Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2911 7.2 重要
Network
Sanjay Sharma (sanjay1313) Visitor-Management-System Sanjay Sharma (sanjay1313)のVisitor-Management-Systemにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2026-37748 2026-04-24 11:37 2026-04-21 Show GitHub Exploit DB Packet Storm
2912 7.5 重要
Network
Little CMS Little CMS Little CMSにおける複数の脆弱性 CWE-190
CWE-696
CVE-2026-41254 2026-04-24 11:36 2026-04-18 Show GitHub Exploit DB Packet Storm
2913 5.3 警告
Network
MetaCPAN BEROV Ado::Sessions MetaCPAN BEROVのAdo::Sessionsにおける複数の脆弱性 CWE-338
CWE-340
CVE-2026-5083 2026-04-24 11:36 2026-04-8 Show GitHub Exploit DB Packet Storm
2914 9.1 緊急
Network
MCRAWFOR Solstice::Session MCRAWFORのSolstice::Sessionにおける複数の脆弱性 CWE-338
CWE-340
CVE-2026-5085 2026-04-24 11:36 2026-04-13 Show GitHub Exploit DB Packet Storm
2915 10 緊急
Network
NWCLARK (Nicholas Clark) Storable NWCLARK (Nicholas Clark)のStorableにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2017-20230 2026-04-24 11:36 2026-04-21 Show GitHub Exploit DB Packet Storm
2916 9.8 緊急
Network
ProSoft Technology ICX35-HWC Firmware ProSoft TechnologyのICX35-HWC Firmwareにおける認証に関する脆弱性 CWE-287
CWE-noinfo
CVE-2017-20235 2026-04-24 11:36 2026-04-3 Show GitHub Exploit DB Packet Storm
2917 9.8 緊急
Network
ProSoft Technology ICX35-HWC Firmware ProSoft TechnologyのICX35-HWC FirmwareにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2017-20236 2026-04-24 11:36 2026-04-3 Show GitHub Exploit DB Packet Storm
2918 4.9 警告
Network
Fortra GoAnywhere Agents
GoAnywhere Managed File Transfer
FortraのGoAnywhere Agents等の複数製品における暗号強度に関する脆弱性 CWE-326
不適切な暗号強度
CVE-2025-1241 2026-04-24 11:36 2026-04-21 Show GitHub Exploit DB Packet Storm
2919 7.3 重要
Network
Fortra GoAnywhere Managed File Transfer FortraのGoAnywhere Managed File Transferにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2025-14362 2026-04-24 11:36 2026-04-21 Show GitHub Exploit DB Packet Storm
2920 8.1 重要
Network
Gardyn Gardin API GardynのGardin APIにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-25197 2026-04-24 11:36 2026-04-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349231 - caldera
debian
netbsd
redhat
suse
openlinux
debian_linux
netbsd
linux
suse_linux
XFree86 xfs command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service. NVD-CWE-Other
CVE-1999-0434 2008-09-9 21:34 1999-03-30 Show GitHub Exploit DB Packet Storm
349232 - hp desms
hp-ux
Domain Enterprise Server Management System (DESMS) in HP-UX allows local users to gain privileges. NVD-CWE-Other
CVE-1999-0436 2008-09-9 21:34 1999-03-1 Show GitHub Exploit DB Packet Storm
349233 - qbik wingate Remote attackers can perform a denial of service in WinGate machines using a buffer overflow in the Winsock Redirector Service. NVD-CWE-Other
CVE-1999-0441 2008-09-9 21:34 1999-02-22 Show GitHub Exploit DB Packet Storm
349234 - bmc patrol_agent Patrol management software allows a remote attacker to conduct a replay attack to steal the administrator password. NVD-CWE-Other
CVE-1999-0443 2008-09-9 21:34 1999-04-1 Show GitHub Exploit DB Packet Storm
349235 - cisco ios In Cisco routers under some versions of IOS 12.0 running NAT, some packets may not be filtered by input access list filters. NVD-CWE-Other
CVE-1999-0445 2008-09-9 21:34 1999-04-1 Show GitHub Exploit DB Packet Storm
349236 - netbsd netbsd Local users can perform a denial of service in NetBSD 1.3.3 and earlier versions by creating an unusual symbolic link with the ln command, triggering a bug in VFS. NVD-CWE-Other
CVE-1999-0446 2008-09-9 21:34 1999-04-12 Show GitHub Exploit DB Packet Storm
349237 - microsoft internet_information_server The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct request to the (1) advsearch.asp, (2) query.asp, or (3) search.asp scripts. NVD-CWE-Other
CVE-1999-0449 2008-09-9 21:34 1999-01-26 Show GitHub Exploit DB Packet Storm
349238 - allaire coldfusion_server The Expression Evaluator sample application in ColdFusion allows remote attackers to read or delete files on the server via exprcalc.cfm, which does not restrict access to the server properly. NVD-CWE-Other
CVE-1999-0455 2008-09-9 21:34 1999-12-25 Show GitHub Exploit DB Packet Storm
349239 - debian debian_linux Linux ftpwatch program allows local users to gain root privileges. NVD-CWE-Other
CVE-1999-0457 2008-09-9 21:34 1999-01-17 Show GitHub Exploit DB Packet Storm
349240 - l0pht l0phtcrack L0phtcrack 2.5 used temporary files in the system TEMP directory which could contain password information. NVD-CWE-Other
CVE-1999-0458 2008-09-9 21:34 1999-01-6 Show GitHub Exploit DB Packet Storm