Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 22, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
31 7.8 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows Server 2016
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft …
セキュア ブートのセキュリティ機能のバイパスの脆弱性 New CWE-358
不適切に実装されたセキュリティチェック
CVE-2026-49783 2026-07-22 10:19 2026-07-14 Show GitHub Exploit DB Packet Storm
32 7 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows Server 2016
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft …
Microsoft Windows App Store の特権昇格の脆弱性 New CWE-362
CWE-416
CVE-2026-49784 2026-07-22 10:19 2026-07-14 Show GitHub Exploit DB Packet Storm
33 7.5 重要
Network
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows Server 2016
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft …
HTTP.sys のサービス拒否の脆弱性 New CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-49787 2026-07-22 10:18 2026-07-14 Show GitHub Exploit DB Packet Storm
34 7.5 重要
Network
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows Server 2016
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft …
HTTP/2 のサービス拒否の脆弱性 New CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-49788 2026-07-22 10:18 2026-07-14 Show GitHub Exploit DB Packet Storm
35 7.8 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows Server 2016
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft …
Windows NTFS の特権の昇格の脆弱性 New CWE-121
スタックオーバーフロー
CVE-2026-49789 2026-07-22 10:18 2026-07-14 Show GitHub Exploit DB Packet Storm
36 7.8 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows Server 2016
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft …
Windows ユニバーサル ディスク フォーマット ファイル システム ドライバー (UDFS) の特権昇格の脆弱性 New CWE-122
CWE-191
CVE-2026-49790 2026-07-22 10:18 2026-07-14 Show GitHub Exploit DB Packet Storm
37 7.8 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows Server 2016
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft …
Windows ルーティングとリモート アクセス サービス (RRAS) の特権昇格の脆弱性 New CWE-59
リンク解釈の問題
CVE-2026-49791 2026-07-22 10:18 2026-07-14 Show GitHub Exploit DB Packet Storm
38 7.8 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows Server 2016
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft …
Windows Resilient File System (ReFS) のリモートでコードが実行される脆弱性 New CWE-197
数値打ち切り誤差
CVE-2026-49792 2026-07-22 10:18 2026-07-14 Show GitHub Exploit DB Packet Storm
39 7.8 重要
Local
マイクロソフト Microsoft Windows 11 24h2
Microsoft Windows Server 2016
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Microsoft …
Windows Resilient File System (ReFS) のリモートでコードが実行される脆弱性 New CWE-122
ヒープオーバーフロー
CVE-2026-49793 2026-07-22 10:18 2026-07-14 Show GitHub Exploit DB Packet Storm
40 5.5 警告
Network
Squid-cache.org Squid Squid-cache.orgのSquidにおける複数の脆弱性 New CWE-122
CWE-20
CVE-2026-50012 2026-07-22 10:18 2026-07-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 22, 2026, 4:02 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
368021 - netscape
sun
enterprise_server
iplanet_web_server
one_application_server
one_web_server
Directory traversal vulnerability in search engine for iPlanet web server 6.0 SP2 and 4.1 SP9, and Netscape Enterprise Server 3.6, when running on Windows platforms, allows remote attackers to read a… NVD-CWE-Other
CVE-2002-1042 2008-09-6 05:29 2002-10-4 Show GitHub Exploit DB Packet Storm
368022 - ultrafunk popcorn Ultrafunk Popcorn 1.20 allows remote attackers to cause a denial of service (crash) via a malformed Subject ("\t\t"). NVD-CWE-Other
CVE-2002-1043 2008-09-6 05:29 2002-10-4 Show GitHub Exploit DB Packet Storm
368023 - ultrafunk popcorn Buffer overflow in Ultrafunk Popcorn 1.20 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long Subject field. NVD-CWE-Other
CVE-2002-1044 2008-09-6 05:29 2002-10-4 Show GitHub Exploit DB Packet Storm
368024 - ultrafunk popcorn Ultrafunk Popcorn 1.20 allows remote attackers to cause a denial of service (crash) via a malformed Date field that is converted into a year greater than 2037. NVD-CWE-Other
CVE-2002-1045 2008-09-6 05:29 2002-10-4 Show GitHub Exploit DB Packet Storm
368025 - watchguard firebox
soho_firewall
Dynamic VPN Configuration Protocol service (DVCP) in Watchguard Firebox firmware 5.x.x allows remote attackers to cause a denial of service (crash) via a malformed packet containing tab characters to… NVD-CWE-Other
CVE-2002-1046 2008-09-6 05:29 2002-10-4 Show GitHub Exploit DB Packet Storm
368026 - watchguard soho_firewall The FTP service in Watchguard Soho Firewall 5.0.35a allows remote attackers to gain privileges with a correct password but an incorrect user name. NVD-CWE-Other
CVE-2002-1047 2008-09-6 05:29 2002-10-4 Show GitHub Exploit DB Packet Storm
368027 - hp jetdirect HP JetDirect printers allow remote attackers to obtain the administrative password for the (1) web and (2) telnet services via an SNMP request to the variable (.iso.3.6.1.4.1.11.2.3.9.4.2.1.3.9.1.1.0. NVD-CWE-Other
CVE-2002-1048 2008-09-6 05:29 2002-10-4 Show GitHub Exploit DB Packet Storm
368028 - hylafax hylafax Format string vulnerability in HylaFAX faxgetty before 4.1.3 allows remote attackers to cause a denial of service (crash) via the TSI data element. NVD-CWE-Other
CVE-2002-1049 2008-09-6 05:29 2002-10-4 Show GitHub Exploit DB Packet Storm
368029 - hylafax hylafax Buffer overflow in HylaFAX faxgetty before 4.1.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long line of image data. NVD-CWE-Other
CVE-2002-1050 2008-09-6 05:29 2002-10-4 Show GitHub Exploit DB Packet Storm
368030 - w3c jigsaw Cross-site scripting (XSS) vulnerability in W3C Jigsaw Proxy Server before 2.2.1 allows remote attackers to execute arbitrary script via a URL that contains a reference to a nonexistent host followed… NVD-CWE-Other
CVE-2002-1053 2008-09-6 05:29 2002-10-4 Show GitHub Exploit DB Packet Storm