Packet Storm
345395 - entrust getaccess login.gas.bat and other CGI scripts in Entrust getAccess allow remote attackers to execute Java programs, and possibly arbitrary commands, by specifying an alternate -classpath argument. NVD-CWE-Other
CVE-2001-1024 2017-12-19 11:29 2001-07-27 Show GitHub Exploit DB Packet Storm
345396 - trend_micro interscan_applettrap Trend Micro InterScan AppletTrap 2.0 does not properly filter URLs when they are modified in certain ways such as (1) using a double slash (//) instead of a single slash, (2) URL-encoded characters, … NVD-CWE-Other
CVE-2001-1026 2017-12-19 11:29 2001-07-9 Show GitHub Exploit DB Packet Storm
345397 - charles_clark meteor_ftpd Directory traversal vulnerability in Meteor FTP 1.0 allows remote attackers to read arbitrary files via (1) a .. (dot dot) in the ls/LIST command, or (2) a ... in the cd/CWD command. NVD-CWE-Other
CVE-2001-1031 2017-12-19 11:29 2001-09-27 Show GitHub Exploit DB Packet Storm
345398 - compaq trucluster
tru64
Compaq TruCluster 1.5 allows remote attackers to cause a denial of service via a port scan from a system that does not have a DNS PTR record, which causes the cluster to enter a "split-brain" state. NVD-CWE-Other
CVE-2001-1033 2017-12-19 11:29 2001-09-25 Show GitHub Exploit DB Packet Storm
345399 - freebsd freebsd Format string vulnerability in Hylafax on FreeBSD allows local users to execute arbitrary code via format specifiers in the -h hostname argument for (1) faxrm or (2) faxalter. NVD-CWE-Other
CVE-2001-1034 2017-12-19 11:29 2001-09-23 Show GitHub Exploit DB Packet Storm
345400 - basilix basilix_webmail Basilix Webmail 0.9.7beta, and possibly other versions, stores *.class and *.inc files under the document root and does not restrict access, which could allows remote attackers to obtain sensitive in… NVD-CWE-Other
CVE-2001-1044 2017-12-19 11:29 2001-01-11 Show GitHub Exploit DB Packet Storm