Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3791 9.8 緊急
Network
Open Knowledge Foundation CKAN Open Knowledge FoundationのCKANにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-42031 2026-05-18 11:30 2026-05-13 Show GitHub Exploit DB Packet Storm
3792 9.1 緊急
Network
Open Knowledge Foundation CKAN Open Knowledge FoundationのCKANにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-42032 2026-05-18 11:30 2026-05-13 Show GitHub Exploit DB Packet Storm
3793 4.9 警告
Network
argoproj Argo Workflows Argo Project AuthorsのArgo Workflowsにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2026-42295 2026-05-18 11:30 2026-05-9 Show GitHub Exploit DB Packet Storm
3794 8.1 重要
Network
argoproj Argo Workflows Argo Project AuthorsのArgo Workflowsにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-42296 2026-05-18 11:30 2026-05-9 Show GitHub Exploit DB Packet Storm
3795 8.3 重要
Network
argoproj Argo Workflows Argo Project AuthorsのArgo Workflowsにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-42297 2026-05-18 11:30 2026-05-9 Show GitHub Exploit DB Packet Storm
3796 6.8 警告
Network
pyLoad-ng project pyLoad-ng pyLoad-ng projectのpyLoad-ngにおける複数の脆弱性 CWE-295
CWE-306
CWE-863
CVE-2026-42312 2026-05-18 11:30 2026-05-11 Show GitHub Exploit DB Packet Storm
3797 8.3 重要
Network
pyLoad-ng project pyLoad-ng pyLoad-ng projectのpyLoad-ngにおける複数の脆弱性 CWE-441
CWE-863
CWE-918
CVE-2026-42313 2026-05-18 11:30 2026-05-11 Show GitHub Exploit DB Packet Storm
3798 6.5 警告
Network
pyLoad-ng project pyLoad-ng pyLoad-ng projectのpyLoad-ngにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-42314 2026-05-18 11:30 2026-05-11 Show GitHub Exploit DB Packet Storm
3799 6.5 警告
Network
pyLoad-ng project pyLoad-ng pyLoad-ng projectのpyLoad-ngにおける複数の脆弱性 CWE-22
CWE-36
CVE-2026-42315 2026-05-18 11:30 2026-05-11 Show GitHub Exploit DB Packet Storm
3800 7.5 重要
Network
mongoosejs mongoose mongoosejsのmongooseにおけるインジェクションに関する脆弱性 CWE-74
インジェクション
CVE-2026-42334 2026-05-18 11:30 2026-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346011 - squid squid The NTLM component in Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (crash) via a malformed NTLM type 3 message that triggers a NULL dereference. NVD-CWE-Other
CVE-2005-0097 2017-10-11 10:29 2005-01-11 Show GitHub Exploit DB Packet Storm
346012 - squirrelmail squirrelmail PHP remote file inclusion vulnerability in webmail.php in SquirrelMail before 1.4.4 allows remote attackers to execute arbitrary PHP code by modifying a URL parameter to reference a URL on a remote w… CWE-94
Code Injection
CVE-2005-0103 2017-10-11 10:29 2005-01-24 Show GitHub Exploit DB Packet Storm
346013 - squirrelmail squirrelmail Cross-site scripting (XSS) vulnerability in webmail.php in SquirrelMail before 1.4.4 allows remote attackers to inject arbitrary web script or HTML via certain integer variables. NVD-CWE-Other
CVE-2005-0104 2017-10-11 10:29 2005-01-29 Show GitHub Exploit DB Packet Storm
346014 - linux linux_kernel Linux kernel 2.6 on Itanium (ia64) architectures allows local users to cause a denial of service via a "missing Itanium syscall table entry." NVD-CWE-Other
CVE-2005-0137 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
346015 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to load local files via links "with a custom getter and toString method" that are middle-clicked by the user to be opened in a new t… NVD-CWE-Other
CVE-2005-0141 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
346016 - mozilla firefox
mozilla
thunderbird
Firefox 0.9, Thunderbird 0.6 and other versions before 0.9, and Mozilla 1.7 before 1.7.5 save temporary files with world-readable permissions, which allows local users to read certain web content or … NVD-CWE-Other
CVE-2005-0142 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
346017 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 display the SSL lock icon when an insecure page loads a binary file from a trusted site, which could facilitate phishing attacks. NVD-CWE-Other
CVE-2005-0143 2017-10-11 10:29 2005-03-23 Show GitHub Exploit DB Packet Storm
346018 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 display the secure site lock icon when a view-source: URL references a secure SSL site while an insecure page is being loaded, which could facilitate phish… NVD-CWE-Other
CVE-2005-0144 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
346019 - mozilla firefox Firefox before 1.0 does not properly distinguish between user-generated and synthetic click events, which allows remote attackers to use Javascript to bypass the file download prompt when the user us… NVD-CWE-Other
CVE-2005-0145 2017-10-11 10:29 2005-01-24 Show GitHub Exploit DB Packet Storm
346020 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to obtain sensitive data from the clipboard via Javascript that generates a middle-click event on systems for which a middle-click p… NVD-CWE-Other
CVE-2005-0146 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm