Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3061 8 重要
Network
Jenkins プロジェクト HTML Publisher Plugin JenkinsのHTML Publisher Pluginにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-42524 2026-05-7 10:51 2026-04-29 Show GitHub Exploit DB Packet Storm
3062 4.3 警告
Network
Jenkins プロジェクト Azure AD JenkinsのAzure ADにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-42525 2026-05-7 10:51 2026-04-29 Show GitHub Exploit DB Packet Storm
3063 8.8 重要
Adjacent
TP-LINK Technologies TL-WR841N ファームウェア TP-LINK TechnologiesのTL-WR841N ファームウェアにおけるデフォルトの暗号鍵の使用に関する脆弱性 CWE-1394
デフォルトの暗号鍵の使用
CVE-2026-5039 2026-05-7 10:51 2026-04-23 Show GitHub Exploit DB Packet Storm
3064 7.3 重要
Network
GNU Project GNU C Library GNU ProjectのGNU C Libraryにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-5435 2026-05-7 10:51 2026-04-28 Show GitHub Exploit DB Packet Storm
3065 7.5 重要
Network
Progress Software Corporation Telerik UI for ASP.NET AJAX Progress Software CorporationのTelerik UI for ASP.NET AJAXにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-6022 2026-05-7 10:51 2026-04-22 Show GitHub Exploit DB Packet Storm
3066 9.8 緊急
Network
Progress Software Corporation Telerik UI for ASP.NET AJAX Progress Software CorporationのTelerik UI for ASP.NET AJAXにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-6023 2026-05-7 10:51 2026-04-22 Show GitHub Exploit DB Packet Storm
3067 2.7
Network
Tanium Tanium Server TaniumのTanium Serverにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2026-6408 2026-05-7 10:51 2026-04-22 Show GitHub Exploit DB Packet Storm
3068 5.5 警告
Local
Wireshark Wireshark WiresharkにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-6525 2026-05-7 10:51 2026-05-2 Show GitHub Exploit DB Packet Storm
3069 7.5 重要
Network
TYPO3 Association TYPO3 TYPO3 AssociationのTYPO3における重要な情報の平文保存に関する脆弱性 CWE-312
重要な情報の平文保存
CVE-2026-6553 2026-05-7 10:51 2026-04-21 Show GitHub Exploit DB Packet Storm
3070 7.5 重要
Network
xmlsoft.org
レッドハット
Red Hat Hardened Images
Red Hat OpenShift Container Platform
libxml2
Red Hat Enterprise Linux
JBoss Core Services
レッドハット等の複数ベンダの製品における型の取り違えに関する脆弱性 CWE-843
型の取り違え
CVE-2026-6732 2026-05-7 10:50 2026-04-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346901 - william_hoggarth pgn2web Buffer overflow in the process_moves function in pgn2web.c for pgn2web 0.3 allows remote attackers to execute arbitrary code via a crafted PGN file. NVD-CWE-Other
CVE-2004-1290 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346902 - amir_malik qwik_smtpd Buffer overflow in qwik-smtpd allows remote attackers to use the server as an SMTP spam relay via a long HELO command, which overwrites the adjacent localIP data buffer. NVD-CWE-Other
CVE-2004-1291 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346903 - michael_kohn ringtonetools Buffer overflow in the parse_emelody function in parse_emelody.c for ringtonetools 2.22 allows remote attackers to execute arbitrary code via a crafted eMelody file. NVD-CWE-Other
CVE-2004-1292 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346904 - rtf2latex2e rtf2latex2e Buffer overflow in the ReadFontTbl function in reader.c for rtf2latex2e 1.0fc2 allows remote attackers to execute arbitrary code via a crafted RTF file. NVD-CWE-Other
CVE-2004-1293 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346905 - luke_mewburn tnftp The mget function in cmds.c for tnftp 20030825 allows remote FTP servers to overwrite arbitrary files via FTP responses containing file names with / (slash) characters. NVD-CWE-Other
CVE-2004-1294 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346906 - uml-utilities uml-utilities The slip_down function in slip.c for the uml_net program in uml-utilities 20030903, when uml_net is installed setuid root, does not verify whether the calling user has sufficient permission to disabl… NVD-CWE-Other
CVE-2004-1295 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346907 - - - The (1) eqn2graph and (2) pic2graph scripts in groff 1.18.1 allow local users to overwrite arbitrary files via a symlink attack on temporary files. NVD-CWE-Other
CVE-2004-1296 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
346908 - zack_smith unrtf Buffer overflow in the process_font_table function in convert.c for unrtf 0.19.3 allows remote attackers to execute arbitrary code via a crafted RTF file. NVD-CWE-Other
CVE-2004-1297 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346909 - michael_kohn vb2c Buffer overflow in the parse function in vb2c.c for vb2c 0.02 allows remote attackers to execute arbitrary code via a crafted FRM file. NVD-CWE-Other
CVE-2004-1298 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346910 - vilistextum vilistextum Buffer overflow in the get_attr function in html.c for vilistextum 2.6.6 allows remote attackers to execute arbitrary code via a crafted web page. NVD-CWE-Other
CVE-2004-1299 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm