Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3371 8.8 重要
Network
minerva minerva Agilonhealth (MphRx)のMinervaにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-5779 2026-05-7 10:53 2026-04-28 Show GitHub Exploit DB Packet Storm
3372 8.1 重要
Network
minerva minerva Agilonhealth (MphRx)のMinervaにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-5780 2026-05-7 10:52 2026-04-28 Show GitHub Exploit DB Packet Storm
3373 8.8 重要
Network
Frappe ERPNext FrappeのERPNextにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2023-54345 2026-05-7 10:52 2026-05-5 Show GitHub Exploit DB Packet Storm
3374 7.5 重要
Network
OpenEMR OpenEMR OpenEMRにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2023-54347 2026-05-7 10:52 2026-05-5 Show GitHub Exploit DB Packet Storm
3375 7.2 重要
Network
デル data domain operating system デルのdata domain operating systemにおける認証に関する脆弱性 CWE-287
CWE-noinfo
CVE-2025-46607 2026-05-7 10:52 2026-04-17 Show GitHub Exploit DB Packet Storm
3376 6.6 警告
Network
デル data domain operating system デルのdata domain operating systemにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2025-46641 2026-05-7 10:52 2026-04-17 Show GitHub Exploit DB Packet Storm
3377 8.8 重要
Adjacent
Google Android GoogleのAndroidにおける認証アルゴリズムの不適切な実装に関する脆弱性 CWE-303
認証アルゴリズム上の問題
CVE-2026-0073 2026-05-7 10:52 2026-05-4 Show GitHub Exploit DB Packet Storm
3378 8 重要
Adjacent
SonicWALL SonicOS SonicWALLのSonicOSにおける複数の脆弱性 CWE-1390
CWE-306
CVE-2026-0204 2026-05-7 10:52 2026-04-29 Show GitHub Exploit DB Packet Storm
3379 6.8 警告
Adjacent
SonicWALL SonicOS SonicWALLのSonicOSにおけるパストラバーサルの脆弱性 CWE-35
パストラバーサル
CVE-2026-0205 2026-05-7 10:52 2026-04-29 Show GitHub Exploit DB Packet Storm
3380 4.9 警告
Network
SonicWALL SonicOS SonicWALLのSonicOSにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-0206 2026-05-7 10:52 2026-04-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346851 - vortex_portal vortex_portal PHP remote file include vulnerability in (1) content.php and (2) index.php for Vortex Portal allows remote attackers to execute arbitrary PHP code via a URL in the act parameter. NVD-CWE-Other
CVE-2005-0879 2017-07-11 10:32 2005-05-2 Show GitHub Exploit DB Packet Storm
346852 - vortex_portal vortex_portal content.php in Vortex Portal allows remote attackers to obtain sensitive information via an invalid act parameter, which leaks the full pathname in a PHP error message. NVD-CWE-Other
CVE-2005-0880 2017-07-11 10:32 2005-05-2 Show GitHub Exploit DB Packet Storm
346853 - interspire articlelive Cross-site scripting (XSS) vulnerability in articles.newcomment for Interspire ArticleLive 2005 allows remote attackers to inject arbitrary web script or HTML via the Articleld parameter. NVD-CWE-Other
CVE-2005-0881 2017-07-11 10:32 2005-03-23 Show GitHub Exploit DB Packet Storm
346854 - birdblog birdblog SQL injection vulnerability in admincore.php in BirdBlog before 1.2.0 allows remote attackers to execute arbitrary SQL commands via the (1) userid or (2) userpw parameters. NVD-CWE-Other
CVE-2005-0882 2017-07-11 10:32 2005-05-2 Show GitHub Exploit DB Packet Storm
346855 - digitalhive digitalhive Multiple cross-site scripting (XSS) vulnerabilities in base.php for DigitalHive 2.0 allow remote attackers to inject arbitrary web script or HTML via (1) the mt parameter to the membres.php page or (… NVD-CWE-Other
CVE-2005-0883 2017-07-11 10:32 2005-03-23 Show GitHub Exploit DB Packet Storm
346856 - digitalhive digitalhive DigitalHive 2.0 allows remote attackers to re-install the product by directly accessing the install script. NVD-CWE-Other
CVE-2005-0884 2017-07-11 10:32 2005-05-2 Show GitHub Exploit DB Packet Storm
346857 - michael_dean double_choco_latte Eval injection vulnerability in Double Choco Latte before 0.9.4.3 allows remote attackers to execute arbitrary PHP code via the menuAction variable in (1) functions.inc.php or (2) main.php, which cau… NVD-CWE-Other
CVE-2005-0887 2017-07-11 10:32 2005-03-24 Show GitHub Exploit DB Packet Storm
346858 - michael_dean double_choco_latte Multiple cross-site scripting (XSS) vulnerabilities in functions.inc.php for Double Choco Latte 0.9.4.3 allow remote attackers to inject arbitrary web script or HTML via the (1) class or (2) method n… NVD-CWE-Other
CVE-2005-0888 2017-07-11 10:32 2005-05-2 Show GitHub Exploit DB Packet Storm
346859 - microsoft windows_xp Remote Desktop in Windows XP SP1 does not verify the "Force shutdown from a remote system" setting, which allows remote attackers to shut down the system by executing TSShutdn.exe. CWE-20
 Improper Input Validation 
CVE-2005-0904 2017-07-11 10:32 2005-05-2 Show GitHub Exploit DB Packet Storm
346860 - smarty smarty Unknown vulnerability in the regex_replace modifier (modifier.regex_replace.php) in Smarty before 2.6.8 allows attackers to execute arbitrary PHP code. NVD-CWE-Other
CVE-2005-0913 2017-07-11 10:32 2005-05-2 Show GitHub Exploit DB Packet Storm