Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3231 7.5 重要
Network
Python Software Foundation urllib3 Python Software Foundationのurllib3における高圧縮データの処理 (データ増幅)に関する脆弱性 CWE-409
高圧縮データの不適切な処理 (データ増幅)
CVE-2026-44432 2026-05-18 12:12 2026-05-13 Show GitHub Exploit DB Packet Storm
3232 5.7 警告
Adjacent
Frappe ERPNext FrappeのERPNextにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-44440 2026-05-18 12:12 2026-05-13 Show GitHub Exploit DB Packet Storm
3233 4.3 警告
Network
Frappe ERPNext FrappeのERPNextにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-44441 2026-05-18 12:12 2026-05-13 Show GitHub Exploit DB Packet Storm
3234 9.9 緊急
Network
Frappe ERPNext FrappeのERPNextにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-44442 2026-05-18 12:12 2026-05-13 Show GitHub Exploit DB Packet Storm
3235 6.5 警告
Network
Frappe ERPNext FrappeのERPNextにおけるXML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2026-44445 2026-05-18 12:11 2026-05-13 Show GitHub Exploit DB Packet Storm
3236 7.5 重要
Network
Frappe ERPNext FrappeのERPNextにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-44446 2026-05-18 12:11 2026-05-13 Show GitHub Exploit DB Packet Storm
3237 7.5 重要
Network
Frappe ERPNext FrappeのERPNextにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-44447 2026-05-18 12:11 2026-05-13 Show GitHub Exploit DB Packet Storm
3238 5.4 警告
Network
Vercel, Inc. (旧 Zeit, Inc.) Next.js Vercel, Inc. (旧 Zeit, Inc.)のNext.jsにおける解釈の競合に関する脆弱性 CWE-436
解釈の競合
CVE-2026-44576 2026-05-18 12:11 2026-05-13 Show GitHub Exploit DB Packet Storm
3239 8.6 重要
Network
Vercel, Inc. (旧 Zeit, Inc.) Next.js Vercel, Inc. (旧 Zeit, Inc.)のNext.jsにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-44578 2026-05-18 12:11 2026-05-13 Show GitHub Exploit DB Packet Storm
3240 7.5 重要
Network
Vercel, Inc. (旧 Zeit, Inc.) Next.js Vercel, Inc. (旧 Zeit, Inc.)のNext.jsにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-44579 2026-05-18 12:11 2026-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345761 - linux linux_kernel Integer signedness error in the decode_fh function of nfs3xdr.c in Linux kernel before 2.4.21 allows remote attackers to cause a denial of service (kernel panic) via a negative size value within XDR … NVD-CWE-Other
CVE-2003-0619 2017-10-11 10:29 2003-08-27 Show GitHub Exploit DB Packet Storm
345762 - kde kde KDM in KDE 3.1.3 and earlier does not verify whether the pam_setcred function call succeeds, which may allow attackers to gain root privileges by triggering error conditions within PAM modules, as de… NVD-CWE-Other
CVE-2003-0690 2017-10-11 10:29 2003-10-6 Show GitHub Exploit DB Packet Storm
345763 - kde kde KDM in KDE 3.1.3 and earlier uses a weak session cookie generation algorithm that does not provide 128 bits of entropy, which allows attackers to guess session cookies via brute force methods and gai… NVD-CWE-Other
CVE-2003-0692 2017-10-11 10:29 2003-10-6 Show GitHub Exploit DB Packet Storm
345764 - redhat enterprise_linux
linux_advanced_workstation
The C-Media PCI sound driver in Linux before 2.4.21 does not use the get_user function to access userspace, which crosses security boundaries and may facilitate the exploitation of vulnerabilities, a… NVD-CWE-Other
CVE-2003-0699 2017-10-11 10:29 2003-08-27 Show GitHub Exploit DB Packet Storm
345765 - redhat kernel The C-Media PCI sound driver in Linux before 2.4.22 does not use the get_user function to access userspace in certain conditions, which crosses security boundaries and may facilitate the exploitation… NVD-CWE-Other
CVE-2003-0700 2017-10-11 10:29 2004-02-17 Show GitHub Exploit DB Packet Storm
345766 - sun solaris The default installation of sadmind on Solaris uses weak authentication (AUTH_SYS), which allows local and remote attackers to spoof Solstice AdminSuite clients and gain root privileges via a certain… NVD-CWE-Other
CVE-2003-0722 2017-10-11 10:29 2003-09-22 Show GitHub Exploit DB Packet Storm
345767 - slocate slocate Heap-based buffer overflow in main.c of slocate 2.6, and possibly other versions, may allow local users to gain privileges via a modified slocate database that causes a negative "pathlen" value to be… NVD-CWE-Other
CVE-2003-0848 2017-10-11 10:29 2003-11-17 Show GitHub Exploit DB Packet Storm
345768 - gnu
washington_university
fileutils
wu-ftpd
ls in the fileutils or coreutils packages allows local users to consume a large amount of memory via a large -w value, which can be remotely exploited via applications that use ls, such as wu-ftpd. NVD-CWE-Other
CVE-2003-0854 2017-10-11 10:29 2003-11-17 Show GitHub Exploit DB Packet Storm
345769 - stephen_hemminger iproute iproute 2.4.7 and earlier allows local users to cause a denial of service via spoofed messages as other users to the kernel netlink interface. NVD-CWE-Other
CVE-2003-0856 2017-10-11 10:29 2003-12-15 Show GitHub Exploit DB Packet Storm
345770 - gnu
quagga
zebra
quagga_routing_software_suite
Zebra 0.93b and earlier, and quagga before 0.95, allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface. CWE-399
 Resource Management Errors
CVE-2003-0858 2017-10-11 10:29 2003-12-15 Show GitHub Exploit DB Packet Storm