Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
21 5.3 警告
Network
benoitc hackney benoitcのhackneyにおけるCRLF インジェクションの脆弱性 New CWE-93
CRLF インジェクション
CVE-2026-47069 2026-05-29 11:19 2026-05-25 Show GitHub Exploit DB Packet Storm
22 6.1 警告
Network
benoitc hackney benoitcのhackneyにおけるオープンリダイレクトの脆弱性 New CWE-601
オープンリダイレクト
CVE-2026-47070 2026-05-29 11:19 2026-05-25 Show GitHub Exploit DB Packet Storm
23 7.5 重要
Network
benoitc hackney benoitcのhackneyにおけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-47071 2026-05-29 11:19 2026-05-25 Show GitHub Exploit DB Packet Storm
24 7.5 重要
Network
benoitc hackney benoitcのhackneyにおけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-47073 2026-05-29 11:19 2026-05-25 Show GitHub Exploit DB Packet Storm
25 6.5 警告
Local
benoitc hackney benoitcのhackneyにおける複数の脆弱性 New CWE-436
CWE-918
CVE-2026-47076 2026-05-29 11:19 2026-05-25 Show GitHub Exploit DB Packet Storm
26 7.5 重要
Network
benoitc hackney benoitcのhackneyにおけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-47077 2026-05-29 11:19 2026-05-25 Show GitHub Exploit DB Packet Storm
27 7.5 重要
Network
Schneider Electric EcoStruxure Machine Expert - HVAC Schneider Electric のEcoStruxure Machine Expert - HVACにおける重要な情報の平文保存に関する脆弱性 New CWE-312
重要な情報の平文保存
CVE-2026-6332 2026-05-29 11:19 2026-05-14 Show GitHub Exploit DB Packet Storm
28 2.7
Network
GTranslate Inc. Gtranslate GTranslate Inc.のGtranslateにおける不変と仮定されるデータの変更に関する脆弱性 New CWE-471
不変と仮定されるデータの変更
CVE-2026-8492 2026-05-29 11:19 2026-05-19 Show GitHub Exploit DB Packet Storm
29 5.4 警告
Network
Colorbox Inline Project Colorbox Inline Colorbox Inline ProjectのColorbox Inlineにおけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-8493 2026-05-29 11:19 2026-05-19 Show GitHub Exploit DB Packet Storm
30 9.8 緊急
Network
Date iCal Project Date iCal Date iCal ProjectのDate iCalにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-8495 2026-05-29 11:19 2026-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345481 - andromeda_software andromeda Cross-site scripting (XSS) vulnerability in andromeda.php in Andromeda 1.9.3.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the s parameter. NOTE: the provenance of… NVD-CWE-Other
CVE-2006-0142 2017-07-20 10:29 2006-01-10 Show GitHub Exploit DB Packet Storm
345482 - netsarang xlpd NetSarang Xlpd 2.1 allows remote attackers to cause a denial of service (crash) via a large number of connections from the same IP address. NVD-CWE-Other
CVE-2006-0148 2017-07-20 10:29 2006-01-10 Show GitHub Exploit DB Packet Storm
345483 - phpchamber phpchamber Cross-site scripting (XSS) in search_result.php in phpChamber 1.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the needle parameter. NOTE: the provenance of this in… NVD-CWE-Other
CVE-2006-0152 2017-07-20 10:29 2006-01-10 Show GitHub Exploit DB Packet Storm
345484 - javier_suarez_sanz foro_domus SQL injection vulnerability in escribir.php in Foro Domus 2.10 allows remote attackers to execute arbitrary SQL commands via the email parameter. NOTE: the provenance of this information is unknown,… CWE-89
SQL Injection
CVE-2006-0159 2017-07-20 10:29 2006-01-10 Show GitHub Exploit DB Packet Storm
345485 - venom_board venom_board SQL injection vulnerability in add_post.php3 in Venom Board 1.22 allows remote attackers to execute arbitrary SQL commands via the (1) parent, (2) root, and (3) topic_id parameters to post.php3. CWE-89
SQL Injection
CVE-2006-0160 2017-07-20 10:29 2006-01-10 Show GitHub Exploit DB Packet Storm
345486 - clam_anti-virus clamav Heap-based buffer overflow in libclamav/upx.c in Clam Antivirus (ClamAV) before 0.88 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted UPX f… NVD-CWE-Other
CVE-2006-0162 2017-07-20 10:29 2006-01-11 Show GitHub Exploit DB Packet Storm
345487 - francisco_burzi php-nuke_ev SQL injection vulnerability in the search module (modules/Search/index.php) of PHPNuke EV 7.7 -R1 allows remote attackers to execute arbitrary SQL commands via the query parameter, which is used by t… NVD-CWE-Other
CVE-2006-0163 2017-07-20 10:29 2006-01-12 Show GitHub Exploit DB Packet Storm
345488 - woah-projekt phgstats phgstats.inc.php in phgstats before 0.5.1, if register_globals is enabled, allows remote attackers to include arbitrary files and execute arbitrary PHP code by modifying the PHGDIR variable. NVD-CWE-Other
CVE-2006-0164 2017-07-20 10:29 2006-01-12 Show GitHub Exploit DB Packet Storm
345489 - plain_black webgui Cross-site scripting (XSS) vulnerability in the DataForm Entries functionality in Plain Black WebGUI before 6.8.4 (gamma) allows remote attackers to inject arbitrary Javascript via the (1) url and (2… NVD-CWE-Other
CVE-2006-0165 2017-07-20 10:29 2006-01-12 Show GitHub Exploit DB Packet Storm
345490 - symantec norton_system_works Symantec Norton SystemWorks and SystemWorks Premier 2005 and 2006 stores temporary copies of files in the Norton Protected Recycle Bin NProtect directory, which is hidden from the FindFirst and FindN… NVD-CWE-Other
CVE-2006-0166 2017-07-20 10:29 2006-01-12 Show GitHub Exploit DB Packet Storm