Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3551 7.8 重要
Local
Amazon.com, Inc. Kiro IDE Amazon.com, Inc.のKiro IDEにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-0830 2026-04-30 12:08 2026-01-9 Show GitHub Exploit DB Packet Storm
3552 5.4 警告
Network
SenseLive X3500 Firmware SenseLiveのX3500 Firmwareにおけるセッション期限に関する脆弱性 CWE-613
不適切なセッション期限
CVE-2026-25720 2026-04-30 12:08 2026-04-24 Show GitHub Exploit DB Packet Storm
3553 9.8 緊急
Network
huggingface LeRobot huggingfaceのLeRobotにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-25874 2026-04-30 12:08 2026-04-23 Show GitHub Exploit DB Packet Storm
3554 8.1 重要
Network
SenseLive X3500 Firmware SenseLiveのX3500 Firmwareにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-27841 2026-04-30 12:08 2026-04-24 Show GitHub Exploit DB Packet Storm
3555 9.1 緊急
Network
SenseLive X3500 Firmware SenseLiveのX3500 Firmwareにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-27843 2026-04-30 12:08 2026-04-24 Show GitHub Exploit DB Packet Storm
3556 7.5 重要
Network
Navigation Data Standard (NDS) Zserio Navigation Data Standard (NDS)のZserioにおける過剰なサイズ値のメモリ割り当てに関する脆弱性 CWE-789
過剰なサイズ値のメモリ割り当て
CVE-2026-33524 2026-04-30 12:08 2026-04-24 Show GitHub Exploit DB Packet Storm
3557 7.5 重要
Network
Navigation Data Standard (NDS) Zserio Navigation Data Standard (NDS)のZserioにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-33666 2026-04-30 12:08 2026-04-24 Show GitHub Exploit DB Packet Storm
3558 7.5 重要
Network
SenseLive X3500 Firmware SenseLiveのX3500 Firmwareにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35064 2026-04-30 12:08 2026-04-24 Show GitHub Exploit DB Packet Storm
3559 7.1 重要
Local
Gwenhael Goavec-Merou (trabucayre) openFPGALoader Gwenhael Goavec-Merou (trabucayre)のopenFPGALoaderにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-35170 2026-04-30 12:08 2026-04-6 Show GitHub Exploit DB Packet Storm
3560 7.1 重要
Local
Gwenhael Goavec-Merou (trabucayre) openFPGALoader Gwenhael Goavec-Merou (trabucayre)のopenFPGALoaderにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-35176 2026-04-30 12:08 2026-04-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
350951 - freebsd freebsd Buffer overflow in FreeBSD gdc program. NVD-CWE-Other
CVE-1999-0855 2008-09-9 21:36 1999-12-1 Show GitHub Exploit DB Packet Storm
350952 - freebsd freebsd FreeBSD gdc program allows local users to modify files via a symlink attack. NVD-CWE-Other
CVE-1999-0857 2008-09-9 21:36 1999-12-1 Show GitHub Exploit DB Packet Storm
350953 - paul_vixie
caldera
debian
redhat
vixie_cron
openlinux
debian_linux
linux
Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment variable in a crontab file. NVD-CWE-Other
CVE-1999-0872 2008-09-9 21:36 1999-08-25 Show GitHub Exploit DB Packet Storm
350954 - sky_communications skyfull Buffer overflow in Skyfull mail server via MAIL FROM command. NVD-CWE-Other
CVE-1999-0873 2008-09-9 21:36 1999-10-30 Show GitHub Exploit DB Packet Storm
350955 - beroftpd
washington_university
beroftpd
wu-ftpd
Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via MAPPING_CHDIR. NVD-CWE-Other
CVE-1999-0878 2008-09-9 21:36 1999-08-22 Show GitHub Exploit DB Packet Storm
350956 - blueface falcon_web_server Falcon web server allows remote attackers to read arbitrary files via a .. (dot dot) attack. NVD-CWE-Other
CVE-1999-0881 2008-09-9 21:36 1999-10-26 Show GitHub Exploit DB Packet Storm
350957 - floosietek ftgate FTGate web interface server allows remote attackers to read files via a .. (dot dot) attack. NVD-CWE-Other
CVE-1999-0887 2008-09-9 21:36 1999-11-4 Show GitHub Exploit DB Packet Storm
350958 - oracle database_server
oracle8i
dbsnmp in Oracle Intelligent Agent allows local users to gain privileges by setting the ORACLE_HOME environmental variable, which dbsnmp uses to find the nmiconf.tcl script. NVD-CWE-Other
CVE-1999-0888 2008-09-9 21:36 1999-08-16 Show GitHub Exploit DB Packet Storm
350959 - cisco 675_router Cisco 675 routers running CBOS allow remote attackers to establish telnet sessions if an exec or superuser password has not been set. NVD-CWE-Other
CVE-1999-0889 2008-09-9 21:36 1999-07-1 Show GitHub Exploit DB Packet Storm
350960 - ihtml_merchant ihtml_merchant iHTML Merchant allows remote attackers to obtain sensitive information or execute commands via a code parsing error. NVD-CWE-Other
CVE-1999-0890 2008-09-9 21:36 1999-09-16 Show GitHub Exploit DB Packet Storm