Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3371 8.8 重要
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows Advanced Rasterization Platform の特権昇格の脆弱性 CWE-190
CWE-681
CVE-2026-26178 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
3372 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft Windows 11 24h2
Microsoft Wind…
Windows カーネルの特権の昇格の脆弱性 CWE-415
二重解放
CVE-2026-26179 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
3373 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows カーネルの特権の昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-26180 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
3374 7.8 重要
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft Windows 11 24h2
Microsoft Wind…
Microsoft Resilient File System の特権昇格の脆弱性 CWE-362
CWE-416
CVE-2026-26181 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
3375 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
WinSock 用 Windows Ancillary Function Driver の特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-26182 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
3376 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows Server 2025
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microso…
リモート アクセス管理サービス/API (RPC サーバー) の特権昇格の脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-26183 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
3377 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows 10 1809
Microsoft Wind…
Windows Projected File System の特権の昇格の脆弱性 CWE-126
バッファオーバーリード
CVE-2026-26184 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
3378 4.4 警告
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows 10 22h2
Microsoft Windows 10 21h2
Microsoft Windows&…
Windows Hello のセキュリティ機能のバイパスの脆弱性 CWE-20
不適切な入力確認
CVE-2026-27906 2026-04-27 11:23 2026-04-14 Show GitHub Exploit DB Packet Storm
3379 7.5 重要
Network
FFmpeg FFmpeg FFmpegにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-30997 2026-04-27 11:23 2026-04-13 Show GitHub Exploit DB Packet Storm
3380 7.5 重要
Network
FFmpeg FFmpeg FFmpegにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-30998 2026-04-27 11:23 2026-04-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348621 - bitweaver bitweaver Cross-site scripting (XSS) vulnerability in login.php in Bitweaver 1.3 allows remote attackers to inject arbitrary web script or HTML via the error parameter. NOTE: the provenance of this informatio… NVD-CWE-Other
CVE-2006-1745 2011-03-8 11:33 2006-04-13 Show GitHub Exploit DB Packet Storm
348622 - hosting_controller hosting_controller Hosting Controller 6.1 stores forum/db/forum.mdb under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as user name and pass… NVD-CWE-Other
CVE-2006-1764 2011-03-8 11:33 2006-04-13 Show GitHub Exploit DB Packet Storm
348623 - ibm websphere_application_server Unspecified vulnerability in IBM WebSphere 5.0.2.10 through 5.0.2.15 and 5.1.1.4 through 5.1.1.9 allows remote attackers to obtain sensitive information via unknown attack vectors, which causes JSP s… NVD-CWE-Other
CVE-2006-1093 2011-03-8 11:32 2006-03-9 Show GitHub Exploit DB Packet Storm
348624 - novell bordermanager Unspecified vulnerability in the HTTP proxy in Novell BorderManager 3.8 and earlier allows remote attackers to cause a denial of service (CPU consumption and ABEND) via unknown attack vectors related… NVD-CWE-Other
CVE-2006-1218 2011-03-8 11:32 2006-03-14 Show GitHub Exploit DB Packet Storm
348625 - amax_information_technologies winmail Unspecified vulnerability in the Webmail module in Winmail before 4.3 has unknown impact and unknown remote attack vectors. NVD-CWE-Other
CVE-2006-1250 2011-03-8 11:32 2006-03-19 Show GitHub Exploit DB Packet Storm
348626 - funkwerk x2300 The Internet Key Exchange implementation in Funkwerk X2300 7.2.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IKE packets, as demonstrated by t… NVD-CWE-Other
CVE-2006-1268 2011-03-8 11:32 2006-03-19 Show GitHub Exploit DB Packet Storm
348627 - symantec ghost_solutions_suite
norton_ghost
The installation of SQLAnywhere in Symantec Ghost 8.0 and 8.2, as used in Symantec Ghost Solutions Suite (SGSS) 1.0, includes a default administrator login account and password, which allows local us… NVD-CWE-Other
CVE-2006-1284 2011-03-8 11:32 2006-03-20 Show GitHub Exploit DB Packet Storm
348628 - symantec ghost_solutions_suite
norton_ghost
SQLAnywhere in Symantec Ghost 8.0 and 8.2, as used in Symantec Ghost Solutions Suite (SGSS) 1.0, gives read and write permissions to all users for database shared memory sections, which allows local … NVD-CWE-Other
CVE-2006-1285 2011-03-8 11:32 2006-03-20 Show GitHub Exploit DB Packet Storm
348629 - symantec ghost_solutions_suite
norton_ghost
Update to Symantec Ghost 8.3 that is shipped as a part of Symantec Ghost Solutions Suite 1.1. NVD-CWE-Other
CVE-2006-1285 2011-03-8 11:32 2006-03-20 Show GitHub Exploit DB Packet Storm
348630 - invision_power_services invision_power_board Cross-site scripting (XSS) vulnerability in Invision Power Board (IPB) 2.0.4 and 2.1.4 before 20060130 allows remote attackers to steal cookies and probably conduct other activities when the victim i… NVD-CWE-Other
CVE-2006-1287 2011-03-8 11:32 2006-03-20 Show GitHub Exploit DB Packet Storm